At a Glance
- Tasks: Support application security by automating scans and integrating security tools.
- Company: Veeva Systems is a pioneering SaaS company transforming life sciences with a mission-driven approach.
- Benefits: Enjoy flexible work options, including remote work, and a culture that values diversity and inclusion.
- Why this job: Join a fast-growing company making a positive impact in the life sciences industry while developing your skills.
- Qualifications: Bachelor's degree in Computer Science or related field; coding skills in Java or Python required.
- Other info: Experience with cloud services like AWS is a plus; we value diverse backgrounds and perspectives.
The predicted salary is between 36000 - 60000 £ per year.
Veeva Systems is a mission-driven organization and pioneer in industry cloud, helping life sciences companies bring therapies to patients faster. As one of the fastest-growing SaaS companies in history, we surpassed $2B in revenue in our last fiscal year with extensive growth potential ahead. At the heart of Veeva are our values: Do the Right Thing, Customer Success, Employee Success, and Speed. We support your flexibility to work from home or in the office, so you can thrive in your ideal environment. Join us in transforming the life sciences industry, committed to making a positive impact on its customers, employees, and communities.
The Role
Veeva’s Security Engineering team is seeking an aspiring Application Security Engineer that wants to work with Veeva’s product teams to secure their applications. This role has a broad scope, ranging from assisting with managing our SAST/SCA environment to developing Dev Sec Ops automation services, and system integrations using APIs, Webhooks, or other custom integrations of Veeva’s infrastructure. Development of automated processes of security tools, correlation of data through analytics, and design of integrated dashboard tools across our multiple platforms. You will be working as a security expert supporting our product development teams on code quality issues and findings.
What You’ll Do
- Support Checkmarx SAST & SCA platform, tuning and supporting product development
- Assist application product teams with scan automation via pipeline build such as Jenkins or CI/CD
- Automation of security tools into the DevSecOps processes
- Create best practices, system troubleshooting, or process documentation
- Write code supporting data lake and data warehouse collection and data transformation processes
- Maintain security infrastructure, tools, and systems
- Integration of security tools through APIs, webhook, or other custom integration
- Conduct full life cycle engagements with business units independently or as part of a team
- Create and maintain integrated security dashboards pulling multiple security systems into a unified global view
Requirements
- Bachelor of Science in Computer Science, Computer Engineering, or related field, or equivalent work experience
- Coding skills in at least one primary language, such as Java or Python and React
- Understanding of OWASP Top 10, SANS Top 20, NIST 800-53, CIS, CSC, or other security standards
- Utilize Static Application Security Testing tools (i.e. Checkmarx) to identify and remediate code vulnerabilities
- 1+ years as a security engineer or application developer
- Knowledge and understanding in various disciplines such as security engineering, infrastructure and network security, authentication and security
- Knowledge of protocols, cryptography, or application security
- Experience with interpreted or compiled languages: Python, Java, React, Ruby, Perl, PHP, C/C++, C#
- Experience with cloud service providers and their offerings, preferably AWS and its various technologies and APIs, Azure, and Alibaba Cloud
Nice to Have
- Bachelor of Science in Cyber Security, Information Security, MIS, or equivalent
- Experience in Web and Mobile (Android/iOS) based application/service assessment
- Knowledge of fuzzing, memory corruption, and exploit development
- Familiar with Jenkins, Bamboo, CI/CD Pipelines, and other automation tools
- Experience with Big Data technologies such as Elastic, Cloudera, Hadoop, Datadog, or others
- Experience maintaining security tools and automation scripts to streamline security processes
Veeva’s headquarters is located in the San Francisco Bay Area with offices in more than 15 countries around the world. As an equal opportunity employer, Veeva is committed to fostering a culture of inclusion and growing a diverse workforce. Diversity makes us stronger. It comes in many forms. Gender, race, ethnicity, religion, politics, sexual orientation, age, disability and life experience shape us all into unique individuals. We value people for the individuals they are and the contributions they can bring to our teams.
If you need assistance or accommodation due to a disability or special need when applying for a role or in our recruitment process, please contact us at talent_accommodations@veeva.com.
Associate Application Security Engineer employer: Veeva Systems, Inc.
Contact Detail:
Veeva Systems, Inc. Recruiting Team
talent_accommodations@veeva.com
StudySmarter Expert Advice 🤫
We think this is how you could land Associate Application Security Engineer
✨Tip Number 1
Familiarise yourself with Veeva's core values: Do the Right Thing, Customer Success, Employee Success, and Speed. Tailor your conversations during interviews to reflect how you embody these values in your work and how they align with Veeva's mission.
✨Tip Number 2
Gain hands-on experience with tools mentioned in the job description, such as Checkmarx for SAST/SCA. Consider setting up a personal project where you can apply these tools to demonstrate your practical knowledge during discussions with the hiring team.
✨Tip Number 3
Network with current or former employees of Veeva Systems on platforms like LinkedIn. Engaging with them can provide insights into the company culture and expectations, which can be invaluable when preparing for interviews.
✨Tip Number 4
Stay updated on the latest trends in application security and cloud technologies, especially those related to AWS and Azure. Being able to discuss recent developments or challenges in the field can set you apart as a knowledgeable candidate.
We think you need these skills to ace Associate Application Security Engineer
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of the Associate Application Security Engineer position. Familiarise yourself with Veeva Systems' mission and values to align your application with their culture.
Tailor Your CV: Customise your CV to highlight relevant experience and skills that match the job description. Emphasise your coding skills in languages like Java or Python, and any experience with security standards such as OWASP Top 10 or SANS Top 20.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for security engineering and how your background aligns with Veeva's goals. Mention specific projects or experiences that demonstrate your ability to support product development teams and automate security processes.
Showcase Relevant Projects: If you have worked on projects related to application security, DevSecOps, or automation, be sure to include these in your application. Provide details about your role, the technologies used, and the impact of your contributions.
How to prepare for a job interview at Veeva Systems, Inc.
✨Understand the Company Values
Before your interview, make sure you understand Veeva's core values: Do the Right Thing, Customer Success, Employee Success, and Speed. Be prepared to discuss how these values resonate with you and how you can contribute to them in your role as an Associate Application Security Engineer.
✨Showcase Your Technical Skills
Be ready to demonstrate your coding skills in languages like Java or Python, as well as your understanding of security standards such as OWASP Top 10. Prepare examples of past projects where you've applied these skills, especially in relation to application security.
✨Familiarise Yourself with Tools and Technologies
Research the tools mentioned in the job description, such as Checkmarx for SAST/SCA, Jenkins for CI/CD, and any cloud services like AWS. Being able to discuss your experience with these tools will show that you're proactive and knowledgeable about the role.
✨Prepare Questions for the Interviewers
Think of insightful questions to ask your interviewers about the team dynamics, the challenges they face in application security, and how success is measured in this role. This shows your genuine interest in the position and helps you assess if it's the right fit for you.