DuckDuckGo logo
DuckDuckGo

Independent internet privacy company. Download our browser with privacy built-in, unlike Chrome, on mobile & desktop.

Senior Web Security Engineer, Browser Platform

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 51-200Since 2008H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

88 days ago

Salary

$178.5K / year

Seniority

Senior

Bachelor Degree7 yrs expEnglish

Job Description

• Conduct browser security audits (special pages, DuckAI integrations, password manager, etc.) • Execute on SERP security mitigations (XSS prevention, tooling development to help engineers write safer code) • Manage application security scanning infrastructure setup (aka SAST/DAST integrations in GitHub) • Deliver on Internal red-team operations (simulated attack scenarios) • Support security triage

Job Requirements

  • 7+ years of experience in web or application security (performing security assessments, vulnerability research, penetration testing, or secure code review)
  • Advanced programming or scripting experience with JavaScript
  • Experience with at least one WebView technology (WebKit, WebView2, Chromium WebView, etc.)
  • Hands-on experience identifying and exploiting web vulnerabilities (XSS, CSRF, injection attacks, authorization flaws, etc.)
  • Familiarity with security testing tools and frameworks
  • Experience partnering and collaborating with Product Engineers, advising on security matters and helping teams ship secure code faster
  • Experience shaping how an organisation thinks about security - driving best practices, improving processes, and raising the bar across teams

Benefits

  • paid parental leave
  • office setup
  • co-working allowances

Related Categories

Related Job Pages

More Security Engineer Jobs

Mozilla logo

Staff Security Engineer, Product Security

Mozilla

Feel good about your work again.

Security Engineer88 days ago
Full TimeRemoteTeam 501-1,000Since 1998H1B Sponsor

Staff Security Engineer safeguarding Mozilla's products with embedded security practices

JavaJavaScriptPythonSDLCGo
United States
$138K - $217K / year
Stambaugh Ness logo

Cybersecurity Engineer – T3

Stambaugh Ness

Collaborative. Forward-Thinking. Future-Ready.

Security Engineer88 days ago
Full TimeRemoteTeam 201-500H1B No Sponsor

Cybersecurity Engineer ensuring client IT security against threats at Stambaugh Ness

CloudCyber SecurityDNSFirewallsTCP/IP
United States
$85K - $100K / year
FICO logo

Principal Data and AI Security Architect

FICO

FICO is an analytics company helping businesses make better decisions that drive higher levels of growth and success.

Security Engineer88 days ago
Full TimeRemoteTeam 1,001-5,000Since 1956H1B No Sponsor

Principal Data and AI Security Architect defining security strategies for AI/ML at FICO

AWSAzureCloudGoogle Cloud PlatformJavaJenkinsOraclePythonTerraform
United States
$161K - $253K / year
Included Health logo

Senior Security Engineer

Included Health

Dedicated to offering “all included” healthcare for people everywhere, Included Health offers high-quality, customized medical expertise, virtually or in pe

Security Engineer89 days ago
Full TimeRemote

Senior Security Engineer designing security controls for robust application and cloud environments.

AWSCloudDockerGoogle Cloud PlatformKubernetesLinuxMacOSPythonSDLCTerraformGo
United States
$128.1K - $235.3K / year