

Search by job, company or skills

This job is no longer accepting applications
As part of our world-class engineering team at Recro, we are expanding our Product Security Engineering function. Our dev teams work across a variety of cutting-edge tech stacks in a fast-moving environment, which makes security both a challenge and an opportunity to innovate. We prioritise guardrails over roadblocks in our security culture, empowering developers to move fast while ensuring that security is built-in, scalable, and resilient.
The Product Security team is responsible for integrating security into all phases of the SDLC — from design through deployment — including infrastructure and application security, secure development practices, threat modelling, and DevSecOps automation.
Our mission includes:
Driving secure-by-design principles across web, mobile, cloud, and IoT systems.
What we're looking for:
We value diverse security backgrounds and want to work with professionals who are passionate about engineering secure systems at scale.
Required Skills:
Strong understanding of information security fundamentals and the ability to communicate them clearly to engineering and product teams.
Job ID: 145097573
Skills:
secure coding , threat modeling , Java, Perl, PowerShell, Bash, Ruby, Cryptography, Python, AWS, security research
Skills:
DAST, Iso 27001, Gcp, Docker, Iam, Siem, Owasp Top 10, Kubernetes, AWS, Zero Trust architecture, NIST CSF, SOAR, SOC2, SCA, SAST
Skills:
compliance support , Security Controls, Cloud security, Iam, Enterprise compliance, Role-aware architecture, Zero Trust, Audit readiness, Secure DevOps
Skills:
reporting metrics , policy development , Networking, Ips, Incident Response, Iam, Firewalls, Ids, Siem, Cism, Security Assessments, information protection, SOAR, Vendor Management, Security Implementation, Identity Management Systems, Risk Management, issap, System Design Integration, Vulnerability Scans, Cissp, Ot Security, Training Awareness
Skills:
threat modeling , Azure Cloud, Application Security, Vulnerability Assessments, Owasp Top 10, Penetration Testing, Sdlc, AWS, public cloud infrastructure, software risk management, security policies and procedures