Senior Security Engineer - AppSec (d/f/m)

7 hours, 2 minutes ago
Full-time
Senior
Software Development
vivenu

vivenu

vivenu is a cutting-edge ticketing platform revolutionizing event ticketing with a customer-centric approach, empowering organizers to create exceptional experiences for attendees.

Media
51-250
Founded 2018
$66M raised

Description

  • Act as a trusted advisor to engineering teams to improve the company’s security posture.
  • Design, implement, and maintain security controls across products and infrastructure.
  • Perform code and configuration security reviews and promote secure coding practices.
  • Automate security checks and guardrails such as SAST, DAST, and secret scanning in CI/CD pipelines.
  • Partner on vulnerability triage and drive remediation efforts.
  • Perform and coordinate security testing and threat modeling for products and related infrastructure.
  • Translate security requirements into enforceable technical controls by automating evidence collection and configuring platform settings.
  • Support a shift-left security strategy and broader security-as-code approach.

Requirements

  • 5+ years of experience as a Security Engineer or in an equivalent role.
  • Experience in a high-growth SaaS, e-commerce, or fintech environment.
  • Experience with both API security and web security, including common attack vectors and scalable best practices.
  • Expertise with cloud technologies such as AWS, GCP, or Azure.
  • Experience analyzing the business logic of SaaS applications to identify and verify attack vectors.
  • Proficiency in at least one programming language for scripting and security tooling development, preferably for automating GRC evidence collection.
  • Proven track record of driving security initiatives with a strong sense of ownership.
  • Bachelor’s or Master’s degree in Computer Science, Information Technology, Cybersecurity, or a closely related technical field.
  • Preferred: Experience using Terraform to secure infrastructure and integrate security testing.
  • Preferred: Experience with a modern application stack including GCP, Golang, and TypeScript.
  • Preferred: Experience with PCI DSS script security.
  • Preferred: Experience leading Red Team or Purple Team operations and advanced penetration testing.

Benefits

  • Mission-critical role supporting global live entertainment brands and major events.
  • Opportunity to help shape the future of a fast-growing, profitable, VC-backed company.
  • Work with a top-tier team of more than 160 professionals, including leaders from Google, Slack, and Salesforce.
  • Join a diverse, merit-driven organization across six global offices.
  • Be part of a company recognized among the fastest-growing scale-ups in Europe.
  • Work alongside highly accomplished founders and industry leaders.
  • Remote role based in Germany.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Staff Product Security Engineer to embed security into its open source software delivery and cloud-native product stack, with ownership of secure pipelines, product hardening, and security architecture across the company.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
6 hours, 2 minutes ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into its cloud-native product and delivery pipelines, helping protect hardened open source builds from development through production.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
6 hours, 2 minutes ago

Senior Product Security Engineer

Chainguard 51-250 Internet Software & Services

Chainguard is hiring a Senior Product Security Engineer to embed security into the development lifecycle for cloud-native, Kubernetes-based products and strengthen the security of their open source software supply chain.

AWS CI/CD GCP GitHub Actions Go Kubernetes OWASP Penetration Testing Python Secrets Management Tekton
6 hours, 2 minutes ago

Senior Application Security Engineer (Remote)

Brex 1K-5K Diversified Financial Services

Brex is hiring a Senior Application Security Engineer to secure its finance platform by finding vulnerabilities, improving secure development practices, and protecting emerging AI-driven product features.

AWS GraphQL gRPC Kotlin Kubernetes Penetration Testing Python
6 hours, 17 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers