远程工作雷达

安全架构师 - 应用安全

Security Architect - Application Security

开发工程限定地区(需当地身份)
公司HighLevel
薪资未公开
工作地点India
地域资格限定地区(需当地身份)
时区要求日间重叠约 6 小时,基本正常作息
用工类型Full Time
发布时间今天
数据来源Himalayas
前往 Himalayas 查看并投递 →
注意地域限制:该职位明确限定在 India 招聘。如果你是位于中国大陆的求职者,通常需要当地工作身份才能投递,或需与雇主确认是否接受独立合同(Contractor)形式合作。

关于我们的团队

HighLevel 是一个由人工智能驱动的全功能白标销售与营销平台,使代理商、企业家和企业能够提升其数字影响力并推动增长。我们自豪地支持一个全球性且不断壮大的社区,涵盖超过 100 万家企业,包括代理商、顾问和各规模、各行业的企业。HighLevel 为用户提供所有必要的工具,以捕捉、培育并把新客户转化为重复客户。截至 2025 年中期,HighLevel 每天处理超过 40 亿次 API 调用,处理超过 25 亿条消息事件。我们的平台管理着分布在五个数据库中的 470TB 数据,使用超过 250 个微服务,并支持超过 100 万个主机名。

我们的团队

我们在 15 多个国家拥有超过 1500 名团队成员,运营于一个全球化的远程优先环境中。我们不仅仅是在开发软件;我们正在打造一个以创造力、协作和影响力为基础的全球社区。我们自豪地培养一种创新蓬勃发展、想法被庆祝、以人为本的文化,无论人们来自哪里。

我们的影响

截至 2025 年中期,我们的平台每月为超过 100 万家企业提供服务,支持超过 15 亿条信息,帮助生成超过 2 亿个潜在客户,并促成超过 2000 万次对话。这些数字背后是真实的人们在壮大他们的公司,与客户建立联系,并留下自己的印记——而我们有机会帮助实现这一切。

了解更多关于我们,请访问我们的 YouTube 频道或博客文章

您将负责:

  • 在 AWS/GCP/Azure 上展示对云安全架构的精通,包括设计安全、可扩展的云环境,重点关注身份验证、网络安全、加密和合规最佳实践。
  • 在分布式系统和云原生应用程序中进行广泛的安全部署架构审查,早期识别设计风险,并推荐符合业务和工程目标的安全、可扩展的架构模式。
  • 执行并领导对应用、API 和云服务的手动和自动化渗透测试。
  • 推动应用和基础设施层的威胁建模和安全架构审查。
  • 与 Infra/DevOps 合作,进行云网络架构,包括 VPC 设计、安全组、路由和分割。
  • 设计和建议云原生安全控制措施——IAM 强化、角色边界、秘密管理等。
查看英文原文

About Us

HighLevel is an AI powered, all-in-one white-label sales & marketing platform that empowers agencies, entrepreneurs, and businesses to elevate their digital presence and drive growth. We are proud to support a global and growing community of over 1 million businesses, comprised of agencies, consultants, and businesses of all sizes and industries. HighLevel empowers users with all the tools needed to capture, nurture, and close new leads into repeat customers. As of mid 2025, HighLevel processes over 4 billion API hits and handles more than 2.5 billion message events every day. Our platform manages over 470 terabytes of data distributed across five databases, operates with a network of over 250 microservices, and supports over 1 million hostnames.
Our People
With over 1,500 team members across 15+ countries, we operate in a global, remote-first environment. We are building more than software; we are building a global community rooted in creativity, collaboration, and impact. We take pride in cultivating a culture where innovation thrives, ideas are celebrated, and people come first, no matter where they call home.
Our Impact
As of mid 2025, our platform powers over 1.5 billion messages, helps generate over 200 million leads, and facilitates over 20 million conversations for the more than 1 million businesses we serve each month. Behind those numbers are real people growing their companies, connecting with customers, and making their mark - and we get to help make that happen.
Learn more about us on our YouTube Channel or Blog Posts
What You’ll Be Doing:

  • Demonstrated expertise in cloud security architecture across AWS/GCP/Azure, including designing secure, scalable cloud environments with a strong focus on identity, network security, encryption, and compliance best practices.
  • Extensive experience conducting security architecture reviews for distributed systems and cloud-native applications, identifying design risks early and recommending secure, scalable architectural patterns aligned with business and engineering goals.
  • Perform and lead manual and automated penetration testing across applications, APIs, and cloud services
  • Drive threat modeling and secure architecture reviews across app and infrastructure layers
  • Collaborate with Infra/DevOps on cloud network architecture, including VPC design, security groups, routing, and segmentation
  • Design and advise on cloud-native security controls — IAM hardening, role boundaries, secrets management, least privilege
  • Evaluate and improve Kubernetes and container security posture (runtime, image, and network layers)Implement secure-by-default patterns across SDLC, CI/CD, and Infrastructure-as-CodeMonitor emerging threats, CVEs, and vulnerabilities relevant to our stack (web, cloud, infra)
  • Influence internal security tooling, automation pipelines, and security review processes
  • Serve as a security advisor to engineering, SRE, and product teams across key projects

What You’ll Bring:

  • 8+ years of experience in Application Security, Product Security, or Cloud Security, with a strong focus on securing large-scale cloud-native applications.
  • Strong hands-on experience with threat modeling, secure architecture reviews, and pen testing
  • Familiar with OWASP Top 10, STRIDE, and modern security frameworks
  • Experience with tools like Burp Suite, ZAP, Snyk, Metasploit, Semgrep
  • Ability to read and analyze code (e.g., JavaScript, Go, PHP, or )Working knowledge of cloud security principles (preferably AWS)

Preferred Qualifications

  • Experience with multi-tenant SaaS platforms or white-labeled architectures
  • Familiarity with network-level security concepts: VPC design, IAM, zero-trust networksExposure to container security (Docker, Kubernetes)
  • Background in B2B SaaS, especially servicing regulated industries (health, legal, finance)
  • Hands-on with IaC security and CI/CD pipelines (e.g., GitHub Actions, Terraform)

Equal Employment Opportunity Information
The company is an Equal Opportunity Employer. As an employer subject to affirmative action regulations, we invite you to voluntarily provide the following demographic information. This information is used solely for compliance with government record keeping, reporting, and other legal requirements. Providing this information is voluntary and refusal to do so will not affect your application status. This data will be kept separate from your application and will not be used in the hiring decision.
Originally posted on Himalayas

本页面信息整理自 Himalayas,版权归原发布方所有。职位可能随时关闭,投递请以原始页面为准。 本站只做信息聚合展示,不参与招聘流程,也不向求职者收取任何费用。

该公司其他在招职位

← 返回全部职位