MyFitnessPal

MyFitnessPal

MyFitnessPal is a top nutrition tracking app with a calorie tracker, BMR calculator, and food tracker. It helps users reach health goals by tracking meals and physical activity, offering nonstop motivation for a healthier life.

Health Care Providers & Services
10K-50K
Founded 2005

Description

  • Manage application security vulnerabilities from SAST, SCA, DAST, and mobile security tools through triage, remediation, and resolution.
  • Operate and expand the bug bounty program, including scoping engagements, validating submissions, and coordinating with vendors.
  • Use AI and agentic tooling to accelerate vulnerability triage, enrichment, and remediation workflows.
  • Build and maintain Python and SOAR-based automation for vulnerability intake, notifications, SLAs, metrics, and reporting.
  • Partner with product engineering teams on remediation, security guidance, and issue resolution.
  • Review new features, services, and third-party integrations using pragmatic, risk-based security analysis.
  • Promote secure coding practices through documentation, training, and developer support.
  • Administer, tune, evaluate, and implement application security tools across the SDLC.
  • Support identity and access management workflows and related automation.

Requirements

  • 2–4 years of experience in security engineering, application security, software engineering, or a related field.
  • Understanding of SAST, DAST, SCA, penetration testing, vulnerability triage, and remediation.
  • Knowledge of secure web and mobile application development practices, including OWASP Top 10 and OWASP MASVS.
  • Experience with AI-assisted or agentic tooling, LLM-powered workflows, or similar automation.
  • Experience communicating security findings and remediation guidance to engineering teams.
  • Familiarity with cloud microservices, containers, Kubernetes, and infrastructure as code.
  • Strong cross-functional communication, judgment, and collaboration skills.
  • Ability to document technical concepts clearly for technical and non-technical audiences.
  • Education or certifications equivalent to a bachelor’s degree in Computer Science, Information Systems, or a related field.
  • Security automation with Python or SOAR platforms, CI/CD security scanning, GitHub Actions, or bug bounty experience preferred; GIAC, OSCP, CSSLP, Security+, or vendor certifications are a plus.

Benefits

  • Estimated salary of $90,000–$130,000, plus an annual performance bonus.
  • Medical, dental, and vision coverage; 401(k) with employer match.
  • Responsible time off, two annual volunteer days, and paid maternity and paternity leave.
  • Parental planning, fertility support, mental health benefits, and dedicated mental health days.
  • Monthly wellness and technology allowances, plus MyFitnessPal Premium access.
  • Mentorship, virtual learning resources, and professional development opportunities.
  • Flexible work practices with team meetups and an annual company gathering.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer II - Application Security

Aledade 1K-5K Health Care Providers & Services

Aledade PBC is hiring a Senior Security Engineer II to design, automate, and operate security services that protect its healthcare technology environment while partnering across teams to improve the organization’s security posture.

AWS Azure C# C++ DevSecOps GCP Go Java JavaScript Machine Learning Python R Scala Terraform
1 day, 17 hours ago

Application Security Engineer

Vannevar Labs 11-50 Aerospace & Defense

Vannevar is hiring an Application Security Engineer to secure its defense-focused SaaS platform by embedding application security practices throughout the software development lifecycle.

CI/CD DevSecOps GitHub Actions JavaScript Python TypeScript
3 days, 17 hours ago

Senior Implementation Engineer - DevOps & Application Security

Workana 1K-5K Internet Software & Services

Endor Labs is seeking a Technical Implementation Engineer in Panama to lead customers through integrating and adopting its application security platform across their development environments.

CI/CD DevSecOps Gradle Maven
4 days, 18 hours ago

Senior Manager, Product Security

Tines 51-250 Construction & Engineering

Tines is seeking a Senior Manager, Product Security to lead and scale its product security program for cloud-native, AI-forward products while partnering with engineering and product leaders to manage risk and support growth.

AWS CI/CD DevSecOps Docker Kubernetes Penetration Testing Ruby Rust TypeScript
1 week ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers