About the Role

Gallup is seeking a Remote Security Engineer who thrives at the intersection of engineering and security. In this role, you will anticipate attacks, outsmart threats, and safeguard innovation. As a Remote Security Engineer, you'll apply deep offensive security expertise to test Gallup's products and collaborate with developers to turn findings into secure, resilient applications. This role offers the autonomy to innovate, the responsibility to safeguard critical systems, and the opportunity to leave a lasting impact on how security scales across Gallup.

What You'll Do

  • Review and advise on secure architecture and design for SaaS applications built and hosted in AWS.
  • Perform penetration testing across web, mobile, and API applications to identify and validate security vulnerabilities.
  • Partner with engineering teams to incorporate security into applications from the start through secure coding guidance, reviews, and awareness.
  • Use static code analysis and code reviews to augment penetration testing and uncover vulnerabilities earlier in the development process.
  • Secure open-source and third-party components through software composition analysis (SCA) and package management best practices.

Requirements

  • Bachelor's degree in cybersecurity, information assurance, computer science, or a related field required.
  • At least two years of experience in enterprise application security engineering required.
  • Demonstrated experience with penetration testing and vulnerability assessment tools.
  • Strong understanding of secure coding practices and security frameworks.
  • Excellent communication skills to convey complex risks into clear, actionable guidance.

Nice to Have

  • Certifications such as CISSP, CEH, or OSCP.
  • Experience with cloud security, particularly AWS.
  • Familiarity with DevSecOps practices.

What We Offer

  • Competitive salary with opportunities for growth.
  • Flexible remote work environment.
  • Health and wellness benefits.
  • Professional development and learning opportunities.
  • Collaborative and innovative team culture.
Why This Job8.5 of 10

This Remote Security Engineer position at Gallup offers a unique opportunity to safeguard innovation while working in a flexible remote environment. With a competitive salary and a focus on professional development, this role is ideal for those passionate about cybersecurity.

Salary Range
Required
0/1
Optional
0/1
Bonus
0/1

Who Will Succeed Here

Proficient in penetration testing tools such as Metasploit and Burp Suite, with experience in conducting vulnerability assessments on AWS infrastructure.

Self-motivated and disciplined, essential for thriving in a remote work environment, with a proactive approach to continuous learning in security trends and techniques.

Strong understanding of secure coding practices and experience with static code analysis tools such as SonarQube, enabling effective collaboration with developers to enhance application security.

Learning Resources

Penetration Testing Tutorial: How to Become a Penetration Testerarticle

Career Path

Remote Security Engineer - Safeguard Innovation(Now)Lead Security Engineer(1-2 years)Security Architect(3-5 years)

Market Overview

Market Size 2024
$20B
Annual Growth
12.5%
AI Adoption in Security
45%
Investment in Cybersecurity
+150%
Labour Demand for Security Roles
+30%
Avg Salary for Security Engineers
$120K

Skills & Requirements

Required
Penetration TestingVulnerability AssessmentAWS
Growing in Demand
Cloud SecurityThreat IntelligenceIncident Response
Declining
Static Code Analysis Tools (e.g., Fortify)Basic Network Security Protocols

Domain Trends

Increased Demand for Cloud Security
With 90% of organizations adopting cloud services, there's a critical need for security engineers who can ensure cloud infrastructure is secure.
Rise of Automated Penetration Testing
Automated tools for penetration testing are expected to grow by 25% in use, as organizations seek to streamline security assessments.
Focus on Secure Coding Practices
Over 60% of breaches are due to insecure code; hence, companies are emphasizing training in secure coding, making it a vital skill for security engineers.

Industry News

Loading latest industry news...

Finding relevant articles from the last 6 months

All job postings are automatically gathered by algorithms. We do not review or verify listings, be careful when applying and do not sign-in with iCloud or Google services.