Job Summary:
LVT (LiveView Technologies) is redefining how businesses operate in the physical world with AI-driven security solutions. As an Application Security Engineer, you will partner with Engineering and Product teams to integrate advanced security protocols into the Software Development Lifecycle, ensuring the resilience of their innovative platform.
Responsibilities:
• Strategic Integration: Partner with Product and Engineering to embed reproducible, high-standard security practices directly into the SDLC.
• Defense Engineering: Develop and maintain sophisticated manual and automated security processes to identify, evaluate, and mitigate risks across our software ecosystem.
• Offensive Security: Lead proactive security initiatives including threat modeling, deep-dive code reviews, and offensive security exercises/penetration testing.
• Vulnerability Management: Architect and manage the deployment of vulnerability scanning tools, driving the remediation process to ensure rapid resolution of identified issues.
• Policy Stewardship: Assist in the development and continuous improvement of secure development policies and procedural documentation.
• Technical Translation: Communicate complex vulnerability details and risk assessments to both technical and non-technical stakeholders, ensuring organizational alignment.
• Security Culture: Mentor junior team members and foster a strong, transparent security culture across the company.
• Impact Measurement: Success in this role is measured by the reduction of critical vulnerabilities in production, the speed of remediation cycles, and the successful adoption of security tools by the broader engineering team.
Qualifications:
Required:
• At least 2+ years of professional experience in an Information Security role with a focus on modern application environments.
• 2+ years of hands-on security experience with AWS and other cloud service platforms.
• Comfortable navigating common web languages and frameworks such as HTML, PHP, Node.js, React.js, Nest.js, and Next.js.
• A solid understanding of CI/CD tools including GitHub, Docker, Jfrog, CircleCI, and ArgoCD.
• A comprehensive understanding of common application vulnerabilities (OWASP Top 10) and the tools used to combat them (SAST, DAST, SCA).
• Strong grasp of IT fundamentals, including operating systems, networking protocols, and the OSI model.
• Familiarity with security frameworks such as CIS, NIST, or ISO/IEC 27001.
• Ability to articulate risk with clarity and professional poise, maintaining high levels of personal integrity.
Preferred:
• A degree in IT/Security or industry certifications such as Security+, OSCP, GPEN, or ITCA are highly valued.
• Prior experience working within compliance frameworks like SOC2 or FedRAMP is a plus.
Company:
LVT provides rapidly-deployable surveillance hardware that runs on our proprietary SaaS platform. Founded in 2005, the company is headquartered in Orem, USA, with a team of 501-1000 employees. The company is currently Late Stage.