BioSpace
Sr. Principal Security Engineer, Application Security Strategy & Architecture
Full details on LinkedIn
The complete job description, requirements, and application details are available on the original posting.
View Full Job Details on LinkedInAbout BioSpace
BioSpace is a prominent digital platform and resource hub for the life sciences industry, based in Des Moines, Iowa. Founded in 1985, it has transformed from a directory of biotech organizations into a comprehensive source for life science news, career opportunities, and recruitment services. The company serves millions in the biopharmaceutical, biotechnology, and healthcare sectors, maintaining strong connections with a significant portion of the U.S. life science workforce. BioSpace offers a variety of services, including daily industry news and analysis, a specialized job board, and innovative networking events called Talent Connect. These events facilitate direct interactions between hiring managers and qualified candidates. Additionally, BioSpace provides recruitment marketing solutions and publishes Hotbed Maps to highlight key biotech clusters across the U.S. The platform is a trusted resource for life science professionals, companies, and stakeholders, enhancing connections and supporting career development in the industry.
Security at BioSpace
Compiled from public job postings, careers pages, and company materials. Data may not reflect current state — verify during interviews.
Security Philosophy
“BioSpace's AppSec philosophy emphasizes a "risk-based approach"for prioritizing remediation efforts and fostering a "security-first mindset and culture within the organization is crucial".”
Security Team
- BioSpace is a company with "Company size 11-50 employees".
- Publicly available information does not provide verbatim evidence of named AppSec leaders or an organizational chart describing reporting lines.
Key Initiatives
BioSpace's AppSec initiatives include "Implementing and maintaining Application Security Testing (AST) tools (SAST, DAST, IAST, SCA)"and "Integrating security tooling with Continuous Integration/Continuous Deployment (CICD) pipelines."There is also an emphasis on automation, with a "Proven ability to leverage scripting languages, such as Python, Bash, and PowerShell."Information regarding a formal Security Champions program, explicit vulnerability management SLAs, or documented Secure SDLC artifacts beyond job-role expectations is not publicly available.
Preparing for an AppSec interview?
Get the weekly briefing 2,000+ security pros trust.
Interested in this role?
Apply on LinkedIn