





Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Tier-1 brand plus metro location and mid-level experience increases applicant competition.
Role requires deep API security and platform experience, making cross-industry transferability low.
Explicit 5+ years and many mandatory, niche technical skills make filters strict.
Own and build the end-state API security capability, consolidating multiple API security tools and integrating with shared policy-as-code enforcement architecture.
Lead the dynamic application security testing (DAST) tooling strategy from evaluation through production migration and extend API security into supply-chain security domains.
Provide technical leadership by mentoring engineers, unblocking initiatives, driving delivery, and shaping the security team's roadmap and backlog prioritization.
5+ years of experience building production software with end-to-end ownership, including hands-on coding in Python or Go.
Bachelor's degree or equivalent combination of education and experience.
Deep hands-on expertise in API architecture (REST, GraphQL, AsyncAPI), authorization/authentication (OAuth2 scopes, token/session models), and API gateway/service-mesh systems (e.g., Envoy).
Practical experience with DAST/SAST tooling, policy-as-code security enforcement, and deep knowledge of OWASP API Security Top 10 and API traffic-protection mechanisms.
Experienced in technical leadership roles with demonstrated ability to design and ship large-scale security platform capabilities, not just incremental features.
Strong familiarity with AI-driven API threat models and ability to reason about AI security implications in APIs.
Operates with a strategic mindset to identify emerging business problems and influence security initiatives across diverse teams and organizational domains.