Daniel Doubrovkine bio photo

Daniel Doubrovkine

aka dB., @awscloud, former CTO @artsy, +@vestris, NYC

Email Twitter LinkedIn Github Strava
Creative Commons License

architect

AppSecInc has an opening for a technical lead slash software architect. This is a pretty cool job for someone who has a pragmatic approach to software development, enjoys complex architectural software problems and wants to work with a whole range of Enterprise-y technologies with some awesome people located right here in New York City. This is your chance to put your hands into something very big and very expensive and learn a lot about what kind of software powers the very large businesses out there. Plus you get to meet a few real white hat hackers and talk about it with your friends, go visit some facilities that don’t exist on maps and talk to people who have multiple passports and whose actual name is unknown :)

The main responsibility is to be the primary architect on the flagship software, DbProtect, which won an award at RSA yesterday. DbProtect finds database security vulnerabilities, analyzes database traffic live and digs through user rights and roles in those databases. Out come compliance reports that are the headache of every large and small organization.

DbProtect is powered by the best knowledgebase out there produced by TeamSHATTER, some of the smartest people in the room. It’s shrink-wrapped software, AppSecInc doesn’t run it for it’s clients. It’s a suite of enterprise services (written in Java), managed by a central console (written in gwt). There’re agents which collect massive amounts of data (largest deployments in production have something like 500 scanners and sensors distributed worldwide), controlled by a workflow system (based on saraswati). Services bring this data into a warehouse that runs on SQL Server and a reporting system built on IBM Cognos produces output off that. Agents are written in C++ (some are cross-platform) and C# (WCF), while everything else is written in Java. There’s a lot more to this and some real hard work has been done to make this enterprise-grade. Now is the time for an architect to own the next steps, including a proper SDK and the next level of scale (yes, people want to run thousands of scanners and sensors and store 7 years worth of data).

Job description and how to apply: https://web.archive.org/web/20131111165225/https://www.appsecinc.com/aboutus/careers/Technical-Lead-Architect.shtml. More jobs here.