Security Engineer- Application Security & Cloud
Role details
Job location
Tech stack
Job description
As Security Engineer with a focus on Application Security and Cloud, you will help improve security across our software development lifecycle, cloud applications, and emerging AI-enabled solutions. You will work closely with software developers, architects, platform engineers, and Cybersecurity to identify risk early, integrate security into development workflows, and help teams build secure applications without creating unnecessary delivery friction., * Help implement and improve secure development standards for .NET and Python applications.
- Support threat modeling, architecture reviews, secure code reviews, and risk assessments.
- Identify and help remediate vulnerabilities in applications, APIs, cloud services, containers, and supporting infrastructure.
- Integrate security testing into Azure DevOps, GitHub Actions, and other development workflows.
- Support static, dynamic, open-source dependency, infrastructure-as-code, and container testing.
- Use Azure and cloud security capabilities to identify and prioritize application and cloud risks.
- Develop scripts, automation, and reporting that improve security testing and remediation.
- Provide practical security guidance to software development teams.
- Help evaluate risks in AI- and LLM-enabled applications, including data leakage, prompt injection, misuse, and insecure integrations.
- Develop metrics that show application-security coverage, risk, and remediation
Requirements
- Bachelor's degree in related field or equivalent experience
- 2+ years of experience in software engineering, cloud engineering, DevOps, infrastructure, cybersecurity, or related disciplines.
- Experience in application development, application security, cloud engineering, DevOps/CI/CD, or security engineering.
- Knowledge of secure development practices, application vulnerabilities, API security, authentication/authorization, and secrets management.
- Experience with .NET, Python, Azure, or similar modern development and cloud technologies.
- Strong communication, analytical, troubleshooting, and problem-solving skills, with the ability to quickly learn new technologies.
YOU MAY ALSO HAVE
- Experience with Azure DevOps, GitHub Actions, Docker, Kubernetes, Terraform, or Bicep.
- Experience with application-security testing tools or vulnerability-management processes.
- Scripting or automation experience.
- Familiarity with AI-assisted development tools or AI-enabled applications.
- Knowledge of the OWASP Top 10, OWASP guidance for LLM applications, or the NIST AI Risk Management Framework.
- Relevant security, cloud, or software-development certifications.
ROLE SPECIFICS
- Travel - Occasional overnight travel for internal trainings and meetings. Must have ability to travel independently as needed, without restriction by all modes of transportation, including car, plane, or train.
- Schedule - After hours on-call rotation to support business needs
Benefits & conditions
As a family-owned and-operated company since 1960, Dot Foods has created a strong family culture. We make everyone feel included and respected. In addition to an inclusive working environment, we will provide you with:
- Competitive compensation package, including bonuses for successful performance
- Extensive benefits including medical, dental, 401k, and profit-sharing
- Significant advancement opportunities