.Say hello to possibilities.It's not everyday that you consider starting a new career. We're RingCentral, and we're happy that someone as talented as you is considering this role. First, a little about us, we're the $2 billion global leader in cloud-based communications and collaboration software. We are fundamentally changing the nature of human interaction—giving people the freedom to connect powerfully and personally from anywhere, at any time, on any device.This is where you and your skills come in. We're currently looking for: an AppSec Automation Engineer with a solid experience in integrating tools into CI/CD pipelines, automating scans management and orchestration, building feedback channels for these tools. The engineer will work with all RingCentral product lines, including PBX, Video, Messaging, Unified App, Webinars, Analytics, AI, Integrations, Contact Center, Video Conferencing, etc.The RingCentral Application Security team is a part of a larger CISO team. The area of responsibility of the application security team includes enablement and support for RingCentral's Security Development Lifecycle (SDL) program. This includes development of infosec governance artifacts i.E., policies, standards and procedures for secure software development at RingCentral, leading security architecture reviews and threat modelings, developing security requirements, SAST/DAST/SCA testing and integration of these tools into the build and deploy process, penetration testing, managing bug bounty program.Key Responsibilities:Collaborate with DevOps engineers to design security tools/scanners integrations into their pipelines.Develop solutions that could be universal and easy to use by DevOps engineers who use a wide range of technologies for their pipelines (solutions examples: GitLab CI/CD templates, Jenkins shared libraries, API-s listening to webhooks).Develop automation (for example, Jenkins jobs) for scheduled regular runs of security scanners.Develop in-house utilities/API-s/web-apps needed for the application security team (such as scripts, that implement security checks, dashboards, etc.).Support existing solutions (such as GitLab CI/CD templates, Jenkins jobs and shared libraries, in-house developed API-s) by fixing bugs identified by DevOps engineers, adding new features, various improvements (for example, performance enhancements) and onboarding new system components.Support infrastructure for the security tools/scanners that have on-premises installations, which includes:Keep underlying operating systems updated.Install updates from vendors to these tools.Restore these tools in case of failures.Deploy additional tools or additional machines for existing tools in case of scaling.Design/develop/support feedback channels for engineering teams from the security tools/scanners, such as dashboards or JIRA integrations or any interfaces to allow statuses setting.Communicate with the security tools/scanners vendors to resolve issues if any