Senior Application Security Engineer
2 semanas atrás
At Braze, we have found our people. We're a genuinely approachable, exceptionally kind, and intensely passionate crew.
We seek to ignite that passion by setting high standards, championing teamwork, and creating work-life harmony as we collectively navigate rapid growth on a global scale while striving for greater equity and opportunity – inside and outside our organization.
To flourish here, you must be prepared to set a high bar for yourself and those around you. There is always a way to contribute: Acting with autonomy, having accountability and being open to new perspectives are essential to our continued success.
Our deep curiosity to learn and our eagerness to share diverse passions with others gives us balance and injects a one-of-a-kind vibrancy into our culture.
If you are driven to solve exhilarating challenges and have a bias toward action in the face of change, you will be empowered to make a real impact here, with a sharp and passionate team at your back. If Braze sounds like a place where you can thrive, we can't wait to meet you.
WHAT YOU'LL DO
Braze is seeking a Sr. Application Security engineer to join our team. Braze is a modern, cloud-first, SaaS application company with no classical "legacy" systems. We are seeking an Application Security engineer to work with our existing Application Security staff to better protect our production applications and their related application infrastructure, as well as provide expert level guidance to development teams around secure architecture for their systems.
As a Sr. Application Security Engineer at Braze, you will work on a diverse set of projects including:
- Working with Application Development and Product teams to craft creative security solutions to their architectural proposals
- Managing (in part) a robust and automated vulnerability workflow that includes Bug Bounties, SAST, DAST, and Penetration Tests
- Conduct internal Penetration Tests on Applications and API's in various environments
- End-to-end implementation of Security controls such as WAF's, inline secure coding tools, and bespoke security controls for inbuilt applications
- Investigation and Response to Security incidents
- Sifting through the massive influx of semi-useful AI tools and determining what actually can provide value to an Application Security program
WHO YOU ARE
You are a person who can translate a complex multi-vuln attack chain into plain english, and show a team of developers and product managers proper mitigation strategies while still operating within the confines of their intended systems goal. You have extensive experience discovering vulnerabilities in Web applications and API's, and can demonstrate your ability to chain multiple issues for maximum impact. You are engaged with online Web App/Bug Bounty communities and consume content describing the forefront of application security and vulnerability development.
An good candidate will have:
- 5+ years of experience securing an application at a company at a Sr. IC level.
- Demonstrable experience in consistently locating novel security vulnerabilities in web software
- 3+ years experience conducting penetration tests both as a single tester and on a team
- 3+ years of experience in application incident response
- Experience with active testing against AI/LLM integrated web applications and API's
- Experience with scripting languages and automation
- Direct experience in the triage/validation of vulnerabilities in systems they may not be familiar with, and the ability to properly articulate risk and provide accurate mitigation recommendations
- Ability to read and understand Javascript, Ruby, and Kotlin (development level proficiency not required)
An excellent candidate will have:
- Experience with Mail Delivery systems/experience in the MarTech space
- Experience managing a public bug bounty program
- CVE's or published vulnerabilities, and corresponding conference talks
- Involvement with an open source project
- Experience with the review and risk evaluations of 3rd party integrations
- Experience with mobile application penetration testing (including testing methodologies that include location of security vulnerabilities in applications with pinned certificates)
#LI-Hybrid
WHAT WE OFFER
Braze benefits vary by location, and we encourage you to review our specific benefits offerings for each country here. More details on benefits plans will be provided if you receive an offer of employment.
From offering comprehensive benefits to fostering hybrid ways of working, we've got you covered so you can prioritize work-life harmony. Braze offers benefits such as:
- Competitive compensation that may include equity
- Retirement and Employee Stock Purchase Plans
- Flexible paid time off
- Comprehensive benefit plans covering medical, dental, vision, life, and disability
- Family services that include fertility benefits and equal paid parental leave
- Professional development supported by formal career pathing, learning platforms, and a yearly learning stipend
- A curated in-office employee experience, designed to foster community, team connections, and innovation
- Opportunities to give back to your community, including an annual company-wide Volunteer Week and donation matching
- Employee Resource Groups that provide supportive communities within Braze
- Collaborative, transparent, and fun culture recognized as a Great Place to Work
ABOUT BRAZE
Braze is the leading customer engagement platform that empowers brands to Be Absolutely Engaging. Braze helps brands deliver great customer experiences that drive value both for consumers and for their businesses. Built on a foundation of composable intelligence, BrazeAI allows marketers to combine and activate AI agents, models, and features at every touchpoint throughout the Braze Customer Engagement Platform for smarter, faster, and more meaningful customer engagement. From cross-channel messaging and journey orchestration to Al-powered decisioning and optimization, Braze enables companies to turn action into interaction through autonomous, 1:1 personalized experiences.
