Lead Security Architect, Application Security

| Hybrid
Sorry, this job was removed at 7:25 a.m. (EST) on Monday, October 18, 2021
Find out who's hiring in Greater Boston Area.
See all Cybersecurity + IT jobs in Greater Boston Area
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

What if security was an opportunity and not an obstacle? What if it wasn't a clunky afterthought, or a cumbersome requirement preventing you from doing the things you really want to do? What if you could securely advance your business with clarity and confidence? We like the sound of that, too! At Rapid7, we believe in simplifying the complex through shared visibility, analytics, and automation that unite teams around challenges and successes of cybersecurity. Our products and services empower over 9,100 customers across more than 120 countries to seamlessly build security into the heart of their organizations.

Our joint success with our customers is built on their trust in us to protect their data from compromise. We can do this only if we scale our security program by embedding secure design principles throughout our development lifecycle. That’s why we’re looking for a Lead Security Architect to join our Security Engineering team. This role will bolster a secure design culture across the company while driving secure design processes that focus on securing the application layer of our products, services, and corporate IT environment. This role will partner closely with our Platform Delivery (DevOps), Software Engineering, InfoSec, and IT teams to achieve our secure design program goals.

So, ask yourself this: are you passionate about building scalable, reliable, and secure applications? Do you thrive when you're able to drive impact by combining your unique skills and perspective with those of a cross-functional team? Do you strive to use influence and consensus, instead of authority, to achieve shared goals? If you've been answering “yes” to these questions, then read on! You could be just the person we're looking for. 

 

What you’ll do

  • Build and sustain secure design and architecture processes that support organizational goals and strategy 

  • Collaborate with our partner teams to co-create security standards for application services and architectures, including first-party and third-party applications

  • Implement secure design processes and tools with a focus on self-serviceability, automation, and shifting left in our project and system development life cycles

  • Lead holistic security assessments that include threat modeling and security standards maturity assessments

  • Help partner teams create and maintain threat models for their systems and environments

  • Educate and empower partner teams to use secure design principles, processes, and tools

  • Mentor teammates and stakeholders about security best practices, software engineering/architecture, collaborative problem solving, and technical leadership 

What you’ll bring

  • Experience implementing secure design and security architecture processes and tools

  • Experience with threat modeling frameworks such as STRIDE and tools such as ThreatDragon, pytm, ThreatSpec, Threagile, etc.

  • Experience in software development, especially by using web APIs and languages such as Python, Go, Java, JavaScript, Rust and/or Bash

  • Experience securing web applications, such as by creating/using secure libraries and software frameworks, SAST, DAST, IAST, and/or RASP

  • Experience with Kubernetes and container-based environments

  • Solid time management & prioritization skills with a strong ability to plan, prioritize, and execute projects in coordination with other teams

  • Proficiency communicating to technical & non-technical audiences with a positive, collaborative, and enablement-focused attitude

  • Eagerness to challenge conventional approaches to solving problems

  • Insatiable curiosity & desire to learn new technology and security concepts

Pluses

  • Experience curating and providing secure software development training to software engineers

  • Experience attacking web applications, especially in the context of red team or purple team exercises

Preferred locations

  • Belfast, UK; Arlington, VA; Boston, MA; Austin, TX; Belfast, UK; Los Angeles, CA; Remote

Equal Opportunity Employer 

Here at Rapid7, we fundamentally believe that every person deserves an equal opportunity to build an exceptional career! We embrace our similarities, celebrate our differences and strongly believe that EVERYONE has the right to be treated with respect and dignity. We have a ZERO tolerance policy for discrimination based on race, ethnicity, religion, gender, sexual orientation, gender identity, national origin, disability, veteran status, marital status, or any other status protected under federal, state, or local law. More importantly though, we just fundamentally believe it’s the right way to build a business and healthy community. We pride ourselves on our unique culture and our commitment to diversity, equity, and inclusion--it is the stitch that holds the fabric of our culture together!

