Application Guide
How to Apply for Application Security Engineer
at SmartRent
🏢 About SmartRent
SmartRent is a leading provider of smart home and property management solutions for the rental housing industry, with a mission to transform how properties are managed and how residents live. Their focus on efficiency, sustainability, and enhanced resident experiences through IoT and cloud technology makes them a unique player in the proptech space, offering the chance to work on impactful, real-world applications.
About This Role
As an Application Security Engineer at SmartRent, you'll be responsible for securing the software that powers smart rental properties, from mobile apps to backend APIs. Your work will directly protect resident data and ensure the reliability of critical infrastructure, making this role highly impactful in a rapidly growing company.
💡 A Day in the Life
A typical day might start with a stand-up with the engineering team to discuss ongoing security reviews and upcoming releases. You'll then review code for vulnerabilities, manage security tickets, and collaborate with DevOps to automate security testing. Afternoon could involve investigating a security alert from the SOC, leading a brief incident response call, and documenting findings for the team.
🚀 Application Tools
🎯 Who SmartRent Is Looking For
- Has 4-6 years of hands-on application security experience, including developing security policies and collaborating with engineering teams on secure coding practices.
- Can identify and remediate vulnerabilities in modern languages like Elixir, JavaScript, Ruby, and Python, with a strong grasp of OWASP Top 10 and API security.
- Experienced in managing security workflows (ticketing, prioritization) and coordinating with DevOps to integrate security into CI/CD pipelines.
- Familiar with AI-generated code risks and modern authentication (JWT, OAuth), and comfortable leading incident response with SOC and engineering teams.
📝 Tips for Applying to SmartRent
Highlight specific experience with Elixir (Phoenix framework) or Ruby on Rails, as SmartRent's stack likely includes these; mention any smart home or IoT security experience.
Tailor your resume to show quantifiable impact, e.g., 'Reduced critical vulnerabilities by 30% through code reviews and automated scanning.'
In your cover letter, explicitly mention your familiarity with OWASP API Top 10 and how you've applied it to secure RESTful APIs.
Showcase any experience with security in a remote, cross-functional team environment, emphasizing communication and documentation skills.
If you have experience with AI-generated code security (e.g., code review of LLM outputs), be sure to mention it as it's listed in the job description.
✉️ What to Emphasize in Your Cover Letter
['Emphasize your ability to develop and execute a comprehensive application security strategy aligned with business goals, not just technical fixes.', 'Highlight your experience with incident response and collaboration with SOC teams, as the role involves leading security incident mitigation.', "Demonstrate your comfort with modern programming languages and frameworks, especially Elixir, JavaScript, and Ruby, as SmartRent's stack likely includes these.", 'Show that you understand the unique security challenges of IoT and smart home devices, including API security and data privacy.']
Generate Cover Letter →🔍 Research Before Applying
To stand out, make sure you've researched:
- → Review SmartRent's product lineup (smart locks, thermostats, property management software) to understand the attack surface.
- → Read their engineering blog or any public talks to learn about their tech stack and security practices.
- → Look into recent security incidents or certifications in the smart home industry to show industry awareness.
- → Check their careers page or LinkedIn for recent hires in security to understand team growth and priorities.
💬 Prepare for These Interview Topics
Based on this role, you may be asked about:
⚠️ Common Mistakes to Avoid
- Don't focus solely on web application security; this role requires understanding of IoT and API security as well.
- Avoid generic descriptions of OWASP Top 10 without concrete examples of how you've applied them in a similar environment.
- Don't neglect to mention remote work experience or collaboration tools (Slack, Jira) as the role is fully remote.
📅 Application Timeline
This position is open until filled. However, we recommend applying as soon as possible as roles at mission-driven organizations tend to fill quickly.
Typical hiring timeline:
Application Review
1-2 weeks
Initial Screening
Phone call or written assessment
Interviews
1-2 rounds, usually virtual
Offer
Congratulations!