Назад
Company hidden
1 день назад

Senior Application Security Engineer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Germany
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Application Security Engineer (Cybersecurity): Designing and implementing security controls for a high-scale event ticketing platform with an accent on shifting security left and automating guardrails. Focus on integrating SAST/DAST into CI/CD pipelines, conducting threat modeling, and securing cloud infrastructure using Terraform.

Location: Hybrid (Darmstadt/Frankfurt, Germany)

Company

Global leader in event ticketing technology transforming ticketing into a strategic business advantage for world-leading brands.

What you will do

  • Act as a trusted advisor to engineering teams to improve the overall security posture.
  • Design, implement, and maintain security controls while advocating for secure coding practices.
  • Automate security checks including SAST, DAST, and secret scanning into CI/CD pipelines.
  • Coordinate vulnerability triage, remediation, and perform threat modeling for the product and infrastructure.
  • Translate security requirements into enforceable technical controls via automation and platform configuration.

Requirements

  • 5+ years of experience as a Security Engineer or equivalent.
  • Experience in high-growth SaaS, E-commerce, or Fintech environments.
  • Expertise in cloud technologies (AWS, GCP, or Azure) and proficiency in Terraform.
  • Proficiency in at least one programming language for scripting and security tooling development.
  • Must be based in or able to work in a hybrid setup in Darmstadt or Frankfurt, Germany.
  • Bachelor's or Master’s degree in Computer Science, Cybersecurity, or a related technical field.

Nice to have

  • Experience with a modern tech stack including GCP, Golang, and TypeScript.
  • Knowledge of PCI DSS script security.
  • Experience in Red/Purple Team operations and advanced penetration testing.

Culture & Benefits

  • Collaborate with a top-tier team including leaders from Google, Slack, and Salesforce.
  • Opportunity to impact global brands in the live entertainment industry.
  • Sustainable growth within a profitable, VC-backed scale-up environment.
  • Diverse, merit-driven culture across six global offices.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →