CookUnity

CookUnity

CookUnity is a prepared meal delivery service by award-winning chefs, offering flexible meal plans nationwide. With hundreds of gourmet options, customers can choose meals based on their preferences and dietary needs, enjoying restaurant-quality dishes...

Hotels, Restaurants & Leisure
251-1K
Founded 2015
$1M raised

Description

  • Lead application security efforts through security assessments, code reviews, and penetration testing for applications built in Kotlin, Java, and TypeScript.
  • Identify, classify, prioritize, and track remediation of application vulnerabilities, including OWASP Top 10 issues and other common weaknesses.
  • Use and maintain application security testing tools such as Burp Suite, SAST/DAST/IAST tools, and other automated scanners.
  • Collaborate with software development teams to enforce secure coding standards and ensure timely vulnerability patching within defined SLAs.
  • Integrate security testing and automation into CI/CD pipelines to provide continuous security validation.
  • Define and maintain security requirements and best practices aligned with standards such as OWASP, NIST, ISO, PCI DSS, and GDPR.
  • Conduct threat modeling, risk assessments, and security design reviews for new and existing applications.
  • Provide security awareness training and guidance to development teams on secure coding and vulnerability mitigation.
  • Respond to security incidents and support remediation efforts.
  • Recommend and implement new security tools and technologies to improve application security posture.

Requirements

  • Bachelor’s degree in Computer Science, Cybersecurity, or a related field.
  • 6-8+ years of experience in application security, secure coding, and vulnerability assessment.
  • Strong development background with hands-on experience in Kotlin, Java, and TypeScript.
  • Deep understanding of OWASP Top 10, CWE, and common web and API vulnerabilities.
  • Proficiency with security testing tools such as Burp Suite, Fortify, Veracode, or similar.
  • Experience with secure SDLC, DevSecOps practices, and integrating security into CI/CD pipelines.
  • Familiarity with authentication and authorization protocols such as OAuth2, OIDC, and SAML.
  • Ability to work effectively with development teams and drive timely vulnerability remediation.
  • Relevant certifications such as CISSP, CSSLP, OSCP, or GWAPT are preferred.
  • Fluency in English.
  • Knowledge of cloud security (AWS, GCP, Azure) and container security (Docker, Kubernetes) is a plus.

Benefits

  • Paid in USD, Crypto, Euro, or ARS via Rippling.
  • Remote work flexibility.
  • 15 days of vacation per year starting on the first day.
  • 16 fully paid Argentine holidays.
  • Monthly healthcare stipend to use with a preferred provider.
  • Four-week paid sabbatical after 5 years with CookUnity.
  • Paid family leave.
  • Compassionate leave of 3-5 days when needed.
  • Flexible benefits card for wellness, learning, food, and more.
  • Enterprise access to ChatGPT and Claude.
  • Personalized English coaching.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Application Security Engineer

Onit 251-1K IT Services

Onit is hiring a Senior Application Security Engineer in Pune to secure its SaaS applications, APIs, and AI-driven platform through hands-on security architecture, risk assessment, and vulnerability management.

AWS Azure CI/CD DevSecOps GCP GraphQL OAuth OpenID Connect REST API SAML SonarQube System Design
5 hours, 14 minutes ago

Product Security Intern

Funding Societies 251-1K Capital Markets

Funding Societies | Modalku is seeking a Product Security Intern to help strengthen secure software development and security automation across its engineering environment using Generative AI and modern security tooling.

Bash CI/CD Cybersecurity Encryption Generative AI Git Go JavaScript LLM Penetration Testing Python
21 hours, 31 minutes ago

Staff Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Staff Product Security Engineer to embed security into its open-source software supply chain, cloud-native products, and CI/CD systems for production environments.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
1 day ago

Ingeniero Seguridad en Aplicaciones

NEORIS 5K-10K Internet Software & Services

NEORIS is hiring an Application Security Engineer to support secure software development and vulnerability management for banking platforms in a collaborative digital services environment.

Agile Cybersecurity LLM
1 day, 1 hour ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers