Security Application Engineer
RingCentralAbout the role
Say hello to opportunities.
It’s not everyday that you consider starting a new career. We’re RingCentral, and we’re happy that someone as talented as you is considering this role. First, a little about us, we’re a $2 Billion annual revenue company with double digit Annual Recurring Revenue (ARR) and a $93 Billion market opportunity in UCaaS, Contact Center and AI-powered adjacencies. We invest more than $250 million annually to ensure our AI-enabled technology and platforms meet or exceed the needs of our customers.
RingSense AI is our proprietary AI solution. It’s designed to fit the business needs of our customers, orchestrated to be accurate and precise, and built on the same open platform principles we apply to our core software solutions.
This is where you and your skills come in. We are looking for a Security Application Engineer with a strong understanding of web and mobile application vulnerabilities, how they can be detected, exploited and remediated.
Job Duties:
Consult developers on questions related to reports of security scanners*, which includes:
explain why an issue should be considered as a vulnerability
explain circumstances under which an issue might be exploitable
provide suggestions on how an issue can be remediated
Review and validate issues marked as potential false positives by developers; request additional clarifications where required.
Review and improve security scanners configurations:
review scanning rules in presets, make sure that important rules are enabled and irrelevant rules are disabled
make sure security scanners do not miss production code/applications, as well as do not scan testing-only code/applications
where possible and required, adjust scanning rules to improve their accuracy
collaborate with legal to make sure that license violation rules for open source software are configured correctly
Maintain access to security scanners.
Report breached security defects SLA.
Support risk exceptions process for the following cases:
violations of security defects SLA
deviations from security policies/standards (for example, releasing with a higher vulnerability level than defined as satisfactory)
Triage reports from the bug bounty platform, address them to responsible engineering teams
Triage reports from the external attack surface management platform, address them to responsible engineering teams
Maintain security scanners deployed in production environment, which includes:
deploy new versions
patch security vulnerabilities
make sure security hardening benchmarks are met (such as CIS or STIG)
make sure other requirements for production deployment are met (logging, monitoring, backups, etc.)
* - security scanners include, but are not limited to static application security testing (SAST), dynamic application security testing (DAST) and software composition analysis (SCA)
Desired Qualifications:
Technical experience in product architecture, design, implementation
Expertise with product security design, review, implementation including threat modeling and risk assessment implications
To comply with U.S. federal government requirements, U.S. citizenship is required for this position
Extensive experience with web and mobile application testing- SAST/DAST, penetration testing
Secure design and implementation capabilities
Experience with open-source software including lifecycle management, vulnerability management tools
Excellent communication skills, both verbal and written; ability to condense complicated scenarios into simple, risk-based assessments, appropriately targeted for colleagues and upper management
Outstanding organizational and time management skills, desire to work within a highly collaborative team
To comply with U.S. federal government security requirements, U.S. citizenship is required and your employment will be conditioned upon obtaining the Public Trust Verification.
Nice-To-Have:
Any WebRTC, Video and audio streaming
Video codecs
B.S. or equivalent in CS or EE
What we offer:
Comprehensive medical, dental, vision, disability, life insurance
Health Savings Account (HSA), Flexible
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s