T

Application Security Engineer (Python)

Nebius Academy (powered by TripleTen) provides assessments and training for tech companies and aspiring professionals worldwide, helping companies & individuals transform their lives through career development and acquiring the new skills…

tripleten · На сервисе с: 03.10.26 19:50

Зарплата не указанаЧехияPragueУдалёнка
Description

Nebius Academy (powered by TripleTen) provides assessments and training for tech companies and aspiring professionals worldwide, helping companies & individuals transform their lives through career development and acquiring the new skills needed as a tech professional.

Our focus on data science, machine learning, and generative AI helps tech-forward companies level up their employees' skills and drive innovation.

We are looking for an Application Security Engineer to own product security end to end — from threat modelling and secure design reviews to vulnerability management and security controls embedded into CI/CD.

You will work closely with product and platform teams to make security part of the engineering process, building secure defaults and helping prevent vulnerabilities from reaching production without slowing development down.

What you will do
  • Own application and product security end to end, from design reviews and threat modelling to vulnerability remediation and follow-up.
  • Partner with product and platform teams to embed security into the development lifecycle rather than treat it as a final review step.
  • Build and improve security controls in CI/CD, including SAST, dependency, secrets, container, and IaC scanning.
  • Review application designs and code where security risk is meaningful, and turn recurring findings into secure defaults, shared libraries, lint rules, and CI gates.
  • Drive vulnerability management across application code and cloud posture, including triage, risk-based prioritisation, remediation timelines, and external pentest findings.
  • Strengthen security in multitenant B2B systems, including tenant isolation, authentication, authorization, RBAC / ABAC, and access controls.
  • Work on cloud and Kubernetes security across AWS environments, including IAM, secrets management, network boundaries, and workload hardening.
  • Help translate GDPR, SOC 2, and ISO 27001 requirements into practical engineering controls and system properties.
  • Develop and support a security champions programme to help engineering teams adopt secure practices in their day-to-day work.
  • Address security risks specific to AI and LLM-powered features, including prompt injection, data leakage, and untrusted model output.
Requirements
  • 5+ years of engineering experience, including at least 2 years focused on Application Security or Product Security.
  • Strong software engineering background with the ability to read, review, and write production code; Python experience is highly preferred.
  • Deep practical knowledge of web application security, including OWASP Top 10, ASVS, authentication and session management, OAuth2 / OIDC / SAML, and authorization issues such as IDOR and broken access control.
  • Experience securing multitenant or B2B SaaS products, including tenant isolation, RBAC / ABAC, and access control models.
  • Hands-on experience embedding security into CI/CD, including SAST, SCA, secrets scanning, container scanning, and IaC scanning.
  • Strong experience with threat modelling, secure design reviews, and secure code reviews in collaboration with product and engineering teams.
  • Experience managing vulnerabilities based on risk, criticality, and exploitability, including remediation prioritisation and escalation when needed.
  • Working knowledge of AWS and Kubernetes security, including IAM, secrets management, network boundaries, and workload hardening.
  • Strong communication skills and the ability to explain security risks clearly to engineers, product managers, and auditors.
  • Fluent Russian and English at B2 level or above.

Nice to have:

  • Experience building a DevSecOps practice from scratch.
  • Experience running or participating in a Security Champions programme.
  • Hands-on penetration testing experience.
  • Experience securing LLM-powered or AI products.
  • Experience with SOC 2 or ISO 27001 from an engineering perspective.
  • Knowledge of software supply chain security, including SBOMs, SLSA, image signing, or similar practices.
What we can offer you
  • A supportive and proactive work environment.
  • Competitive compensation: 4000-6000 EUR Gross per month
  • Fully remote and full-time collaboration.
  • Modern digital tools for seamless collaboration.
  • Tangible results measured by student success.

Похожие вакансии Кибербезопасность

Сайты компаний
V

Security Tech Lead

veeamНа сервисе с: 03.10.26 21:40
Зарплата не указанаПольшаWarsaw

Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running. Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands.

About the Role

Veeam Data Cloud is rapidly scaling, and we’re committed to unifying our security approach across all teams to ensure consistent product protection.

