Source Code Auditor
Tiro Security - Newport Beach, CA
Apply NowJob Description
This is a fantastic opportunity to work in a company where you get to make a real difference, securing millions of users, including parts of the US Critical Infrastructure.Let's get the basics out of the way first:You must be a U.S. citizen or a green card holder (in hand); no visa sponsorship, EAD, or OPT applicants, please.The role is 100% onsite. Please only apply if you live close enough to commute or are willing to relocate (the company will help).Source Code Auditor - Multiple OpeningsWe're hiring Source Code Auditors to identify vulnerabilities in application code and embed security into the SDLC. This is not a penetration testing role"”it focuses on in-depth code review and secure coding practices. Ideal for security professionals with coding expertise or developers transitioning into security.What You'll Do:Audit source code in multiple languages (Python, Java, C++, JavaScript, etc.)Identify vulnerabilities and advise on secure coding practicesApply SAST, DAST, and manual review techniques to strengthen application securityCollaborate with development teams to integrate security into the SDLCWhat We're Looking For: ? 3+ years in source code auditing, application security, or strong development background with a security focus ? Strong knowledge of secure coding and common vulnerabilities (XSS, SQLi, buffer overflows) ? Proficiency in one or more major programming languages ? Familiarity with secure coding standards and security testing approaches Bonus: Experience with embedded code security and reverse engineering tools (e.g., Ghidra)Preferred Certifications: CSSLP, CASE, GSSP (Java/.NET), OWSE, CEH, OSCPJoin our client and help secure products that are used by millions of users.
Created: 2025-10-02