Rocket.ChatRO

Senior Security Engineer

Our mission is to empower organizations to own their conversations by developing the world’s most flexible and secure open source communications platform.

Rocket.Chat

Employee count: 51-200

Brazil only
Apply now

This position is for applicants in Latin America.

We are looking for a full-time highly skilled and dedicated Senior Security Engineer to join our cybersecurity team in our mission to make Rocket.Chat the most secure Enterprise communication platform for our millions of users.

As a Senior Security Engineer, you will be responsible for implementing and maintaining robust security measures to safeguard our organization's critical assets from cyber threats. You will play a crucial role in identifying security vulnerabilities, analyzing security incidents, and proactively implementing security controls to protect our infrastructure, applications, and data.

Mandatory Hard Skills 🎯

  • Fluent English;
  • Understanding of secure architecture of JavaScript web applications;
  • Familiar with common security libraries, security controls, and common security flaws that apply to JavaScript applications;
  • Ability to discover and patch XSS, CSRF, SSRF, authentication and authorization flaws, and other web-based security vulnerabilities (OWASP Top 10 and beyond);
  • Knowledge of common authentication technologies including OAuth, SAML, OTP/TOTP;
  • Knowledge of browser-based security controls such as CSP, HSTS, and XFO;
  • Experience in identifying and reducing security risks in our code;
  • Experience in finding and replacing outdated and vulnerable code and code libraries;
  • Ability to professionally handle communications with outside researchers, users, and customers;
  • Ability to communicate clearly on technical issues.

Desirable Hard Skillsđź’•

  • Knowledge of Meteor framework is a plus;

Soft Skills ✨

  • Communication
  • Collaboration
  • Critical thinking
  • Presentation skills

What You'll Do 🖥️

  • Design and implement a comprehensive vulnerability management program to identify and assess security weaknesses in our systems and applications;
  • Conduct regular vulnerability scans, penetration tests, and security assessments to evaluate the organization's security posture;
  • Collaborate with cross-functional teams to prioritize and remediate identified vulnerabilities, ensuring timely resolution;
  • Track and monitor the progress of vulnerability remediation efforts and provide regular status updates to management;
  • Lead application security reviews, code reviews, and threat modelling exercises to identify potential security issues during the software development lifecycle;
  • Develop and enforce secure coding practices, guidelines, and standards for developers to follow;
  • Work closely with development teams to integrate security measures and best practices into the software development process;
  • Conduct security testing of applications, APIs, and web services to detect and address security vulnerabilities;
  • Consult with other Developers and Product Managers to analyze and propose application security standards, methods, and architectures;
  • Handle communications with independent vulnerability researchers (from our bug bounty program and other sources) and design appropriate mitigation strategies for reported vulnerabilities;
  • Educate other developers on secure coding best practices.

Benefits ✨

Our goal is to make your routine as a Rocketeer feel enjoyable, exciting, and comfortable in a 100% remote environment. So, you’ll receive a set of benefits to improve your remote work experience! They include a flexible schedule, unlimited Paid Time Off, language and tech courses, stock options, a multicultural environment with colleagues in over 26 countries, a vibrant company culture, and more!

About Rocket.Chat 🚀

‍Rocket.Chat is the world's largest open-source communications platform. Built for organizations needing more control over their communications, it enables collaboration between colleagues, partners, customers, communities, and even platforms without compromising data ownership, customizations, or integrations.

Tens of millions of users in over 150 countries and organizations such as Deutsche Bahn, the U.S. Navy and Credit Suisse trust Rocket.Chat every day to keep their communications completely private and secure. As Rocket.Chat we believe in reconnecting the world, one conversation at a time! See yourself in that? So apply now!

Check out our handbook for more information about our rocket.

Elevate your application

Let our AI craft your perfect cover letter and align your resume to this job's criteria.

By using our AI tools, you consent to sharing your profile with our AI partner for this purpose.

Apply now

Please let Rocket.Chat know you found this job on Himalayas. This helps us grow!

Apply now

About the job

Apply before

Jun 24, 2024

Posted on

Apr 25, 2024

Job type

Full Time

Experience level

Senior

Location requirements

Hiring timezones

Brazil +/- 0 hours

About Rocket.Chat

Learn more about Rocket.Chat and their company culture.

View company profile

Born as a side project of four friends in 2015, ‍Rocket.Chat is the world's largest open source communications platform. Built for organizations that need more control over their communications, it enables collaboration between colleagues, partners, customers, communities, and even platforms without compromises on data ownership, customizations, or integrations.

Tens of millions of users in over 150 countries and organizations such as Deutsche Bahn, the U.S. Navy and Credit Suisse trust Rocket.Chat every day to keep their communications completely private and secure.

Employee benefits

Learn about the employee benefits and perks provided at Rocket.Chat.

View benefits

Birthday day-off

Your birthday, your day off! (As long as you bring us some cake).

Equity benefits

Every employee gets equity, so you are rewarded for your best work.

Language classes benefit

Train your english or learn a new language: we’re here to support you!

Annual summit to meet the whole team

We love remote work, but love even more gathering all Rocketeers together to get to know each other.

View Rocket.Chat's employee benefits
Claim this profileRocket.Chat logoRO

Rocket.Chat

View company profileVisit rocket.chat

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

3 remote jobs at Rocket.Chat

Explore the variety of open remote roles at Rocket.Chat, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Rocket.Chat

Remote companies like Rocket.Chat

Find your next opportunity by exploring profiles of companies that are similar to Rocket.Chat. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join thousands of other remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan