About the role
Join Branch as a Senior Application Security Engineer to enhance our security posture.
- •Branch is seeking an experienced Security professional to join our team.
- •This position will work in all aspects of security, so broad security knowledge is preferred.
- •Key Responsibilities Embed security into the SDLC by partnering with Engineering to implement secure design patterns, conduct threat modeling, and deliver developer-focused AppSec training.
- •Lead and perform application security assessments including SAST, DAST, SCA, and manual code review across web, mobile, and API surfaces.
- •Drive API security across internal and external services
- •including authentication, authorization, rate limiting, and abuse prevention controls.
- •Requirements 5–7 years of experience in a security engineering or application security role, ideally within a fintech or high-growth startup environment.
- •Strong communication skills
- •able to translate technical risk clearly for both engineering audiences and senior leadership.
- •Hands-on SAST/DAST experience; familiarity with tools such as Semgrep, Snyk, Checkmarx, Burp Suite Pro, or equivalents.
Tech stack
OAuthJWTOWASPPythonIAMKubernetesSOC 2
Match insights
Tech:OAuth, JWT, OWASP, Python, IAM
Level:Senior