WebflowWE

Senior Application Security Engineer

Webflow is the first design and hosting platform built from the ground up for the mobile age.

Webflow

Employee count: 51-200

Salary: 143k-216k USD

United States only
Apply now

At Webflow, our mission is to bring development superpowers to everyone. Webflow is the leading visual development platform for building powerful websites without writing code. By combining modern web development technologies into one platform, Webflow enables people to build websites visually, saving engineering time, while clean code seamlessly generates in the background. From independent designers and creative agencies to Fortune 500 companies, millions worldwide use Webflow to be more nimble, creative, and collaborative. It’s the web, made better.

We’re looking for a Senior Application Security Engineer to help us level up Webflow’s secure development practices ranging from secure coding, tooling, and improving procedures.

About the role

  • Location: Remote-first (United States; BC ON, Canada)
  • Full-time
  • Permanent
  • Exempt
  • The cash compensation for this role is tailored to align with the cost of labor in different geographic markets. We've structured the base pay ranges for this role into zones for our geographic markets, and the specific base pay within the range will be determined by the candidate’s geographic location, job-related experience, knowledge, qualifications, and skills.
    • United States (all figures cited below in USD and pertain to workers in the United States)
      • Zone A: $162,500 - $216,050
      • Zone B: $152,700 - $203,100
      • Zone C: $143,00 - $190,150
    • Canada (All figures cited below in CAD and pertain to workers in ON BC, Canada)
      • CAD 184,600 - CAD 245,500
  • Please visit our Careers page for more information on which locations are included in each of our geographic pay zones. However, please confirm the zone for your specific location with your recruiter.

  • Reporting to the Director of Security

As a Senior Application Security Engineer, you’ll …

  • Collaborate with the Webflow engineering team to secure Webflow’s web application platform and ecosystem.
  • Bring security best practices to the software development lifecycle.
  • Work as part of a team to champion security standards while balancing business strategies and requirements.
  • Support Webflow’s security current and future compliance frameworks
  • Work to find security vulnerabilities through grey-box techniques, and propose solutions at the architecture and code level to mitigate findings.
  • Contribute code and architecture improvements to enable security within Webflow’s application for engineers.
  • Cross-train entry and mid-level application security engineers

In addition to the responsibilities outlined above, at Webflow we will support you in identifying where your interests and development opportunities lie and we'll help you incorporate them into your role.

About you

You’ll thrive as a SeniorApplicationSecurity Engineer if you:

  • Have 2+ years of software development experience in security
  • Are passionate about security in general, and always hungry to learn
  • Have expertise in evaluating application/software with an eye to improve security design, continuous commitment to risk reduction and sustainable security.
  • Have experience fully rolling out secure code development lifecycle (SDLC) processes improvements, tools, and automation including planning, communication, and deployment of such tools.
  • Have solid experience penetration testing, finding and developing medium complexity application vulnerabilities
  • Have experience supporting software supply chain risks
  • Have experience with Threat Modeling
  • Love to share knowledge, and the gift of explaining complex security concepts with your colleagues.
  • Have a solid understanding of web application security, secure software design, and secure coding, and insecure engineering practices.
  • Have set-up or supported bug bounty programs.

Our Core Behaviors:

  • Obsess over customer experience. We deeply understand what we’re building and who we’re building for and serving. We define the leading edge of what’s possible in our industry and deliver the future for our customers.
  • Move with heartfelt urgency. We have a healthy relationship with impatience, channeling it thoughtfully to show up better and faster for our customers and for each other. Time is the most limited thing we have, and we make the most of every moment.
  • Say the hard thing with care. Our best work often comes from intelligent debate, critique, and even difficult conversations. We speak our minds and don’t sugarcoat things — and we do so with respect, maturity, and care.
  • Make your mark. We seek out new and unique ways to create meaningful impact, and we champion the same from our colleagues. We work as a team to get the job done, and we go out of our way to celebrate and reward those going above and beyond for our customers and our teammates.