We’re seeking a Security Tech Lead to drive the design and rollout of standardized security solutions and help establish a dedicated Software Security Engineering platform team. In this role, you’ll work closely with the Director of Security Engineering to turn our unified strategy into an actionable engineering roadmap, shaping a strong and cohesive security framework.

What You’ll Do

  • Lead the architecture and implementation of shared security primitives across Veeam Data Cloud
  • Translate high-level security strategy into a concrete, prioritized engineering roadmap for cloud services and platform capabilities
  • Act as a hands-on technical leader – write and review production code, drive design and code reviews, mentorship
  • Establish and promote secure-by-default patterns and shared libraries to streamline security across teams 
  • Build the foundation for a Software Security Engineering platform to manage shared security services and tools 
  • Collaborate with product, platform, SRE, and compliance teams to ensure security solutions are robust and easy to adopt 
  • Enhance security posture through automation, guardrails, and policy-as-code 

Technologies You’ll Work With

  • Languages & Frameworks: Go, Python, and TypeScript (and related service/API frameworks)
  • Cloud & Platform: Modern cloud-native architectures (microservices, event-driven systems, multi-tenant SaaS) using AWS, Azure, and GCP
  • Security & Identity: Authentication and authorization services, identity providers, security control planes, guardrails, secure logging
  • Tooling & Practices: Code and design review, CI/CD, observability and logging stacks, policy-as-code and security automation

What You’ll Bring

  • Strond coding skills (Golang, Python, or TypeScript)
  • Extensive experience building distributed, cloud-native systems
  • Practical expertise in authentication/authorization, security guardrails, and secure observability for production systems
  • Proven technical leadership: architecture, roadmap influence, and mentoring engineers
  • Strong product mindset, focusing on platform security that empowers other teams
  • Skilled at cross-team collaboration and clear communication of complex topics
  • Preference for automation, reusable platforms, and secure-by-default approaches over one-off solutions

Bonus Skills

  • Experience building or leading platform and product security teams providing shared services to multiple product teams
  • Background in multi-tenant SaaS and large-scale control/data planes
  • Familiarity with modern security practices (e.g., zero trust, least privilege, policy-as-code, security service meshes)
  • Experience working with regulatory or enterprise security requirements

What You’ll Get 

  • 26 paid days off annually, plus 4 extra global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
  • Paid parental, maternity, and paternity leave
  • Fully covered family medical plan, dental, rehab, and vaccinations
  • Life, critical illness, and disability insurance
  • Employer pension contribution via PPK
  • Monthly Edenred allowance of 450 PLN for meals
  • MultiSport card fully covered by Veeam, giving access to sports facilities nationwide
  • Up to 12 free therapy sessions annually, plus legal and financial advice
  • Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops and learning events like our annual Global Day of Learning

#LI-TK1

Veeam Software is an equal opportunity employer and does not tolerate discrimination in any form on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state or local law. All your information will be kept confidential.

Personal data collected during the recruitment process will be processed in accordance with our Recruiting Privacy Notice, which explains how your information is collected, used, and handled in connection with hiring activities. By applying for this position, you consent to this processing. 

By submitting your application, you confirm that the information provided, including any supporting documents, is complete and accurate to the best of your knowledge. Any misrepresentation, omission, or falsification may result in disqualification from consideration or, if discovered after employment begins, termination of employment.

Сайты компаний
V

Security Tech Lead

veeamНа сервисе с: 03.10.26 21:40
Зарплата не указанаЧехияPrague

Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running. Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands.

About the Role

Veeam Data Cloud is rapidly scaling, and we’re committed to unifying our security approach across all teams to ensure consistent product protection.

We’re seeking a Security Tech Lead to drive the design and rollout of standardized security solutions and help establish a dedicated Software Security Engineering platform team. In this role, you’ll work closely with the Director of Security Engineering to turn our unified strategy into an actionable engineering roadmap, shaping a strong and cohesive security framework.

What You’ll Do

  • Lead the architecture and implementation of shared security primitives across Veeam Data Cloud
  • Translate high-level security strategy into a concrete, prioritized engineering roadmap for cloud services and platform capabilities
  • Act as a hands-on technical leader – write and review production code, drive design and code reviews, mentorship
  • Establish and promote secure-by-default patterns and shared libraries to streamline security across teams 
  • Build the foundation for a Software Security Engineering platform to manage shared security services and tools 
  • Collaborate with product, platform, SRE, and compliance teams to ensure security solutions are robust and easy to adopt 
  • Enhance security posture through automation, guardrails, and policy-as-code 

Technologies You’ll Work With

  • Languages & Frameworks: Go, Python, and TypeScript (and related service/API frameworks)
  • Cloud & Platform: Modern cloud-native architectures (microservices, event-driven systems, multi-tenant SaaS) using AWS, Azure, and GCP
  • Security & Identity: Authentication and authorization services, identity providers, security control planes, guardrails, secure logging
  • Tooling & Practices: Code and design review, CI/CD, observability and logging stacks, policy-as-code and security automation

What You’ll Bring

  • Strond coding skills (Golang, Python, or TypeScript)
  • Extensive experience building distributed, cloud-native systems
  • Practical expertise in authentication/authorization, security guardrails, and secure observability for production systems
  • Proven technical leadership: architecture, roadmap influence, and mentoring engineers
  • Strong product mindset, focusing on platform security that empowers other teams
  • Skilled at cross-team collaboration and clear communication of complex topics
  • Preference for automation, reusable platforms, and secure-by-default approaches over one-off solutions

Bonus Skills

  • Experience building or leading platform and product security teams providing shared services to multiple product teams
  • Background in multi-tenant SaaS and large-scale control/data planes
  • Familiarity with modern security practices (e.g., zero trust, least privilege, policy-as-code, security service meshes)
  • Experience working with regulatory or enterprise security requirements

What You’ll Get 

  • 25 vacation days, 4 sick days, 21 paid medical leave days, plus 4 extra global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
  • Premium private medical insurance for employees and dependents
  • Daily meal vouchers for restaurants and groceries (180 CZK per working day)
  • Flexible cafeteria platform with thousands of lifestyle benefit options
  • Multisport Card for gym and wellness, with family add-on options
  • Annual public transport reimbursement up to a set limit
  • Corporate mobile plan with optional family tariff
  • Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops and learning events like our annual Global Day of Learning

#LI-TK1

Veeam Software is an equal opportunity employer and does not tolerate discrimination in any form on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state or local law. All your information will be kept confidential.

Personal data collected during the recruitment process will be processed in accordance with our Recruiting Privacy Notice, which explains how your information is collected, used, and handled in connection with hiring activities. By applying for this position, you consent to this processing. 

By submitting your application, you confirm that the information provided, including any supporting documents, is complete and accurate to the best of your knowledge. Any misrepresentation, omission, or falsification may result in disqualification from consideration or, if discovered after employment begins, termination of employment.

Сайты компаний
V

DevSecOps

veeamНа сервисе с: 03.10.26 21:16
Зарплата не указанаСШАКанадаSan Jose

Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running. Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands.

About the Role

Securiti's platform processes billions of data events per day across hundreds of enterprise clouds. As a DevSecOps Engineer, you will build and maintain the invisible infrastructure that makes this scale possible—ensuring developers can ship features daily while maintaining fortress-level security.

You will be responsible for designing self-healing deployment pipelines that turn infrastructure into code, security into automation, and complexity into reliability. Your work ensures that when a customer onboards petabytes of data, our platform scales transparently—without manual intervention.

Responsibilities

  • Security-First Infrastructure: Architect and implement infrastructure-as-code using Terraform and CloudFormation, ensuring every deployment follows zero-trust principles and least-privilege access models.

  • Kubernetes at Scale: Design and optimize our Kubernetes clusters to handle massive workloads, implementing intelligent autoscaling, pod security policies, and network segmentation that protects sensitive customer data.

  • Zero-Downtime Deployments: Build sophisticated CI/CD pipelines using ArgoCD, Spinnaker, and GitOps patterns that enable blue/green and canary deployments—allowing us to ship multiple times per day with zero customer impact.

  • Observability Engineering: Implement comprehensive monitoring and alerting using Prometheus, Grafana, and ELK, creating dashboards that surface anomalies before they become incidents.

  • Multi-Cloud Orchestration: Manage infrastructure across AWS, Azure, and GCP, building abstraction layers that allow our platform to run anywhere while maintaining consistent security postures.

