The Principal Application Security Engineer at Barracuda Networks is responsible for ensuring the security of Barracuda's software and services. This involves source code review, manual application security assessments, integrating automated security solutions, architecture reviews, and providing expert guidance on security best practices. The role requires collaborating with development teams throughout the software lifecycle, responding to security incidents, and managing bug bounty programs. A deep understanding of software security vulnerabilities, experience with penetration testing, and strong communication skills are essential. The engineer will also evaluate new security technologies and help improve security processes.
Good To Have:- Solutions architecture review
- Threat modeling
- Fuzzing
- SAST/DAST/SCA tools
- IaC and cloud security (Azure, AWS)
- OAuth/OpenID Connect, SAML
- Process improvement and automation
Must Have:- 7+ years experience
- Source code review (Python, PHP, Go)
- Manual application penetration testing
- Vulnerability assessment and remediation
- Collaboration with development teams
- Security incident response
- Bug bounty program management