Senior Product Security Engineer (Remote)

| Remote
Sorry, this job was removed at 7:20 a.m. (EST) on Friday, March 18, 2022
Find out who’s hiring remotely
See all Remote jobs
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

The health and safety of Enova’s employees is our number one priority.  Enova has not yet determined a return to office date, but will require all employees to be fully vaccinated for COVID-19 before such date.  Proof of vaccination will be required regardless of work location, unless prohibited by applicable state law. Employees may request an exemption to the vaccination policy due to medical reasons, sincerely-held religious beliefs, or as otherwise permitted by applicable state law.

Enova is currently accepting candidates for remote positions in the following eligible states: AZ, CT, ID, IL, IN, ME, MI, MN, NE, NV, NJ, NM, NY, UT, WI.

About the role: 

In this role, you will be responsible for building, developing and designing strategies of embedding security testing and enforcement within the SDLC across Enova Products. This is a hands-on role requiring in-depth knowledge of software security principles. You will be responsible for prioritization and implementation of various DevSecOps projects and Tech initiatives across all of Enova’s Digital Products. In addition, you will be responsible for conducting application static code reviews, dynamic security assessments, build Container security standards, AWS security posture assessments. You will be expected to have a “can-do” attitude and work independently to drive solutions. Enova’s Security Engineering team designs, implements, and administers the tools and mechanisms involved with providing end to end IT security for Enova.


What you’ll be doing: 

  • Serving as a security subject matter expert in a consultative capacity with the development teams through the software engineering process – including security reviews/remediation at various stages of the SDLC.
  • Building partnerships with other engineering teams, be a source of expertise in security best practices.
  • Performing threat modeling, architecture reviews, and application testing ensuring critical vulnerabilities are identified, communicated to team members, and driving delivery of mitigations.
  • Developing and delivering security training to software engineers.
  • Researching emerging technologies and maintaining awareness of current security risks in support of security enhancement and development efforts.
  • Coordinating around, participating in and managing information security projects.
  • Implementing tools to test and enforce application security policy as part of DevSecOps pipeline
  • Using appropriate interpersonal styles and subject matter knowledge to partner, gain trust and influence across the organization.
  • Delivering best in class customer service to internal customers
  • Playing a senior role in design, development, quality and operations of services owned by the team partnering across product management, architects and operations.
  • Mentor software engineers, security engineers and evangelize security initiatives.


We’re excited about you if you have:

  • Experience in AWS(Amazon Web Services), Containers(Dockers/Kubernetes), Microservice architectures, past DevOps/Software engineering experience.
  • Experience with security testing tools such as Kali, Snyk, Checkmarx, GoSec, Burp Suite, OWASP ZAP, etc.
  • Proficiency with application pen testing and vulnerability assessments


An ideal candidate may also have:

  • Programming experience in Go, Python, Java, JavaScript, Ruby etc.
  • Familiarity on Frameworks such as Ruby on Rails, Java Spring Boot etc..
  • Strong communication skills and desire to collaborate across teams
  • Demonstrated ability to ship production-quality software in a dynamic environment
  • Experience working with firmware and hardware security
  • Familiarity with data privacy regulations and compliance
  • OSCP, OSWE, SANs, AWS Security Speciality Certification, Certified Kubernetes Security Specialist (CKS).
  • Experience with threat modeling and attack surface design 


About our team:

Our IT Security Engineering Team works alongside our teams in Systems, Monitoring, Application Engineering, and Network Engineering to deliver top notch and secure infrastructure and automation solutions. We are experts in the IT security field, but are also well-versed in applications, development life cycles, and automation techniques. We have passionate debates about technology with consensus in solutions, flexible team structures, an irrelevance of title in problem solving, and a desire to Do The Right Thing.


Enova currently uses a multitude of Application Security tools such as Checkmarx, Snyk, Burp Suite Pro, Anchore Container Security, AWS (GuardDuty, SecurityHub), GoSec. Our server and application platform primarily runs on Vmware and several workloads exist in Amazon, with plans to expand services into the cloud.

About Enova:
Enova is a leading financial technology company providing online financial services through its AI and machine learning powered lending platform. Enova serves the needs of non-prime consumers and small businesses, who are frequently underserved by traditional banks. Enova has provided more than 7 million customers with over $40 billion in loans and financing with market leading products that provide a path for them to improve their financial health. Want to learn more? Just ask any of our almost 1,500 employees.

Our goal at Enova, we believe that diversity and inclusion among our teammates is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool. It is our policy to provide equal employment opportunity for all persons and not discriminate in employment decisions by placing the most qualified person in each job, without regard to any other classification protected by federal, state, or local law. California Applicants: Click here to review our California Privacy Policy for Job Applicants.

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • Sales & Marketing
    • JavaLanguages
    • JavascriptLanguages
    • PythonLanguages
    • RLanguages
    • SqlLanguages
    • ConfluenceManagement
    • JIRAManagement
    • WordpressCMS
    • SalesforceCRM

Location

A short walk from the Empire State Building and Times Square, our office is located amid the bustle of midtown Manhattan.

An Insider's view of Enova

What’s the vibe like in the office?

OnDeck’s offices have a distinct vibe creating a unique culture that drives passion and individuality. There is empowering messaging throughout the office on each of our floors, designed by our very own Marketing team, through GIANT wall decals and framed posters with a focus on success highlighting team members.

Manny

Manager, Strategic Partnerships Sales

How do you collaborate with other teams in the company?

Communication is key when collaborating cross functionally. My team works very closely with sales and we have multiple methods of communication. This includes monthly email reports and high level check ins in addition to the day-to-day interactions that take place at an agent level. Our location in the office also allows for easy interactions.

Chris

Manager – TLP Program

What are Enova Perks + Benefits

Enova Benefits Overview

Enova believes that each and every team member plays an important role in our company’s success. That’s why we strive to provide you and your family with a competitive and comprehensive benefit program with a variety of options and opportunities.

Culture
Volunteer in local community
Partners with nonprofits
Open door policy
Pair programming
Open office floor plan
Flexible work schedule
Diversity
Dedicated diversity and inclusion staff
Mandated unconscious bias training
Diversity manifesto
Diversity employee resource groups
Hiring practices that promote diversity
Health Insurance & Wellness Benefits
Flexible Spending Account (FSA)
Employees have the option to set aside pre-tax dollars to pay for eligible Medical, Dental and Vision expenses as well as eligible child care expenses.
Disability insurance
Our short-term plan provides a level of continued income in the event you become disabled and cannot work. Should your disability extend past 26 weeks, LTD kicks in at 60% of base monthly earnings.
Dental insurance
Employees can choose from two dental plans including one that is offered at no cost for employee only coverage.
Vision insurance
Our Vision plan provides affordable eye care and discounts to cover routine eye exams, prescription eyeglasses or contact lenses.
Health insurance
We offer employees flexibility to choose from several comprehensive medical plans.
Life insurance
Our basic life insurance plan is a core benefit provided by the company at no cost to you. You can purchase additional life insurance for yourself, spouse or domestic partner and eligible dependents.
Pet insurance
You have the option to elect pet insurance which includes coverage for veterinary expenses related to accident and illnesses.
Wellness programs
Mental health benefits
Financial & Retirement
401(K)
Our 401(k) plan provides you with an opportunity to invest in your future with the option of contributing pre-tax into your retirement account.
401(K) matching
We currently match 50% up to the first 6% of your deferrals.
Performance bonus
Annual incentives also referred to as bonuses are based on achievement of personal and company performance targets.
Charitable contribution matching
Child Care & Parental Leave Benefits
Childcare benefits
Generous parental leave
Family medical leave
Return-to-work program post parental leave
Company sponsored family events
Vacation & Time Off Benefits
Paid volunteer time
If team members volunteer during the work day, they are paid for their time.
Sabbatical
Paid holidays
Paid sick days
Office Perks
Commuter benefits
The commuter benefits plan provides you with the opportunity to pay for your commuting costs (mass transit and parking) with pre-tax dollars (up to the IRS maximums).
Company-sponsored outings
Free snacks and drinks
Variety of healthy and delicious snacks including yogurt, cereal, nuts, oatmeal...as well as drinks and coffee.
Some meals provided
Company-sponsored happy hours
Bi-weekly social hour in each office, alternating breakfast and evening to accommodate different team member lifestyles.
Onsite office parking
Fitness stipend
Home-office stipend for remote employees
Onsite gym
Professional Development Benefits
Job training & conferences
Each department gets a set budget every year to send their own team members to job training and conferences relevant to their job and development.
Tuition reimbursement
Team members are eligible to apply for tuition reimbursement for various career and professional development opportunities.
Lunch and learns
We host lunch and learn meetings on occasion.
Promote from within
Mentorship program
Continuing education stipend
Online course subscriptions available
Customized development tracks
Paid industry certifications

Additional Perks + Benefits

Sabbatical program • Recognition programs • On-site discounted manicures, haircuts and massages • After-hours food delivery and commuting reimbursement • Monthly social events • Discounted gym memberships • Pet insurance

More Jobs at Enova

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about EnovaFind similar jobs like this