Benefits wellness

  • Equity ownership (RSUs) in a growing, privately-owned company
  • 100% employer-paid healthcare, vision, and dental insurance coverage for employees and dependents (full-time employees working 30+ hours per week), as well as Health Savings Account/Health Reimbursement Account, dependent care Flexible Spending Account (US only), dependent on insurance plan selection where applicable in the respective country of employment; Employees may also have voluntary insurance options, such as life, disability, hospital protection, accident, and critical illness where applicable in the respective country of employment
  • 12 weeks of paid parental leave for both birthing and non-birthing caregivers, as well as an additional 6-8 weeks of pregnancy disability for birthing parents to be used before child bonding leave (where local requirements are more generous employees receive the greater benefit); Employees also have access to family planning care and reimbursement
  • Flexible PTO with a mandatory annual minimum of 10 days paid time off for all locations (where local requirements are more generous employees receive the greater benefit), and sabbatical program
  • Access to mental wellness and professional coaching, therapy, and Employee Assistance Program
  • Monthly stipends to support health and wellness, smart work, and professional growth
  • Professional career coaching, internal learning development programs
  • 401k plan and pension schemes (in countries where statutorily required) financial wellness benefits, like CPA or financial advisor coverage
  • Discounted Pet Insurance offering (US only)
  • Commuter benefits for in-office employees

Be you, with us

At Webflow, equality is a core tenet of our culture. We are an Equal Opportunity (EEO)/Veterans/Disabled Employer and are committed to building an inclusive global team that represents a variety of backgrounds, perspectives, beliefs, and experiences. Employment decisions are made on the basis of job-related criteria without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other classification protected by applicable law. Pursuant to the San Francisco Fair Chance Ordinance, Webflow will consider for employment qualified applicants with arrest and conviction records.

Stay connected

Not ready to apply, but want to be part of the Webflow community? Consider following our story on our Webflow Blog, LinkedIn, X (Twitter), and/or Glassdoor.

Please note:

To join Webflow, you'll need valid U.S. or Canadian work authorization depending on the country of employment.

If you are extended an offer, that offer may be contingent upon your successful completion of a background check, which will be conducted in accordance with applicable laws. We may obtain one or more background screening reports about you, solely for employment purposes.

For information about how Webflow processes your personal information, please review Webflow’s Applicant Privacy Notice.

Elevate your application

Let our AI craft your perfect cover letter and align your resume to this job's criteria.

By using our AI tools, you consent to sharing your profile with our AI partner for this purpose.

Apply now

Please let Webflow know you found this job on Himalayas. This helps us grow!

Apply now

About the job

Apply before

Jun 08, 2024

Posted on

Apr 09, 2024

Job type

Full Time

Experience level

Senior

Salary

Salary: 143k-216k USD

Location requirements

Hiring timezones

United States +/- 0 hours

About Webflow

Learn more about Webflow and their company culture.

View company profile

Webflow is the first design and hosting platform built from the ground up for the mobile age. It is the only hosted service that allows designers to create websites that work on every device, and push it live to production without a developer.

Webflow empowers designers to create beautiful, responsive websites—without writing a single line of code, or relying on a developer. Its drag-and-drop interface looks, feels, and works like familiar desktop design tools, and writes clean, semantic code any developer would be proud of.

Get started today—for free—but brace yourself: your workflow's about to be transformed.

Webflow is backed by Y Combinator, Khosla Ventures, Tim Draper, and other awesome investors.

Employee benefits

Learn about the employee benefits and perks provided at Webflow.

View benefits

Company meals

Remote Webflowers get $380 per month for remote work expenses like snacks and coffee!

Recharge Sabbaticals

Take a 5-week break, fully paid, after every 5 years with us! You'll also get a $2,500 bonus.

Commuter benefits

If you live in SF and plan to commute to our office, you’ll receive up to $380 a month in commuter benefits.

401(k) and financial planning

You know, for when you retire. We also offer free access to financial planning services, provide free CPA and tax filing services, and more.

View Webflow's employee benefits
Claim this profileWebflow logoWE

Webflow

Company size

51-200

Founded in

2012

Chief executive officer

Vlad Magdalin

View company profileVisit webflow.com

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

47 remote jobs at Webflow

Explore the variety of open remote roles at Webflow, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Webflow

Remote companies like Webflow

Find your next opportunity by exploring profiles of companies that are similar to Webflow. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join thousands of other remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan