Назад
Company hidden
10 дней назад

Product Security Engineer (AI)

28 114 - 35 143€
Формат работы
remote (только Slovakia)
Тип работы
fulltime
Грейд
junior
Английский
c1
Страна
Slovakia
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Product Security Engineer (AI): Securing Bloomreach’s AI-powered personalization platform through threat modeling, application security assessments, penetration testing, and vulnerability management with an accent on web applications, APIs, OWASP practices, and AI/LLM security risks. Focus on analyzing architecture and security findings, prioritizing remediation, validating fixes, and partnering with Engineering and DevOps to embed SSDLC practices.

Location: Slovakia; remote position

Base salary range: €28,114–€35,143 per year

Company

hirify.global builds an AI-powered agentic personalization platform for search, shopping, and marketing, serving more than 1,400 global brands.

What you will do

  • Support the adoption of Secure Software Development Lifecycle practices across engineering teams.
  • Review application designs, system architectures, and infrastructure components to identify security risks and recommend mitigations.
  • Participate in threat modeling using methodologies such as STRIDE.
  • Conduct security assessments, penetration testing, and validation testing across web applications and other environments.
  • Triage, validate, prioritize, and track vulnerabilities through remediation and retesting.
  • Collaborate with Engineering, DevOps, Compliance, and other cross-functional teams on secure product development.

Requirements

  • 2+ years of hands-on experience in cybersecurity, application security, product security, or a related discipline.
  • Practical experience with security assessments and penetration testing of web applications.
  • Familiarity with threat modeling, vulnerability management, risk prioritization, and remediation tracking.
  • Knowledge of modern application architectures, APIs, authentication, authorization, OWASP standards, and secure development practices.
  • Experience with or familiarity with Burp Suite, OWASP ZAP, Nmap, SAST/SCA tools, and other application security technologies.
  • Excellent command of English, including strong written and spoken communication skills.

Nice to have

  • Exposure to AI and LLM technologies and an interest in their security risks and controls.
  • Experience improving security processes, documentation, tooling, or workflows.

Culture & Benefits

  • Virtual-first work environment with flexible working hours and hirify.global hubs across three continents.
  • Freedom, trust, and responsibility with an emphasis on results.
  • Annual professional education budget of $1,500 and access to personal development programs.
  • Five paid volunteering days, quarterly additional days off, wellness activities, and an employee assistance program.
  • Extended parental leave, performance bonuses, equity opportunities, and employee referral rewards.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →