Webflow

Application Security Engineer

Save to Kiter
What Webflow is looking for in applicants

Webflow is a visual web development platform that empowers non-coders to create incredible experiences for the web. 

 

We’re looking for an Application Security  Engineer on Webflow's new Security and Compliance team, you will work with the Director of Product Security to help us meet current and future product security needs. 

 

About the role 

  • Location: San Francisco or Remote
  • Full-time

As a Application Security Engineer , you will … 

  • Collaborate with the Webflow engineering team to secure Webflow’s application platform and ecosystem.
  • Bring security best practices to the software development lifecycle.
  • Work as part of a team to champion security standards while balancing business strategies and requirements.
  • Cross-train entry and mid-level application security engineers
  • Support Webflow’s security current and future frameworks such as SOC2

 

That said, these responsibilities are just the start! At Webflow, we encourage you to contribute wherever your interests take you — and shape your role accordingly. And this isn’t just a philosophical bent: we actually give you 4 hours a week (10% of the work week) to pursue passion projects outside of your role responsibilities. 

About you 

You’ll thrive as (a) Application Security Engineer  if you:

  • Have expertise in evaluating application/software with an eye to improve security design, continuous commitment to risk reduction and sustainable security.
  • Have 3+ years of experience in a similar role
  • Have depth and interest in pen testing and breaking software
  • Love to share knowledge, and the gift of explaining complex security concepts with your colleagues.
  • Have a solid understanding of software development security pitfalls.
  • Worked through numerous software supply chain risks
  • Have setup or supported bug bounty programs.
  • Find comfort finding process efficiencies through automating
  • Are passionate about security in general, and always hungry to learn

If you don’t meet 100% of the above qualifications, you should still seriously consider applying. Studies show that you can still be considered for a role if you meet just 50% of the role’s requirements.

About us 

At Webflow, we believe that our success will be defined not only by what we do — but also by how and why we do it. So, here is the Webflow “why” and our “how”: 


Our dual missions — one for the world, one for us

  1. For the world: To empower everyone to create for the web and spark an unprecedented wave of digital innovation.
  2. For ourselves: Lead fulfilling, impactful lives.


Our core behaviors (how we act)

  1. Start with customers
  2. Practice extraordinary kindness
  3. Be radically candid
  4. Move intentionally fast
  5. Just fix it
  6. Lead by serving others
  7. Dream big

Our commitments to you 

  • We’ll pay you! This is a full-time, salaried position that includes equity
  • We’ll invest in your physical and mental well-being with health, dental, and vision benefits and a monthly stipend for health and wellness expenses 
  • We’ll pay you to take a vacation … seriously. We’ll give you a $1,000 bonus for taking your first vacation with us that is more than 5 days 
  • We offer flexible parental leave 
  • We provide remote employees with the equipment they need to create a great remote work environment 
  • We will offer you the support you need to help you grow as an impactful Compliance Manager and a human being 

Ready to apply?

If you share our values and enthusiasm for empowering the world, we’d love to review your application! We promise we do take the time and care to review every application we receive. However, as much as we wish we could interview everyone who submits an application, we cannot guarantee an interview or feedback due to the unprecedented volume of applications we are receiving today. We are rooting for you, and hope you do consider applying.

Note: You'll need valid U.S. work authorization to join us. (remove if you can hire international candidates

If you are extended an offer, that offer may be contingent upon your successful completion of a background check, which will be conducted in accordance with applicable laws. We may obtain one or more background screening reports about you, solely for employment purposes

Want some tips on how to get an interview at Webflow?

What is Webflow looking for?
If this role looks interesting to you, a great first step is to understand what excites you about the team, product or mission. Take your time thinking about this and then tell the team! Get in touch and communicate that passion.
What are interviews for Application Security Engineer like?
Interview processes vary by company, role and team. The best plan is to see what others have experienced and then plan accordingly.
How to land an interview at Application Security Engineer?
A great first step is organizing your path to an offer. Check out Kiter for tools to get started!