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
    • GolangLanguages
    • JavaLanguages
    • JavascriptLanguages
    • PythonLanguages
    • RLanguages
    • RubyLanguages
    • ScalaLanguages
    • SqlLanguages
    • jQueryLibraries
    • ReactLibraries
    • ReduxLibraries
    • DjangoFrameworks
    • ExpressFrameworks
    • FlaskFrameworks
    • HadoopFrameworks
    • Node.jsFrameworks
    • Ruby on RailsFrameworks
    • SparkFrameworks
    • SpringFrameworks
    • TensorFlowFrameworks
    • CassandraDatabases
    • MongoDBDatabases
    • MySQLDatabases
    • PostgreSQLDatabases
    • RedisDatabases
    • Google AnalyticsAnalytics
    • OptimizelyAnalytics
    • IllustratorDesign
    • InVisionDesign
    • PhotoshopDesign
    • SketchDesign
    • AsanaManagement
    • ConfluenceManagement
    • JIRAManagement
    • WordpressCMS
    • SalesforceCRM

Location

Rapid7 is conveniently located between the North End and West End of Boston, with plenty of restaurants and public transport close by.

An Insider's view of Rapid7

What does your typical day look like?

For the majority of the day it’s a mix of weekly check-ins with various teams, project updates, and the occasional brainstorm.

When I’m not in meetings I’ve got headphones in while planning, writing, or designing — at my desk or perched somewhere around the office.

Grace

Senior Brand Storyteller

How has your career grown since starting at the company?

Ive been on many teams in my time at Rapid7 and they have certainly “grown” from a size perspective, but more importantly, they all evolved with the changing times and needs. Some of the teams I was on were critical for our sales grown in an emerging market and though they no longer exist by name, I can see the tangible impact we made.

Sarah

Manager, Commercial Sales

What are Rapid7 Perks + Benefits

Culture
Volunteer in local community
Once a year, Rapid7 offices across the globe close for the day so employees can volunteer.
Partners with nonprofits
Open door policy
OKR operational model
Team based strategic planning
Open office floor plan
Employee resource groups
Employee-led culture committees
Hybrid work model
President's club
Employee awards
Flexible work schedule
Remote work program
Our remote work program includes full-time remote for specific positions, Work remotely on occasion as needed.
Diversity
Documented equal pay policy
Dedicated diversity and inclusion staff
Highly diverse management team
Rapid7 is led by a diverse management team that represent the security community we serve. We believe that we all have a responsibility to continuously improve our DE&I efforts.
Mandated unconscious bias training
We believe in continuous learning, our in-house trainers conduct consistent diversity trainings. We advocate for diverse thinking and strive to cultivate a workforce that mirrors the best minds.
Diversity employee resource groups
We have so many amazing and organically created employee resource groups! These internal Rapid7 communities allow for an authentic experience where diverse employees and allies can come together.
Hiring practices that promote diversity
We've taken the Parity Pledge, we reinforce strategic recruitment, we are committed to diversity partnerships, and we understand the importance in training around unconscious bias.
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Dental insurance
Vision insurance
Health insurance
Life insurance
Pet insurance
Wellness programs
Mental health benefits
Financial & Retirement
401(K)
401(K) matching
Company equity
Employee stock purchase plan
Performance bonus
Child Care & Parental Leave Benefits
Generous parental leave
Family medical leave
Vacation & Time Off Benefits
Unlimited vacation policy
Generous PTO
Paid volunteer time
Our employees receive unlimited hours per year of paid volunteer time.
Paid holidays
Paid sick days
Employees receive unlimited hours per year of paid sick leave.
Bereavement leave benefits
Company-wide vacation
Office Perks
Commuter benefits
Company-sponsored outings
Free snacks and drinks
Rapid7 has a fully stocked kitchen including unlimited snacks, coffee, tea and all of the flavored sparkling water you can handle.
Some meals provided
Employees get free lunch during quarterly in-office Town Halls and some team meetings.
Company-sponsored happy hours
Onsite office parking
Fitness stipend
Home-office stipend for remote employees
Meditation space
Mother's room
Onsite gym
Professional Development Benefits
Job training & conferences
Lunch and learns
Promote from within
Continuing education stipend
Variable.
Continuing education available during work hours
Online course subscriptions available
Paid industry certifications

More Jobs at Rapid7

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about Rapid7Find similar jobs like this