Jobs

Security Engineer I

Smartsheet is looking for an Application Security Professional to join our Product Security team.

The Smartsheet Product Security team owns the entire portfolio of product security practices and focuses on a tools-based approach that automates the detection of commonly identified security weaknesses, eliminates risk through secure frameworks and paved-path designs, and empowers engineering to build products quickly and securely. Trust is one of our core values, and as an engineering organization, trust requires maintaining and improving on systems that secure our customers' data.

In 2005, Smartsheet was founded on the idea that teams and millions of people worldwide deserve a better way to deliver their very best work. Today, we deliver a leading cloud-based platform for work execution, empowering organizations to plan, capture, track, automate, and report on work at scale, resulting in more efficient processes and better business outcomes.

You will report to our Director of Product Security located in our Bellevue, WA office, or you may work remotely from anywhere in the US where Smartsheet is a registered employer.

You Will:

  • Be a collaborator and resource with the development and engineering teams to help address security within the application/service

  • Support the pen test program that ensures products are developed to meet security standards

  • Support the bug bounty program

  • Assess and validate security vulnerabilities and support engineering efforts to design remediation/mitigation solutions

  • Participate in the security champions program and help advocate for secure development practices

  • Perform static and dynamic testing

  • Triage vulnerabilities and participate in application security reviews and threat modeling

  • Evaluate, implement, and automate AppSec technologies and tools

You Have:

  • 2+ years of experience in application and/or product security

  • Experience in application security for web-based and cloud applications

  • A mid-level knowledge and understanding of authentication and authorization systems

  • Familiarity with SAST/DAST tools

  • Understanding of DevSecOps frameworks and concepts (BSIMM, shift-left, etc.)

  • Knowledge of common application security attack vectors and security best practices to mitigate application attacks (e.g. OWASP)

Perks & Benefits:

  • HSA, 100% employer-paid premiums, or Buy-up medical/vision and dental coverage options for full-time employees

  • Equity - Restricted Stock Units (RSUs) with all offers

  • Lucrative Employee Stock Purchase Program (15% discount)

  • 401k Match to help you save for your future (50% of your contribution up to the first 6% of your eligible pay)

  • Monthly stipend to support your work and productivity

  • Flexible Time Away Program, plus Incidental Sick Leave

  • Up to 24 weeks of Parental Leave

  • Personal paid Volunteer Day to support our community

  • Opportunities for professional growth and development including access to LinkedIn Learning online courses

  • Company Funded Perks, including a counseling membership, primary care membership, local retail discounts, and your own personal Smartsheet account

  • Teleworking options from any registered location in the U.S. (role specific)

Smartsheet provides a reasonable range of compensation for roles that may be hired in different geographic areas we are licensed to operate our business from. Actual compensation is determined by several factors including, but not limited to, level of professional, educational experience, skills, and specific candidate location. In addition, this role will be eligible for a market competitive bonus and RSU stock grant upon accepted offer. California & New York: $108,000-$151,200 | All other US States: $100,000-$140,000

Equal Opportunity Employer:

Smartsheet is an Equal Opportunity Employer committed to fostering an inclusive environment with the best employees. We provide employment opportunities without regard to any legally protected status in accordance with applicable laws in the US, UK, Australia, Japan, Costa Rica, and Germany. If there are preparations we can make to help ensure you have a comfortable and positive interview experience, please let us know.

At Smartsheet, we strive to build an inclusive environment that encourages, supports, and celebrates the diverse voices of our team members who also represent the diverse needs of our customers. We’re looking for people who are driven, authentic, supportive, effective, and honest. You’re encouraged to apply even if your experience doesn’t precisely match our job description—if your career path has been nontraditional, that will set you apart. At Smartsheet, we welcome diverse perspectives and people who aren’t afraid to be innovative—join us!

#BI-Remote

#LI-Remote

Cyber Security Jobs by Category

Cyber Security Salaries