Эта вакансия в архиве
Посмотреть похожие вакансии ↓обновлено 24 дня назад
Security Engineer (Product Security)
Описание вакансии
Текст:
TL;DR
Security Engineer (Product Security): Safeguard web and desktop products by conducting security reviews, threat modeling, and implementing security automation with an accent on SSDLC and AI/LLM-driven security solutions. Focus on designing security controls, integrating security pipelines, and addressing complex security challenges across multiple platforms.
Location: Amsterdam, Berlin, Limassol, Munich, Paphos, Prague, Warsaw, Yerevan, or Remote (Germany)
Company
is an international software development company known for creating powerful developer tools used by millions worldwide and many Fortune Global 100 companies.
What you will do
- Conduct security tests and reviews of web and desktop products including features, architecture, and code.
- Perform threat modeling and risk assessments for new features and integrations.
- Establish and improve SSDLC and application security processes across product teams.
- Develop and maintain security automation pipelines and tools, including AI/LLM-based approaches.
- Investigate vulnerability reports and collaborate with product teams to provide security guidance.
- Contribute to security awareness through guidelines, talks, and CTF challenges.
Requirements
- Strong command of English with excellent written communication skills
- Proven experience in application security and penetration testing.
- Knowledge of web application security principles and OWASP TOP 10.
- Understanding of cloud security fundamentals (AWS, GCP, Azure).
- Experience with secure coding and security-focused code reviews.
- Analytical mindset with ability to work independently and in a team.
Nice to have
- Experience building security pipelines integrated with CI/CD workflows.
- Security design review, architecture, system hardening, and risk assessment experience.
- Programming skills in Kotlin, Java, Python, or Go.
- Hands-on experience with SAST, DAST, SCA, fuzzing, and bug bounty programs.
- Familiarity with compliance frameworks like GDPR, SOC 2, ISO 27001, and AI regulations.
Culture & Benefits
- Work from multiple European locations or remotely within Germany.
- Opportunity to work on innovative security solutions including AI/LLM.
- Collaborative environment focused on developer-friendly security culture.