Lead Product Security Engineer

Full Time
Chennai, Tamil Nadu, India
3 hours ago

Here at Appian, our core values of Respect, Work to Impact, Ambition, and Constructive Dissent & Resolution define who we are. In short, this means we constantly seek to understand the best for our customers, we go beyond completion in our work, we strive for excellence with intensity, and we embrace candid communication. These values guide our actions and shape our culture every day.  When you join Appian, you'll be part of a passionate team that's dedicated to accomplishing hard things.

Summary

As a Lead Product Security Engineer, your mission is to ensure that our customers can trust our platform with their most sensitive business processes and data. You will play an important role in defining and implementing strategic, technical, and operational objectives of the product security program at Appian. You will help establish industry-leading security processes and practices at each phase of the software development lifecycle; design, implement, and review the security features of our platform; assist product management with the prioritization of critical security-related activities; monitor the environment for vulnerabilities and anomalous activity; organize educational initiatives and materials.

 

Responsibilities
  • Be part of a cross-organizational squad responsible for the development and maintenance of Appian’s security program

  • Assist Appian engineers in developing secure features

  • Build and maintain security components throughout Appian’s products

  • Perform security testing as well as secure code review on product components

  • Work with squads to perform Threat Modeling on proposed features

  • Help lay out the security architecture and operational roadmap for the Appian platform and our Engineering organization

  • Participate in strategic activities to evangelize security objectives and ensure their appropriate consideration in product and operational planning

  • Mature Appian’s DevSecOps pipeline by modifying and improving the existing tooling

  • Research enterprise security and privacy standards and best-practices to ensure we apply them in our design and remediation processes, justifying departures and innovations to them where appropriate

  • Participate in functional and technical initiation and design activities to incorporate effective threat modeling, security standards, and best practices into product design

  • Educate team members and all engineers on security standards and best practices, establishing regular educational activities, as well as recommending and attending appropriate training and conferences

  • Triage, report and escalate urgent security incidents/threats/issues to stakeholders

  • Develop processes and automation for security reviews and testing activities, and evaluate/design/integrate security tools to improve our detection and prevention capabilities

  • Ensure Appian’s products and infrastructure meet all industry compliance requirements

  • Document security designs, processes, guidelines and best practices, and other artifacts relevant to the Product Security program

  • Manage Appian’s Bug Bounty program including researcher engagement and promotion development

  • Mentor junior members of the team, and develop and lead training sessions across the Engineering department

  • Resolve customer questions related to the security of Appian’s products and validate any customer submitted findings

  • Lead Solutions threat modeling and penetration testing to ensure the security posture of Appian developed platform Solutions

Tools and Resources 

  • Training and Development: During onboarding, we focus on equipping new hires with the skills and knowledge for success through department-specific training. Continuous learning is a central focus at Appian, with dedicated mentorship and the First-Friend program being widely utilized resources for new hires. 
  • Growth Opportunities: Appian provides a diverse array of growth and development opportunities, including our leadership program tailored for new and aspiring managers, a comprehensive library of specialized department training through Appian University, skills based training, and tuition reimbursement for those aiming to advance their education. This commitment ensures that employees have access to a holistic range of development opportunities.
  • Community: We’ll immerse you into our community rooted in respect starting on day one. Appian fosters inclusivity through our 8 employee-led affinity groups. These groups help employees build stronger internal and external networks by planning social, educational, and outreach activities to connect with Appianites and larger initiatives throughout the company.

About Appian

Appian is a software company that automates business processes. The Appian AI-Powered Process Platform includes everything you need to design, automate, and optimize even the most complex processes, from start to finish. The world's most innovative organizations trust Appian to improve their workflows, unify data, and optimize operations—resulting in better growth and superior customer experiences. For more information, visit appian.com. [Nasdaq: APPN]

Follow Appian: LinkedIn.

Appian is an equal opportunity employer that strives to attract and retain the best talent. All qualified applicants will receive consideration for employment without regard to any characteristic protected by applicable federal, state, or local law. 

Appian provides reasonable accommodations to applicants in accordance with all applicable laws. If you need a reasonable accommodation for any part of the employment process, please contact us by email at ReasonableAccommodations@appian.com. Please note that only inquiries concerning a request for reasonable accommodation will be responded to from this email address.

Appian's Applicant & Candidate Privacy Notice