- Home
- Jobs
- Engineering
- Senior Application Security Engineer

Senior Application Security Engineer at CookUnity
Latam (Remote)Full-timeRemoteEngineeringPosted about 1 month ago
Apply with PipelineAbout the Role
<div class="content-intro"><h3>About CookUnity:</h3>
<p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">Food has lost its soul to modern convenience. And with it, it has lost the power to nourish, inspire, and connect us. So in 2018, CookUnity was founded as the first-of-its-kind platform that connects the world with the source of truly great food: chefs. Today, CookUnity delivers 50 million meals a year from the industry’s best chefs to homes all over the country. Fresh. Ready-to-eat. And crafted with the passion that nourishes body and soul.</span></p>
<p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">Unwilling to stop there, CookUnity is expanding beyond delivery to become an ever-innovating marketplace focused on our singular mission: <strong data-stringify-type="bold">empower Chefs to nourish the world.</strong></span></p>
<p><span style="font-family: helvetica, arial, sans-serif; font-size: 12pt; color: rgb(0, 0, 0);">If that mission has you hungry in more ways than one, you’ve found the right job posting.</span></p></div><hr>
<h3>The Role:</h3>
<p>Become a founding member of the Application Security team at CookUnity. You’ll work closely with disparate groups inside of CookUnity’s engineering organization, ranging from our Infrastrcuture and Software Engineering teams to ensure were free from high risk vulnerabilities but also building secure by design solutions.</p>
<h3><span class="notion-enable-hover" data-token-index="0">Responsibilities:</span></h3>
<ul>
<li>Lead application security efforts by performing security assessments, code reviews, and penetration testing focused on applications developed in Kotlin, Java, and TypeScript.</li>
<li>Identify, classify, prioritize, and track remediation of vulnerabilities such as those listed in the OWASP Top 10 and other common weaknesses.</li>
<li>Use and maintain application security tools such as Burp Suite for dynamic testing, SAST/DAST/IAST tools, and other automated security scanners.</li>
<li>Collaborate closely with software development teams to enforce secure coding standards and hold Software Engineers accountable for patching vulnerabilities within defined SLAs.</li>
<li>Integrate security testing and automation into CI/CD pipelines to ensure continuous security validation.</li>
<li>Define and maintain security requirements and best practices aligned with industry standards such as OWASP, NIST, ISO, PCI DSS, and GDPR.</li>
<li>Conduct threat modeling, risk assessments, and security design reviews for new and existing applications.</li>
<li>Promote security awareness and provide training to development teams on secure coding and vulnerability mitigation.</li>
<li>Respond to security incidents and support remediation efforts.</li>
<li>Recommend and implement new security tools and technologies to improve application security posture.</li>
<li>Work in Agile and DevSecOps environments to embed security throughout the software development lifecycle.</li>
</ul>
<h3><span class="notion-enable-hover" data-token-index="0">Minimum Requirements:</span></h3>
<ul>
<li>Bachelor’s degree in Computer Science, Cybersecurity, or related field.</li>
<li>6-8+ years of experience in application security, secure coding, and vulnerability assessment.</li>
<li>Strong development background with hands-on experience in Kotlin, Java, and Typescript.</li>
<li>Deep understanding of OWASP Top 10, CWE, and common web and API vulnerabilities.</li>
<li>Proficient with security testing tools such as Burp Suite, Fortify, Veracode, or similar.</li>
<li>Experience with secure SDLC, DevSecOps practices, and integrating security into CI/CD pipelines.</li>
<li>Familiarity with authentication and authorization protocols like OAuth2, OIDC, and SAML.</li>
<li>Ability to work effectively with development teams, guiding and holding them accountable for timely vulnerability remediation.</li>
<li>Relevant certifications such as CISSP, CSSLP, OSCP, GWAPT.</li>
<li>Fluency in English.</li>
</ul>
<h3><span class="notion-enable-hover" data-token-index="0">Preferred Requirements:</span></h3>
<ul>
<li>Knowledge of cloud security (AWS, GCP, Azure) and container security (Docker, Kubernetes) is a plus.</li>
</ul>
<hr>
<h3><span class="notion-enable-hover" data-token-index="0">Benefits:</span></h3>
<p></p>
<p>💸 Get paid in USD, Crypto, Euro, ARS. Whatever your choice! We use Rippling to make things easier for you!</p>
<p>🗺 Work remotely: design the life that you want.</p>
<p>⛱ Enjoy 15 days of vacation each year from the start date.</p>
<p>🎄 16 fully paid Argentinean holidays.</p>
<p>🩺 Healthcare Benefit: Monthly stipend to use in your preferred healthcare provider.</p>
<p>🗓️ 5- year Sabbatical: After 5 years with CookUnity, you get a 4-week paid sabbatical.</p>
<p>🐣 Paid family leave.</p>
<p>🕯 Compassionate Leave: 3-5 days each time the need arises.</p>
<p>🧘🏽♀️ Flexible benefits, your way: a prepaid card you can use on wellness, learning, food, and more.</p>
<p>🤖 AI-forward workplace: enterprise access to ChatGPT and Claude to help you work smarter and grow faster.</p>
<p>🧑🏫 Personalized English coach.</p>
<p> </p>
<p> </p>
<p><strong>Learn More About CookUnity:</strong></p>
