Назад
Company hidden
6 дней назад

Principal Security Engineer (Product Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Netherlands
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Security Engineer (Product Security) (Ecommerce/Cybersecurity): Building secure-by-design practices for an ecommerce platform with an accent on product security, application security, cloud-native systems, and software supply chain security. Focus on threat modelling, security architecture reviews, security automation, and securely adopting AI across engineering.

Location: Amsterdam, Netherlands; hybrid workplace

Company

hirify.global operates an ecommerce platform and is strengthening product and application security across its engineering organisation.

What you will do

  • Define security principles, standards, patterns, and guardrails for engineering teams.
  • Provide hands-on expertise across APIs, microservices, cloud infrastructure, authentication, authorisation, and software supply chain security.
  • Lead threat modelling and security architecture reviews for products and technology initiatives.
  • Improve application security, vulnerability management, and security throughout the software development lifecycle.
  • Build or enable automation that improves security outcomes and reduces engineering friction.
  • Identify emerging risks, including AI-related risks, and drive appropriate mitigation.

Requirements

  • Significant experience in Product Security, Application Security, or Security Engineering within a modern software engineering environment.
  • Strong experience with security architecture, threat modelling, and practical engineering solutions.
  • Deep understanding of application and API security, secure development practices, and modern software architectures.
  • Experience securing cloud-native applications, distributed systems, and software development workflows.
  • Strong understanding of software supply chain security, dependency risk, and SBOMs.
  • Ability to influence engineering teams, define security standards, and communicate with senior technical stakeholders.

Nice to have

  • Experience with or strong interest in AI security and using AI to improve security engineering.
  • Experience with Infrastructure as Code security, Security Champions, or Bug Bounty programmes.
  • Relevant security or cloud qualifications.

Culture & Benefits

  • Permanent employment in a senior individual contributor role.
  • Significant autonomy to define the technical direction of Product Security.
  • Mentoring opportunities with engineers and Security Champions.
  • Direct collaboration with engineers, architects, product teams, and senior stakeholders.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →