At a Glance
- Tasks: Support application security by automating scans and integrating security tools.
- Company: Veeva Systems is a pioneering SaaS company transforming life sciences with a mission-driven approach.
- Benefits: Enjoy flexible work options, a supportive culture, and the chance to make a real impact.
- Why this job: Join a fast-growing company committed to employee success and societal impact in the life sciences sector.
- Qualifications: Bachelor's degree in Computer Science or related field; coding skills in Java or Python required.
- Other info: Veeva values diversity and inclusion, fostering a unique workplace for all.
The predicted salary is between 28800 - 48000 £ per year.
Veeva Systems is a mission-driven organization and pioneer in industry cloud, helping life sciences companies bring therapies to patients faster. As one of the fastest-growing SaaS companies in history, we surpassed $2B in revenue in our last fiscal year with extensive growth potential ahead. At the heart of Veeva are our values: Do the Right Thing, Customer Success, Employee Success, and Speed. We are not just any public company – we made history in 2021 by becoming a public benefit corporation (PBC), legally bound to balancing the interests of customers, employees, society, and investors.
As a Work Anywhere company, we support your flexibility to work from home or in the office, so you can thrive in your ideal environment. Join us in transforming the life sciences industry, committed to making a positive impact on its customers, employees, and communities.
The Role
Veeva’s Security Engineering team is seeking an aspiring Application Security Engineer that wants to work with Veeva’s product teams to secure their applications. This role has a broad scope, ranging from assisting with managing our SAST/SCA environment to developing Dev Sec Ops automation services, and system integrations using APIs, Webhooks, or other custom integrations of Veeva’s infrastructure. Development of automated processes of security tools, correlation of data through analytics, and design of integrated dashboard tools across our multiple platforms. You will be working as a security expert supporting our product development teams on code quality issues and findings.
What You'll Do
- Support Checkmarx SAST & SCA platform, tuning and supporting product development
- Assist application product teams with scan automation via pipeline build such as Jenkins or CI/CD
- Automation of security tools into the DevSecOps processes
- Create best practices, system troubleshooting, or process documentation
- Write code supporting data lake and data warehouse collection and data transformation processes
- Maintain security infrastructure, tools, and systems
- Integration of security tools through APIs, webhook, or other custom integration
- Conduct full life cycle engagements with business units independently or as part of a team
- Create and maintain integrated security dashboards pulling multiple security systems into a unified global view
Requirements
- Bachelor of Science in Computer Science, Computer Engineering, or related field, or equivalent work experience
- Coding skills in at least one primary language, such as Java or Python and React
- Understanding of OWASP Top 10, SANS Top 20, NIST 800-53, CIS, CSC, or other security standards
- Utilize Static Application Security Testing tools (i.e. Checkmarx) to identify and remediate code vulnerabilities
- 1+ years as a security engineer or application developer
- Knowledge and understanding in various disciplines such as security engineering, infrastructure and network security, authentication and security
- Knowledge of protocols, cryptography, or application security
- Experience with interpreted or compiled languages: Python, Java, React, Ruby, Perl, PHP, C/C++, C#
- Experience with cloud service providers and their offerings, preferably AWS and its various technologies and APIs, Azure, and Alibaba Cloud
Nice to Have
- Bachelor of Science in Cyber Security, Information Security, MIS, or equivalent
- Experience in Web and Mobile (Android/iOS) based application/service assessment
- Knowledge of fuzzing, memory corruption, and exploit development
- Familiar with Jenkins, Bamboo, CI/CD Pipelines, and other automation tools
- Experience with Big Data technologies such as Elastic, Cloudera, Hadoop, Datadog, or others
- Experience maintaining security tools and automation scripts to streamline security processes
Veeva’s headquarters is located in the San Francisco Bay Area with offices in more than 15 countries around the world. As an equal opportunity employer, Veeva is committed to fostering a culture of inclusion and growing a diverse workforce. Diversity makes us stronger. It comes in many forms. Gender, race, ethnicity, religion, politics, sexual orientation, age, disability and life experience shape us all into unique individuals. We value people for the individuals they are and the contributions they can bring to our teams.
If you need assistance or accommodation due to a disability or special need when applying for a role or in our recruitment process, please contact us at talent_accommodations@veeva.com.
Associate Application Security Engineer employer: Veeva Systems
Contact Detail:
Veeva Systems Recruiting Team
talent_accommodations@veeva.com
StudySmarter Expert Advice 🤫
We think this is how you could land Associate Application Security Engineer
✨Tip Number 1
Familiarise yourself with Veeva's core values: Do the Right Thing, Customer Success, Employee Success, and Speed. During your interactions, whether in interviews or networking, demonstrate how your personal values align with theirs.
✨Tip Number 2
Gain hands-on experience with tools mentioned in the job description, such as Checkmarx for SAST/SCA. Being able to discuss your practical knowledge of these tools will set you apart from other candidates.
✨Tip Number 3
Network with current or former employees of Veeva Systems on platforms like LinkedIn. They can provide insights into the company culture and the specific skills that are highly valued in the Associate Application Security Engineer role.
✨Tip Number 4
Stay updated on the latest trends in application security and cloud technologies, especially those related to AWS and Azure. Being knowledgeable about current industry standards will help you engage in meaningful conversations during the interview process.
We think you need these skills to ace Associate Application Security Engineer
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights relevant experience and skills that align with the Associate Application Security Engineer role. Focus on your coding skills, familiarity with security standards, and any experience with tools like Checkmarx.
Craft a Compelling Cover Letter: In your cover letter, express your passion for application security and how your values align with Veeva's mission. Mention specific projects or experiences that demonstrate your ability to support product development teams in securing applications.
Showcase Technical Skills: Clearly outline your technical skills in programming languages such as Java or Python, and your understanding of security protocols. If you have experience with CI/CD pipelines or cloud services, make sure to include that as well.
Highlight Team Collaboration: Since the role involves working with product teams, emphasise any past experiences where you collaborated effectively with others. This could include teamwork in projects, problem-solving, or contributing to documentation and best practices.
How to prepare for a job interview at Veeva Systems
✨Understand the Company Values
Before your interview, make sure you understand Veeva Systems' core values: Do the Right Thing, Customer Success, Employee Success, and Speed. Be prepared to discuss how these values resonate with you and how you can contribute to them in your role.
✨Showcase Your Technical Skills
As an Associate Application Security Engineer, you'll need to demonstrate your coding skills in languages like Java or Python. Be ready to discuss your experience with Static Application Security Testing tools, such as Checkmarx, and how you've used them to identify and remediate vulnerabilities.
✨Familiarise Yourself with Security Standards
Make sure you have a solid understanding of security standards like OWASP Top 10 and NIST 800-53. During the interview, be prepared to explain how these standards apply to application security and how you've implemented them in past projects.
✨Prepare for Scenario-Based Questions
Expect scenario-based questions that assess your problem-solving skills and ability to work under pressure. Think about past experiences where you've had to troubleshoot security issues or automate processes, and be ready to share those examples.