Location: Palo Alto, CA
Hybrid
About Xage
Cyberattacks on critical infrastructure, government, and private enterprises are at an all time high – and only growing more urgent by the day. Xage is a global leader in zero trust access and protection at the forefront of solving this pressing issue. We are pioneering a secure tomorrow by empowering organizations worldwide to connect anyone to anything, while delivering unparalleled defense against every cyber threat.
We have built tremendous momentum across governments and commercial enterprises around the world, and it’s just the beginning. Recognized by Forbes as one of America’s Best Startup Employers, Xage prioritizes creativity, collaboration, and innovation in pursuit of our mission. We are headquartered in Palo Alto, CA and have global teams across North America andEMEA.
We’re passionate about solving problems that have positive, real-world consequences for the lives of everyday people. We hope you’ll join us in the fight against cyberattacks and safeguarding critical infrastructure.
About the Role
This role will be focused on penetration testing, threat modeling, and security review / analysis of Xage’s current and future products. Candidates should be comfortable with learning and ramping up on new features in a large code base and performing /manual/ penetration testing to uncover business logic flaws, authorization bypasses, injection issues, and improper use of protocols / cryptographic algorithms.
While the candidate should be familiar with automation tools to help with scanning / detection of vulnerabilities, our team has already integrated extensive usage of automated tools and this will be supplemental work for this role to help improve or integrate with these existing systems or to help automate parts of the manual penetration testing effort. Integration of common automation tooling is not a primary responsibility during the early stages of this role.
Candidates will be expected to help review the design of features currently in development, as well as review of previously implemented security critical features to identify issues within the existing product. Long term some additional areas the role may progress to as needed may include war gaming / emulation of adversaries or specific breach scenarios, implementation of custom automation tooling / fuzzers specific to Xage’s products, other program support for bug bounties / developer education / compliance efforts / etc.
This role will require working across multiple teams and organizations so good communication and team work skills are essential, Xage’s engineering culture prides itself on teamwork and collaboration to help multiply everyone’s skills and development across the entire team.
Key Responsibilities
- Offensive penetration testing of Xage’s products
- Penetrating testing areas include Web UIs, REST/gRPC APIs, desktop clients, backend services, and deployment infrastructure
- Testing should primarily focus on manual efforts which will require reading and understanding the code and architecture of existing Xage products and features
- As needed, contribute to the extension of existing automation tools or development of novel custom tooling to support detection efforts
- Threat modelling and security review of Xage products and features
- Help the product security team to provide input and signoff on all new features being added to the product
- Contribute to continuous review of older features already existing in the product to help close any gaps from early stage products and software
- Provide input and guidance on brainstorming / architectural discussions to help educate and guide the team to appropriate security conscious design decisions
- Reporting issues, remediation, and verification of resolution
- Provide clear findings on any vulnerabilities discovered with reproduction steps and possible fixes
- Work alongside developers to remediate issues and push fixes through the development lifecycle
- Educate and expand the capabilities of developers to help them understand how to avoid common security issues
- Suggest improvements to libraries or tooling for development teams to help prevent security issues before they happen
Requirements
- Multiple years of hands-on offensive security experience (penetration testing, red teaming, vulnerability research, etc.) against software products, not just corporate IT vulnerabilities.
- Must be fluent and capable enough in coding to understand features within the code base and help uncover vulnerabilities within our products.
- Strong understanding of common authentication and authorization protocols/areas such as OAuth, SAML, mTLS / PKI, SSO, MFA, FIDO2, RBAC/ABAC models.
- Strong Web and API security expertise, knowledgeable about OWASP/Top 10 issue, authentication flows, session management, injection issues, etc.
- Strong networking and protocol fundamentals, should be capable of reading traffic captures and understanding / reverse engineering custom protocols.
- Strong communication skills, both verbal and written
- Collaborative and willing to educate / mentor other team members
Preferred Qualifications
- Experience and fluency with Golang, C++, JavaScript, ReactJS, and ElectronJS
- Prior experience working in startup environments
- Prior experience as an initial penetration testing / offensive security hire
- Prior experience working on an OT / IT authentication and authorization product
Perks
- Salary Range: $140,000 – $170,000 p/yr + Equity
- Full health, dental, vision insurance
- We will process visa transfers and immigration
- Work with founders and executives closely and participate in all aspects of company building
- Early stage opportunity in a massive sized market with proven traction and growing rapidly
Recognition & Momentum
Xage Security has experienced explosive growth and received numerous awards and recognition, including:
- Named by Forbes one of America’s Best Startup Employers 2024-2026
- $17 million contract awarded by U.S. Space Force’s Space Systems Command (SSC) to offer its zero trust access control
- Named in Gartner research on Cyber-Physical Systems Protection Platforms, Zero Trust Network Access, Privileged Access Management, and CPS Secure Remote Access
- Named in Forrester research on Operation Technology Security, IoT, and Microsegmentation
- Named a Gold winner for Identity & Access Security Solution in the 2024 American Business Awards
- Named a Top 10 Security Solution in the CRN Internet of Things 50 list 2024
- ISO 27001:2022, IEC 62443, and FIPS 140-2 Certified
