Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Senior Application Security Engineer image - Rise Careers
Job details

Senior Application Security Engineer

Founded in 2012, EasyPost is a YC unicorn whose mission is to make shipping simple for businesses, from garage startups to the Fortune 500. Shipping, now more than ever, is the backbone of the global economy, but integrating the technology-enabled operations of a modern business with the low-tech and complex shipping industry has always been a challenge. EasyPost solves this problem with the first developer-friendly REST API for shipping, and we continue to push boundaries and discover new ways to simplify shipping for all. Our team is rapidly growing, and this is the perfect time to get on board. Join us, and help build the shipping infrastructure of the future.


Position Summary: 


The Senior Application Security Engineer will play a critical role in maintaining and improving the security of EasyPost’s growing and evolving logistics ecosystem. Responsibilities will include identifying, planning, and completing high-impact security projects, reviewing new proposed product features, building new security systems and programs. The Senior Security Engineer will leverage their experience and creativity to protect millions of users, the company, and our partner organizations against both identified and emerging security risks.



Essential Duties and Responsibilities:


The essential functions include, but are not limited to the following:


o Lead the design, building and maintenance of security systems and infrastructure that support the organization's evolving business and security goals.

o Collaborate with other teams to integrate security and privacy controls and technology into the company’s overall planning and development process from project inception to project delivery.

o Build systems and programs that help security at EasyPost to scale efficiently in both breadth and depth of coverage.

o Embrace “shift-left” DevSecOps patterns, including infrastructure-as-code and Continuous Integration/Continuous Delivery design patterns that move security feedback to the earliest phases of product development and provide faster feedback to partner teams.

o Design and build key competitive security features within the product itself that will support continued business growth among security-conscious customers.

o Build and maintain security alerting infrastructure that delivers timely, relevant, and actionable alerts directly to internal staff, customers, and users.

o Create and maintain self-service documentation, training material, and knowledge base resources that help developers be more productive and write safer code.

o Work directly with M&A entities to integrate their products and improve the overall security posture of their existing development and support environments.


Minimum Education & Experience Qualifications:


o Bachelor's degree in computer science, management information systems, or related field.

o 8+ years of related experience, master’s degree and 6+ years of related experience, or equivalent related work experience. 

o Comfortable writing production-ready code daily in at least two of the following languages: Python, Ruby, Go, or Rust.

o Ability to design systems that are simple to understand, maintainable, scalable, and resilient.

o Prior experience securing large-scale web applications and/or Application Programming Interfaces (APIs), including performing security design reviews, vulnerability assessments, and building testing strategies for logic flaws.

o The ability to understand and communicate concepts around threat modeling and risk management, including to both technical and non-technical stakeholders.

o Proven history of building strong partnerships with Engineering and Product teams to deliver world-class products and features.

o Working knowledge of several compliance and regulatory frameworks (SOC2, ISO 27001, SOX/ITGC, HIPAA, GDPR, CCPA, etc…)

o Experience in assessing risk and selecting key objectives during the vendor management lifecycle for software, hardware, cloud, and software-as-a-service vendors.

o Deep knowledge of how to build and maintain mixed computing environments (Linux, Windows, Mac OS, and mobile devices).

o Past experience with migrating applications and services to public cloud providers (AWS, GCP, Azure, etc…)


$125,000 - $170,000 a year

The posted salary range represents the base compensation for this role. Actual compensation may vary based on factors including, but not limited to, experience, education, skills, geographic location, and internal equity.

What We Offer:


o Comprehensive medical, dental, vision, and life insurance

o Competitive compensation package and equity

o Monthly work from home stipend of $50

o Flexible work schedule and paid time off

o Collaborative culture with a supportive team

o A great place to work with unlimited growth opportunities

o The opportunity to make massive contributions at a hyper-growth company

o Make an impact on a product helping ship millions of packages per day


Data Privacy Notice for Job Applicants:

For information on personal data processing, please see our Privacy Policy: https://www.easypost.com/privacy


"EasyPost is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, protected veteran status or other characteristics protected by law."


To be considered for this position, you must be authorized and based in the United States.

EasyPost Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
EasyPost DE&I Review
4.6 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of EasyPost
EasyPost CEO photo
Jarrett Streebin
Approve of CEO

Average salary estimate

$147500 / YEARLY (est.)
min
max
$125000K
$170000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Posted 10 days ago

Join EasyPost as a Senior DevOps Engineer and be part of a team transforming the shipping industry with developer-friendly solutions.

Photo of the Rise User
Posted 6 days ago

Join Sandvik Group as a Chief Information Security Officer to spearhead cybersecurity strategies and drive digital transformation across the organization.

Photo of the Rise User
Unisys Hybrid Deakin, ACT, Australia
Posted 3 days ago

Join Unisys as an Apps Packaging & SOE Engineer to leverage your expertise in modern endpoint management and contribute to the engineering of Windows environments.

Photo of the Rise User
O-I Remote Baraniaka 6, 61-245 Poznań, Poland
Posted 11 days ago

Join O-I as a Global Network and Telecommunications Specialist, where you will ensure robust network infrastructure supporting global operations.

Photo of the Rise User
Posted 13 days ago

Join Sigma Defense as a Senior DevSecOps Engineer and play a key role in deploying applications for the DoD in a collaborative hybrid environment.

Photo of the Rise User
Aretum Remote No location specified
Posted 11 days ago

We are looking for a Cybersecurity Project Manager at Aretum to provide strategic leadership in cybersecurity for federal clients.

Photo of the Rise User
Wabash Valley Power Alliance Remote Indianapolis, Indiana, United States
Posted 12 days ago

Join Wabash Valley Power as a Cybersecurity Analyst and safeguard critical infrastructure while enjoying a unique employee culture.

bdx Hybrid USA CA - San Diego TC Bldg C&D
Posted 11 days ago

Join BD as an Integration Architect Intern and dive into the world of healthcare technology and system integration.

Photo of the Rise User

Join our team as a Cyber Security Analyst to lead IAM technical integrations and drive security implementations.

Photo of the Rise User

Help transform the SharePoint intranet experience at Unit4 as a SharePoint Intranet Content Specialist on a fixed-term contract.

Photo of the Rise User

Join Control Risks as an AI/ML Architect to build groundbreaking AI systems for risk intelligence in a startup environment.

Photo of the Rise User
Posted 3 days ago

Join Agile Defense as an Infrastructure Deployment Manager to lead IT deployment initiatives and support critical missions.

Photo of the Rise User
Posted 2 days ago

Take charge as an Infrastructure Operations Manager at Agile Defense, contributing to pivotal national security operations while fostering a supportive and innovative team environment.

Photo of the Rise User
Inclusive & Diverse
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony

Help drive business planning and system enhancements as a Senior IT Business Lead Analyst at Citi.

Deliver the most reliable logistics technology platform for businesses of all sizes to ship sustainably.

16 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 16, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Dayton just viewed SDET III at Interface AI
Photo of the Rise User
Someone from OH, Dayton just viewed QA Engineer, Services at Thomson Reuters
Photo of the Rise User
Someone from OH, Toledo just viewed Revenue Cycle Manager at Finni Health
Photo of the Rise User
Someone from OH, Toledo just viewed Senior Director of Revenue Cycle at Gather Health
Photo of the Rise User
Someone from OH, Cincinnati just viewed Educational Consultant at ClassDojo
Photo of the Rise User
100+ people applied to Cybersecurity Intern at Dewberry