<p>We believe great leadership starts with alignment on vision, values, and ways of working. To give you deeper insight into who we are and what we’re looking for, we invite you to explore: <a href="https://docs.google.com/presentation/d/1mGIRBDJLi0K908bKJtP24QNVMo6QmrsPrDeYCu4dAts/edit?usp=sharing"><strong>CookUnity's Leadership Principles</strong></a> – The values and behaviors that guide how we operate, collaborate, and scale.</p>
<p>We hope this provides valuable insight into our culture and product vision. If this excites you, we’d love to connect!</p>
<p> </p><div class="content-conclusion"><p><span style="font-size: 10pt;">If you’re interested in this role, please submit your application, and if we think you might be a fit, we'll get in touch with you. <strong>Thank you for your time!</strong></span></p>
<p> </p>
<p><em><span style="font-size: 10pt; font-family: helvetica, arial, sans-serif;"><strong>CookUnity is an Equal Opportunity Employer</strong>. We are dedicated to creating a community of inclusion and an environment free from discrimination or harassment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, sexual orientation, gender identity, national origin, citizenship status, protected veteran status, genetic information, or physical or mental disability.</span></em></p>
<p class="p-rich_text_section"><em><span style="font-family: helvetica, arial, sans-serif; font-size: 10pt;"><strong>A quick note for all candidates</strong></span></em><br><em><span style="font-family: helvetica, arial, sans-serif; font-size: 10pt;">We’ve recently seen an increase in recruitment scams across the industry, and we want to make sure you (and your data) <strong data-stringify-type="bold">stay safe while applying to CookUnity.</strong> We also want you to know that we take this seriously — sometimes, as part of our process, we may ask for a brief <strong data-stringify-type="bold">“proof of humanity”</strong> to confirm that we’re connecting with a real person, not an impersonator. </span></em><em><span style="font-family: helvetica, arial, sans-serif; font-size: 10pt;">Here are a few tips to help you protect yourself and know what to expect from us:</span></em></p>
<ul class="p-rich_text_list p-rich_text_list__bullet p-rich_text_list--nested" data-stringify-type="unordered-list" data-list-tree="true" data-indent="0" data-border="0">
<li style="font-family: helvetica, arial, sans-serif; font-size: 10pt; font-style: italic;" data-stringify-indent="0" data-stringify-border="0"><em><span style="font-size: 10pt;"><span style="font-family: helvetica, arial, sans-serif;"><strong data-stringify-type="bold">Apply only through our official channels. </strong></span><span style="font-family: helvetica, arial, sans-serif;">All open roles are listed on our official careers page: <a class="c-link" href="http://careers.cookunity.com/" target="_blank" data-stringify-link="http://careers.cookunity.com" data-sk="tooltip_parent">careers.cookunity.com</a></span></span></em></li>
<li style="font-family: helvetica, arial, sans-serif; font-size: 10pt; font-style: italic;" data-stringify-indent="0" data-stringify-border="0"><em><span style="font-size: 10pt;"><span style="font-family: helvetica, arial, sans-serif;"><strong data-stringify-type="bold">Our recruiters are real people — and easy to verify. </strong></span><span style="font-family: helvetica, arial, sans-serif;">You can always find them on LinkedIn with verified profiles. If you’re unsure, feel free to reach out to us on our official <a class="c-link" href="https://www.linkedin.com/company/cookunity/" target="_blank" data-stringify-link="https://www.linkedin.com/company/cookunity/" data-sk="tooltip_parent">LinkedIn Company Page</a>.</span></span></em></li>
<li style="font-family: helvetica, arial, sans-serif; font-size: 10pt; font-style: italic;" data-stringify-indent="0" data-stringify-border="0"><em><span style="font-size: 10pt;"><span style="font-family: helvetica, arial, sans-serif;"><strong data-stringify-type="bold">We only communicate through official CookUnity channels. </strong></span><span style="font-family: helvetica, arial, sans-serif;">That means emails ending in <code class="c-mrkdwn__code" data-stringify-type="code">@cookunity.com</code> and interviews held through official company platforms (Google Meet or Zoom) — never WhatsApp, Telegram, or SMS.</span></span></em></li>
<li style="font-family: helvetica, arial, sans-serif; font-size: 10pt; font-style: italic;" data-stringify-indent="0" data-stringify-border="0"><em><span style="font-size: 10pt;"><span style="font-family: helvetica, arial, sans-serif;"><strong data-stringify-type="bold">We’ll never ask for payment or personal financial details. </strong></span><span style="font-family: helvetica, arial, sans-serif;">If anyone does, please don’t share any information and let us know right away.</span></span></em></li>
</ul>
<p class="p-rich_text_section"><span style="font-family: helvetica, arial, sans-serif; font-size: 10pt;"><em>If something ever feels off or you’re unsure about a message, we’d much rather you double-check with us. You can always contact us directly through any of our social media channels. We appreciate your interest in joining CookUnity — and <strong>we care about keeping your experience (and safety) as genuine as possible.</strong></em></span></p></div>
Related Roles
Senior Full Stack Engineer, B2B (Partnerships & Integrations)
CookUnity
Latam (Remote)RemoteSenior Frontend Engineer, Funnel
CookUnity
Latam (Remote)RemoteStaff Backend Engineer, Marketing Tech
CookUnity
Latam (Remote)RemoteSenior Full Stack Engineer, Kitchen Tech
CookUnity
Latam (Remote)RemoteSenior Engineer (Fraîche, CookUnity B2B)
CookUnity
Latam (Remote)RemoteSenior Full Stack Engineer, CX Tools
CookUnity
Latam (Remote)Remote