Nebius

Nebius

Nebius enables B2B companies to build local hyperscaling cloud platforms with cost-effective GPUs, InfiniBand network, and 50% less compute cost. They offer managed Kubernetes and a launch-ready business model for innovative cloud solutions.

Internet Software & Services
51-250

Description

  • Build and maintain ASPM tools and their rules.
  • Identify, analyze, and remediate application security vulnerabilities using ASPM and related tools.
  • Collaborate with development teams to integrate security best practices into the SDLC.
  • Conduct manual and automated penetration testing of applications.
  • Develop and maintain secure coding guidelines for development teams.
  • Facilitate threat modeling and risk assessments for new and existing applications.
  • Stay current on emerging security threats, vulnerabilities, and mitigation techniques.
  • Serve as an application security subject matter expert for other teams.

Requirements

  • 4+ years of experience in application security.
  • Strong knowledge of common application security risks, including the OWASP Top 10, and how to mitigate them.
  • Experience with secure coding practices in Python, Go, Java, or JavaScript.
  • Proficiency in a common programming language such as Go or Python, with willingness to learn Go if necessary.
  • Hands-on experience with security testing tools such as Burp Suite, ZAP, and Semgrep.
  • Understanding of authentication protocols such as SAML or OIDC.
  • Experience conducting threat-modeling sessions.
  • Strong problem-solving and analytical skills.
  • Good written and verbal communication skills in English.
  • Willingness to learn new things and work independently.
  • Confidence presenting ideas and responding well to feedback is a plus.
  • Experience designing, building, and maintaining security automation is a plus.
  • Experience translating compliance and regulatory requirements into technical specifications is a plus.
  • Experience exploiting vulnerabilities in web applications, Linux kernels, containers, and networks is a plus.
  • Security certifications such as OSCP or OSWE are a plus.
  • Coding interviews are part of the hiring process.
  • Must be authorized to work in the country of application and provide proof of employment eligibility.

Benefits

  • Competitive compensation with a base salary range of €75,000 to €240,000 EUR.
  • Benefits package with compensation determined by experience, skills, qualifications, level, and location.
  • Career growth and learning opportunities.
  • Flexibility and ownership.
  • Collaborative and innovative culture.
  • Opportunity to work on impactful AI projects.
  • International environment with talented teams.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Application Security Engineer

Vannevar Labs 11-50 Aerospace & Defense

Vannevar is hiring an Application Security Engineer to secure its defense-focused SaaS platform by embedding application security practices throughout the software development lifecycle.

CI/CD DevSecOps GitHub Actions JavaScript Python TypeScript
8 hours, 20 minutes ago

Senior Implementation Engineer - DevOps & Application Security

Workana 1K-5K Internet Software & Services

Endor Labs is seeking a Technical Implementation Engineer in Panama to lead customers through integrating and adopting its application security platform across their development environments.

CI/CD DevSecOps Gradle Maven
1 day, 9 hours ago

Senior Manager, Product Security

Tines 51-250 Construction & Engineering

Tines is seeking a Senior Manager, Product Security to lead and scale its product security program for cloud-native, AI-forward products while partnering with engineering and product leaders to manage risk and support growth.

AWS CI/CD DevSecOps Docker Kubernetes Penetration Testing Ruby Rust TypeScript
4 days, 8 hours ago

Application Security Engineer

Glean 11-50 Internet Software & Services

Glean is hiring a remote Application Security Engineer to lead vulnerability management and strengthen software supply-chain security across its Work AI platform.

AWS Burp Suite CI/CD Cybersecurity GCP Kubernetes Microservices
4 days, 8 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers