Senior Software Security Engineer

๐Ÿ‡ฎ๐Ÿ‡ณ India - Remote
๐Ÿ”’ Cybersecurity๐ŸŸฃ Senior

Job description

About Us

With electric vehicles expected to be nearly 30% of new vehicle sales by 2025 and more than 50% by 2040, electric mobility is becoming a reality. ChargePoint (NYSE: CHPT) is at the center of this revolution, powering one of the worldโ€™s leading EV charging networks and a comprehensive set of hardware, software and mobile solutions for every charging need across North America and Europe. We bring together drivers, businesses, automakers, policymakers, utilities and other stakeholders to make e-mobility a global reality.

Since our founding in 2007, ChargePoint has focused solely on making the transition to electric easy for businesses, fleets and drivers. ChargePoint offers a once-in-a-lifetime opportunity to create an all-electric future and a trillion-dollar market.

At ChargePoint, we foster a positive and productive work environment by committing to live our values of Be Courageous, Charge Together, Love our Customers, Operate with Openness, and Relentlessly Pursue Awesome. These values guide how we show up every day, align, and work together to build a brighter future for all of us.

Join the team that is building the EV charging industry and make your mark on how people and goods will get everywhere they need to go, in any context, for generations to come.

Reports To

Senior Staff, Product Security

What You Will Be Doing

ChargePoint is looking for a Sr. Software Security Engineer who will build secure products, drive threat modeling, and remediate vulnerabilities. You will architect, design, consult and implement new security paradigms for systems in a rapidly evolving problem space. You will work with Product Security lead on product security strategy, implement tools, architect our product security roadmap, develop process, perform threat assessment and security reviews, and work with engineering teams to implement a security by design culture as part of our product lifecycle. This role will be responsible for providing guidance, advice, oversight, and implementation of controls on product security matters.

As a Software Security engineer, you will design security controls and help validate that our services, applications, stations, and emerging technologies are designed and implemented to the highest security standards. You will be responsible for analyzing the security of applications and services, discovering, and addressing security issues, designing security automation, and decisively taking action to mitigate emerging threats throughout a full secure development life cycle (SDLC). This role will provide career growth opportunities as you gain new security skills in the course of your work. You have an opportunity to experiment, learn, build tools, and work with teams building new technology and services at massive scale in the EV charging space.

This will be an amazing opportunity to define and build secure systems from the ground up from hardware to platform to cloud. The engineer will possess deep technical knowledge and ability and will be tasked with the most demanding projects and design requirements.

What You Will Bring to ChargePoint

  • Experience building relationships with key stakeholders across the business to understand their current and planned product activities (application and embedded)
  • Supporting the integration of security standards, controls, policies into the SDLC
  • Developing and managing a comprehensive product security training program and promoting security awareness throughout the product team agenda
  • Identifying gaps in security design and reviewing proposed application and product architecture with an aim to recommend changes or enhancements
  • Experience developing processes and policies to mitigate key product risks
  • Performing security assessments, identifying, and mitigating risks through effective tools, processes, training, and guidance. Managing product risk assessments and remediation plans
  • Leading internal product meetings to present key product security metrics and risks to senior leadership
  • Influence decision-makers and stakeholders to achieve a consistently high security bar
  • Lead security projects (including security reviews, tool development, and creation of new security practices) with end-to-end ownership
  • Experience working with engineering teams to design and implement security controls
  • Genuine passion for building effective and pragmatic security tools to assess products and services

Requirements

  • 4+ yearsโ€™ experience in designing and implementing application and infrastructure security tools
  • Working experience with CI/CD pipeline, containerization and Microservices
  • Understanding of security architecture and systems to connect the dots between hardware, embedded systems, cloud infrastructure and platform.
  • Experience deploying and securing SaaS applications and cloud environments at scale
  • Experience in application security across SDLC activities such as threat modelling, secure code review, vulnerability management and penetration testing
  • Understanding of different programming languages (C, C++, Java, Python, Go)
  • Ability to identify and mitigate product security risks with the ability to understand materiality of risks and prioritize / differentiate response accordingly
  • Experience in application security tools covering SAST, DAST, IAST/RASP and OWASP
  • Experience building, reviewing, and managing threat models / assessments
  • An understanding of networking and communication protocols (such as TCP/IP, UDP, SSL/TLS, IPSEC, HTTP, HTTPS)
  • Experienced in layers of security and the related security threats, exploits and prevention
  • Excellent written and verbal communication skills with the ability to influence broad range of stakeholders
  • Experience in implementing and managing product security tools (good to have)
  • Experience in the automotive or EV charging industry (good to have)
  • Experience with embedded / hardware security (good to have)
  • Experience with cryptography / encryption / PKI (good to have)

Location

Gurgaon, India; Remote location in India

We are committed to an inclusive and diverse team. ChargePoint is an equal opportunity employer. We do not discriminate based on race, color, ethnicity, ancestry, national origin, religion, sex, gender, gender identity, gender expression, sexual orientation, age, disability, veteran status, genetic information, marital status or any legally protected status.

If there is a match between your experiences/skills and the Company needs, we will contact you directly.

ChargePoint is an equal opportunity employer.

Applicants only - Recruiting agencies do not contact.

Share this job:
Please let ChargePoint know you found this job on Remote First Jobs ๐Ÿ™

Similar Remote Jobs

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service ๐Ÿ™

Apply