Sr. Software Security Engineer

3 Hours ago • 3-5 Years

Job Summary

Job Description

The Sr. Software Security Engineer will be responsible for ensuring the security of software development processes, focusing on cloud and on-premise security controls. This role involves integrating security tools within source code repositories, build environments, and artifactory levels. Key responsibilities include supporting secure software development life cycle activities such as DAST, SAST, and penetration testing. The engineer will collaborate with development teams, manage WAF configurations, automate security testing, and participate in architecture reviews. The successful candidate will have a strong background in application development and DevOps, with hands-on experience in building software security within CI/CD.
Must have:
  • Operational support for AWS and Azure WAF configurations.
  • Automate Dynamic Application Security Testing (DAST).
  • Perform manual penetration tests on web applications.
  • Maintain Cloudflare DDOS protections and WAF configurations.
  • Experience with GitHub, Perforce, and GitLab.
  • Good working knowledge in scripting languages like Python.
Good to have:
  • Certified Information Systems Security Professional (CISSP).
  • SANS GIAC certifications.
  • Experience with Amazon Web Services, Azure, or Google Cloud Platform.

Job Details

At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology.

Cadence is a pivotal leader in electronic design, building upon more than 30 years of computational software expertise. The company applies its underlying Intelligent System Design strategy to deliver software, hardware and IP that turn design concepts into reality.

Cadence customers are the world’s most innovative companies, delivering extraordinary electronic products from chips to boards to systems for the most dynamic market applications including consumer, hyperscale computing, 5G communications, automotive, aerospace industrial and health.

At Cadence, we hire and develop leaders and innovators who want to make an impact on the world of technology.

Job Title: Sr. Software Security Engineer

Location: Cork, Ireland

                                                           

Reports to: Sreeni Kancharla; VP & CISO

Job Overview:

Cadence’s Information Security team is seeking a Sr. Software Security Engineer. This role will focus on Cloud and on-premise Software Security controls including WAF and CDN tools.  This is a Security Development Operations role that will ensure security tool integration at the source code repositories (Perforce, Github etc.), build environment, and artifactory level.  As a member of the Information Security team, this role will develop and support the secure software develop life cycle, including DAST, SAST, SCA, penetration testing, and attack surface management. 

 This role will interface directly with development teams. Of course, there is broad exposure to other aspects of information security related tasks such as incident response, vulnerability management, and deployment of security solutions. The successful candidate for this position is a highly motivated individual with a strong Application Development and DevOps background with hands-on experience in building software security within CI/CD.

Job Responsibilities:

•             Perform operational support for AWS WAF configurations – updating whitelists and creating security automation web ACLs to protect Internet facing endpoints and applications.

•             Perform operational support for Azure WAF configurations

•             Automate Dynamic Application Security Testing (DAST) in the CI/CD pipeline. 

•             Perform manual penetration tests on web applications

•             Maintain Cloudflare DDOS protections and WAF configurations.

•             Attend enterprise architecture reviews to standardize and secure new deployments

Job Qualifications:

•             Bachelor’s degree in computer science or engineering field or equivalent combination of education and relevant 3 – 5 years of experience

•             Experience with GitHub, Perforce, GitLab

•             Experience with SonaType, JFrog

•             Good working knowledge in scripting language, Python, PowerShell, etc.

•             Strong understanding of Linux/UNIX and Windows based operating systems and networks.

•             A passion to learn and educate others on how to build secure software.

•             Experience with CVE and CVSS vulnerability scoring

•             Experience with Jira IT ticketing systems.

•             US and EU Cybersecurity regulations

•             Ability to work in a group setting and independently

Additional Skills/Preferences:                 

•             Certified Information Systems Security Professional (CISSP)

•             SANS GIAC certifications

•             Amazon Web Services, Azure, Google Cloud Platform

Additional Information:

Strong working knowledge of Application security concepts and technologies such as:

•             Experience in OWASP Top 10 and usage of common AppSec testing tools.

•             Experience of Secure by Design concepts and threat modeling

•             Knowledge of common security libraries, security controls, and common security flaws.

•             Experience in application penetration testing techniques and tools

•             Knowledge of application technologies including Web applications, Web services, XML, SOA, AJAX, JSON, and Web scanning tools

•             Open Source Security (OSS) - Software Composition Analysis (SCA)

•             Static Application Security Testing (SAST)

•             Dynamic Application Security Testing (DAST)

•             Security Architecture Review - Threat Modeling

•             AWS and Azure WAF Configuration and whitelisting

•             Cloudflare DDOS configuration and operation

•             Manual Penetration Testing

•             Penetration testing with 3rd party vendors

•             Host level vulnerability Scanning

•             Web application security training course development and delivery

Cadence is committed to equal employment opportunity and employment equity throughout all levels of the organization. We strive to attract a qualified and diverse candidate pool and encourage diversity and inclusion in the workplace. 

Travel: If applicable, include an estimate of travel (e.g., “>10% domestic travel”).

We’re doing work that matters. Help us solve what others can’t.

Similar Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Skill Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Jobs in Cork, County Cork, Ireland

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Cadence plays a critical role in creating the technologies that modern life depends on. We are a global electronic design automation company, providing software, hardware, and intellectual property to design advanced semiconductor chips that enable our customers create revolutionary products and experiences. Thanks to the outstanding caliber of the Cadence team and the empowering culture that we have cultivated for over 25 years, Cadence continues to be recognized by Fortune Magazine as one of the 100 Best Companies to Work For. Our shared passion for solving the world’s toughest technical challenges, our dedication to pushing the limits of the industry, and our drive to do meaningful work differentiates the people of Cadence.

Cork, County Cork, Ireland (On-Site)

Dallas, Texas, United States (On-Site)

Austin, Texas, United States (On-Site)

Bengaluru, Karnataka, India (On-Site)

Haifa, Haifa District, Israel (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Hsinchu, Hsinchu City, Taiwan (On-Site)

Hsinchu, Hsinchu City, Taiwan (On-Site)

Hyderabad, Telangana, India (On-Site)

View All Jobs

Get notified when new jobs are added by Cadence

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug