security
Posted Oct 2, 2024Security Engineer, Application Security
at openai
San Francisco, United StatesHybrid
Responsibilities
- - Develop and Implement Security Tools: Design, develop, and implement security tools, frameworks, and methodologies to protect applications against security threats.
- - Collaborate with Development Teams: Work closely with development teams to ensure security best practices are integrated throughout the software development lifecycle (SDLC), including secure coding guidelines.
Requirements
- About the Team Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity.
- experience in information security, cybersecurity, or a related field, with a significant portion of that
- experience in leadership or management roles. - Deep understanding of security technologies, tools, and best practices, including
- experience with secure coding practices, threat modeling, risk assessments, and incident response. -
- Experience in application security, software development, or related areas with a strong understanding of secure coding practices and application security frameworks.
- - Proficiency in programming languages (such as Python, Java, C++, etc.), knowledge of security tools (e.g., Burp Suite, OWASP ZAP), and familiarity with security protocols and encryption methods.
- - Strong written and verbal communication skills, with the ability to explain complex security issues to both technical and non-technical audiences About OpenAI OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence
Additional details
- The Security team protects OpenAI’s technology, people, and products.
- We are technical in what we build but are operational in how we do our work, and are committed to supporting all products and research at OpenAI.
- Our Security team tenets include: prioritizing for impact, enabling researchers, preparing for future transformative technologies, and engaging a robust security culture.
- About the Role As a Security Engineer, Application Security you will be responsible for identifying and mitigating security vulnerabilities within software applications through building security tools, code reviews, penetration testing, and security assessments.
- We’re looking for people who will work closely with development teams to ensure secure coding practices are integrated throughout the software development lifecycle, preventing security risks before they emerge.
- You will also provide security guidance to developers and other stakeholders, fostering a culture of security awareness within the organization.
- The role is preferred to be based in San Francisco, Seattle or New York City but may consider remote work.
- We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees. In this role,
- you will: - Perform Security Assessments: Conduct regular security assessments, code reviews, and penetration testing to identify vulnerabilities in applications and software.
- - Threat Modeling and Risk Assessment: Conduct threat modeling and risk assessments to proactively identify potential risks and develop mitigation strategies.