Security Engineer/Backend developer
Full Job Description
Overview
At NetApp, you'll work on modern cloud and container orchestration technologies in production settings. As a Security Engineer for StorageGRID object storage (the AWS-compatible software powering AI data lakes), your deep security expertise will strengthen our posture against emerging threats while we scale systems sustainably through automation.
Your Impact
Join passionate teams tackling real-world challenges to see your impact as customers transform and grow. You'll bring curiosity, creativity, and drive to launch the latest secure cloud storage software on our path to $10B in revenue growth.
Key Responsibilities
- Design, build, and deliver security features and security-by-design improvements across products and platforms.
- Perform threat modeling for new services; ensure mitigations are implemented and validated.
- Lead vulnerability assessments (SAST/DAST/SCA) and drive remediation end-to-end with Pen Test support.
- Provide security architecture reviews for services, APIs, identity flows, and other artefacts.
- Integrate security controls into CI/CD pipelines using guardrails, policies, and secure libraries.
- Act as a subject-matter expert supporting incident investigations and post-incident improvements.
Tech Stack & Skills
Required:
• Proficiency in secure coding/code review (Ruby, C++, Go, Python, or Java).
• Strong knowledge of web/API/distributed systems security; familiarity with OWASP Top 10.
• Experience integrating SAST/DAST/SCA and secrets scanning into CI/CD pipelines.
• Expertise in vulnerability management workflows (triage to verification).
Preferred Qualifications
- Experience with authN/authZ systems: OAuth2/OIDC, SSO, JWT, RBAC/ABAC.
- Fuzzing experience or knowledge of secure protocol design/testing frameworks.
• Exposure to AI usage in the engineering development lifecycle.
• Experience with multi-tenant SaaS security (a plus).
Company
NetApp
NetApp is a global leader in intelligent data infrastructure, delivering unified storage and integrated data services that help organizations unlock their full potential for AI, multicloud operations,...