The company has repeatedly been recognized as a Leader in marketing technology by industry analysts, and was voted a G2 "Best of Marketing and Digital Advertising Software Product" in 2025.
Braze was also named a 2025 Best Companies To Work For by U.S. News & World Report, a 2025 America's Greatest Companies by Newsweek, and a 2025 Fortune Best Workplace in Technology by Great Place To Work, among other accolades. Braze is also proudly certified as a Great Place to Work in the U.S., the UK, Australia, and Singapore.
The company is headquartered in New York with offices in Austin, Berlin, Bucharest, Chicago, Dubai, Jakarta, London, Paris, San Francisco, São Paulo, Singapore, Seoul, Sydney and Tokyo.
At Braze, we strive to create equitable growth and opportunities inside and outside the organization.
Building meaningful connections is at the heart of everything we do, and that includes our recruiting practices. We're committed to offering all candidates a fair, accessible, and inclusive experience – regardless of age, color, disability, gender identity, marital status, maternity, national origin, pregnancy, race, religion, sex, sexual orientation, or status as a protected veteran. When applying and interviewing with Braze, we want you to feel comfortable showcasing what makes you you.
We know that sometimes different circumstances can lead talented people to hesitate to apply for a role unless they meet 100% of the criteria. If this sounds familiar, we encourage you to apply, as we'd love to meet you.
Please see our Candidate Privacy Policy for more information on how Braze processes your personal information during the recruitment process and, if applicable based on your location, how you can exercise any privacy rights.-
Senior Application Security Engineer
1 semana atrás
São Paulo, São Paulo, Brasil Braze Tempo inteiroAt Braze, we have found our people. We're a genuinely approachable, exceptionally kind, and intensely passionate crew.We seek to ignite that passion by setting high standards, championing teamwork, and creating work-life harmony as we collectively navigate rapid growth on a global scale while striving for greater equity and opportunity – inside and outside...
-
Senior Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil Offensive Security na Nubank Tempo inteiroAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...
-
Senior Security Engineer
Há 2 dias
São Paulo, São Paulo, Brasil Nubank Tempo inteiroAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...
-
Senior Security Engineer
1 semana atrás
São Paulo, São Paulo, Brasil QuintoAndar Tempo inteiroAbout Grupo QuintoAndarWe are Grupo QuintoAndar, the largest real estate ecosystem in Latin America. Guided by a shared purpose of helping people love where they live, we have a diversified portfolio of brands and solutions across different countries in Latin America, covering all phases of the housing journey. We also have a Technology Hub in Portugal. We...
-
Staff Security Engineer
2 semanas atrás
São Paulo, São Paulo, Brasil Ebury Tempo inteiro R$90.000 - R$120.000 por anoEbury is a global fintech firm dedicated to empowering businesses to expand internationally through tailored and forward-thinking financial solutions. Since our founding in 2009, we've grown to a diverse team of over 1,700 professionals across 40+ offices and 29+ markets worldwide. Joining Ebury means becoming part of a collaborative and innovative...
-
Cloud Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil Pacifica Continental Tempo inteiroNosso cliente está procurando um Cloud Security Engineer para integrar sua equipe de maneira remota. O profissional se concentrará em concretizar soluções para diversos perfis de usuário em múltiplas plataformas, como dispositivos móveis e desktop. Sua principal responsabilidade será trabalhar diretamente com o produto, construindo soluções seguras...
-
Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil CloudWalk, Inc. Tempo inteiroAbout CloudWalk:We are not just another fintech unicorn. We are a pack of dreamers, makers, and tech enthusiasts building the future of payments. With millions of happy customers and a hunger for innovation, we're now expanding our neural network - literally and metaphorically.Are you passionate about security and eager to build a career in automation and...
-
Senior Cloud Security Engineer
Há 6 dias
São Paulo, São Paulo, Brasil 1GLOBAL Tempo inteiro1GLOBAL is a technology-driven global mobile communications provider dedicated to empowering enterprises worldwide to unlock the full growth potential of mobile connectivity. With a best-in-class telecom technology platform, a comprehensive suite of globally viable regulatory licenses, and privileged access to the telecom wholesale market, 1GLOBAL is...
-
Lead Security Engineer
Há 4 dias
São Paulo, São Paulo, Brasil Nubank Tempo inteiroAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...
-
Lead Security Engineer
Há 12 horas
São Paulo, São Paulo, Brasil Nubank Tempo inteiroAbout NubankNubank was founded in 2013 to free people from a bureaucratic, slow and inefficient financial system. Since then, through innovative technology and outstanding customer service, the company has been redefining people's relationships with money across Latin America. With operations in Brazil, Mexico, and Colombia, Nubank is today one of the...