  • Performance Under Fire: Be on-call to diagnose and resolve production issues in real-time, using your deep systems knowledge to troubleshoot complex distributed systems problems across the stack.

  • Automation-First Mindset: Write Python and Go tooling that automates repetitive operational tasks, turning hours of manual work into seconds of automated execution.

 

Requirements

  • Experience: 5+ years of software development with deep operational experience in cloud-native environments (AWS, Azure, GCP).

  •  Infrastructure as Code Mastery: Expert-level proficiency with Terraform or AWS CloudFormation, with a portfolio of reusable modules and patterns.

  • Container Orchestration: Production experience running Kubernetes at scale, including deep knowledge of networking, security contexts, and stateful workloads.

  • CI/CD Architecture: Hands-on experience designing GitOps-based deployment pipelines using tools like ArgoCD, Spinnaker, Jenkins, or GitHub Actions.

  • Development Skills: Professional coding ability in Python or Golang—you're not just configuring tools, you're building them.

  • Database Operations: Working knowledge of SQL (Postgres), NoSQL (MongoDB/Elasticsearch), and Graph databases (Neo4j, Neptune) for operational troubleshooting and performance tuning.

  • Linux & Networking Fundamentals: Deep understanding of Linux systems administration, bash scripting, network routing, load balancing, and service mesh architectures.

  • Monitoring & Observability: Experience implementing full-stack observability with metrics, logs, and traces using Prometheus, Grafana, ELK, or similar tooling.

 

Bonus Points

  • Security Certifications: AWS Security Specialty, CKS (Certified Kubernetes Security Specialist), or equivalent security-focused credentials.

  • Service Mesh Experience: Hands-on work with Istio, Linkerd, or Consul for advanced traffic management and zero-trust networking.

  • Chaos Engineering: Experience with fault injection frameworks (Chaos Monkey, Litmus) to build resilient systems.

  • GitOps Evangelism: You've championed GitOps practices and trained teams on declarative infrastructure patterns.

  • Cost Optimization: Track record of reducing cloud spend through intelligent resource management and architectural improvements.

 

 

What you'll get

  • Unlimited paid time off, 12 paid holidays including 4 global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
  • Paid parental leave: 8 weeks for all parents, 16 weeks for birthing parents
  • Medical, dental, and vision coverage starting on your first day
  • Mental health support, therapy sessions, and digital wellness tools via our Employee Assistance Program
  • 401(k) retirement plan with company matching contributions
  • Fertility, adoption, and surrogacy support through Maven, plus paid volunteer time
  • AirVet: 24/7 virtual veterinary care at no cost
  • Legal services, identity protection, and supplemental health insurance options
  • Tax-advantaged spending accounts for healthcare, dependent care, and commuting
  • Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops, and learning events like our annual Global Day of Learning

Pay Transparency

Veeam is committed to pay transparency and equitable compensation. For this role, the compensation range below reflects the expected total target compensation (TTC), inclusive of base pay and a competitive performance-based bonus. For roles with a commission plan, the compensation range represents On Target Earnings (OTE), which includes base salary plus variable commission. When determining compensation, Veeam takes into consideration factors such as experience, education, skills, and geographic zone. Offers are typically made below the midpoint of the range.

In addition to compensation, Veeam provides a comprehensive benefits package, including health coverage, retirement plans, and unlimited time off.

Compensation Range (TTC / OTE)
$153,480—$255,720 USD

Veeam Software is an equal opportunity employer and does not tolerate discrimination in any form on the basis of race, color, religion, gender, age, national origin, citizenship, disability, veteran status or any other classification protected by federal, state or local law. All your information will be kept confidential.

Personal data collected during the recruitment process will be processed in accordance with our Recruiting Privacy Notice, which explains how your information is collected, used, and handled in connection with hiring activities. By applying for this position, you consent to this processing. 

By submitting your application, you confirm that the information provided, including any supporting documents, is complete and accurate to the best of your knowledge. Any misrepresentation, omission, or falsification may result in disqualification from consideration or, if discovered after employment begins, termination of employment.

HireSeeker собирает вакансии со всех площадок и присылает только релевантные. Бесплатно.