Application Security Engineer (m/f/d)

EGYM | DACH

Berlin

Vor Ort

EUR 90.000 - 130.000

Vollzeit

Vor 4 Tagen
Sei unter den ersten Bewerbenden

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Benefits dieser Stelle

30 days vacation
Home office possibilities
Flexible working hours
Wellness/fitness benefits
Learning time (10% of work time)
Mentoring program

Zusammenfassung

EGYM in Berlin or Munich seeks an Application Security Engineer to partner with software engineers, perform security reviews, and improve tooling for secure CI/CD in cloud-native environments.

You will work across Kubernetes and Docker stacks, contribute to security awareness, and help lead certifications and compliance efforts.

Qualifikationen

  • Several years of experience in Application Security, Software Security Engineering, or similar.
  • Strong knowledge of OWASP Top 10, secure coding principles, threat modeling, and security testing approaches (SAST/DAST).
  • Ability to read or write code (Go, Java, Python) to support reviews, PoCs, or tooling.
  • Cloud-native architectures, CI/CD pipelines, and containerized environments familiarity.

Aufgaben

  • Work closely with software engineers to build secure products by design and enable teams.
  • Perform security reviews for major features, services, APIs, and applications.
  • Design and improve application security tooling and CI/CD integration.
  • Identify and help remediate vulnerabilities across cloud-native environments.
  • Act as a trusted security advisor translating requirements into practical solutions.
  • Collaborate with SRE, DevOps, and platform teams on security in Kubernetes, Docker, and cloud setups.
  • Contribute to security awareness and guidance across engineering teams.

Jobbeschreibung

Are you excited to shape application security in a modern, cloud-native product environment? Do you enjoy working closely with software engineers and enabling teams to build secure products by design? Application Security Engineer (m/f/d) for our team in Berlin or Munich!

Your daily workout
  • Secure-by-Design Enablement: You work closely with software engineering teams to integrate application security into design, development, and deployment processes
  • Security Reviews: You perform and manage security reviews for major features, services, APIs, and critical applications
  • Tooling & Automation: You design, introduce, and continuously improve application security tooling such as SAST and DAST, including CI/CD integration
  • Vulnerability Management: You identify, validate, and help prioritize vulnerabilities across applications, APIs, and cloud-native environments, supporting teams with pragmatic remediation guidance
  • Advisory & Consulting Role: You act as a trusted security advisor, translating security requirements and findings into practical, developer-friendly solutions
  • Cloud & Platform Security: You collaborate with SRE, DevOps, and platform teams to improve security in containerized and cloud-native setups (e.g. Kubernetes, Docker, GCP/AWS)
  • Security Awareness: You contribute to improving security awareness and knowledge across engineering teams through documentation, guidance, and hands-on support
  • Continuous Improvement: You stay up to date with emerging threats, application security trends, and DevSecOps best practices
  • Compliance & Certification Leadership: You lead technical readiness and evidence collection for security certifications (e.g., SOC 2, ISO 27001) and emerging regulatory requirements, ensuring the product ecosystem meets global security Standards
  • Trust & Sales Enablement: You serve as the technical authority for security questionnaires, providing accurate and timely responses to prospects and clients to streamline the sales process and demonstrate compliance with customer security requirements
Your fitness level
  • Professional Experience: You have several years of experience in Application Security, Software Security Engineering, or a closely related role
  • Application Security Know-how: You have strong knowledge of OWASP Top 10, secure coding principles, threat modeling, and security testing approaches such as SAST and DAST
  • Technical Skills: You are comfortable working with modern software stacks and can read or write code (e.g. Go, Java, Python, or similar) to support reviews, PoCs, or tooling
  • Cloud & DevSecOps Understanding: You are familiar with cloud-native architectures, APIs, CI/CD pipelines, and containerized environments
  • Mindset: You enjoy working with engineers rather than acting as a gatekeeper
  • Working Style: You work in a structured, pragmatic, and collaborative way and feel comfortable shaping processes in a greenfield environment
  • Language Skills: You have professional proficiency in English
Your training goal for your first 6 months
  • Understanding: You gain a deep understanding of our tech stack, development processes, and teams
  • Planning: You create and align a plan to continuously improve the application security posture across the organization
  • Execution: You collaborate with engineering teams on concrete AppSec initiatives such as security tooling rollout and process improvements
  • Impact: You drive and deliver individual application security projects derived from the aligned plan
The equipment we provide
  • Modern Tech Stack & AI Evolution: We don't just maintain; we evolve. Explore our Tech Radar to see our stack, and join us in building an AI-agentic, iterative, and incremental product culture where AI is a core accelerator of our development lifecycle
  • Learning Time: Use 10% of your time on learning topics of your choice (conferences, hackathons, internal and external events, videos, books or innovation projects)
  • International Team: Join our diverse and international team to collaborate with talented professionals from around the world
  • Work-Life-Balance: Benefit from flexible working hours, home office possibilities and 30 days of vacation per year
  • Fit & Healthy: Train for free with EGYM Wellpass in several thousand sports and health facilities across Germany and/or alternatively use our in-house gym with EGYM products
  • Flex Budget: Use €60 per month flexibly for public transportation and a meal subsidy
  • Mentoring Program: Exchange knowledge and grow together across teams and locations through our self-organized mentoring platform
  • Discounts: Get a variety of great discounted offers, from fashion to leisure, through our employee benefits portal
  • Bike Leasing: Stay active and use our leasing bike offer for your way to work or in your spare time
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Product Security Engineer
Senior Product Security Engineer

United States Digital Space LLC • Dresden

Hybrid
EUR 90.000 - 130.000
Competitive LTIP
Hybrid work option
Vacation days + float holiday
Senior Cloud Security Engineer (m,f,x)
Senior Cloud Security Engineer (m,f,x)

United States Digital Space LLC • Berlin

Hybrid
EUR 90.000 - 130.000
Pension scheme
Berlin relocation support
Hybrid working model
+8
Senior Software Engineer, Platform (Security Focused) (m/f/d)
Senior Software Engineer, Platform (Security Focused) (m/f/d)

casavi GmbH • München

Hybrid
EUR 90.000 - 130.000
Flexible & hybrid work
40 days workation in the EU
Company events
+5
Team Lead - C++ UI (m/f/d)
Team Lead - C++ UI (m/f/d)

Zoomcar • München

Vor Ort
EUR 120.000 - 160.000
Flexible working hours
Home office possibilities
30 days vacation per year
+2
Senior Security Engineer (m|f|d)
Senior Security Engineer (m|f|d)

achelos GmbH • Nordrhein-Westfalen

Hybrid
EUR 80.000 - 110.000
30 days’ annual leave
Flexible working hours
Sports and wellness offers
+3
Team Lead - DevOps (m/f/d)
Team Lead - DevOps (m/f/d)

Zoomcar • Berlin

Hybrid
EUR 90.000 - 130.000
Integration
Mastery
Leadership
+11
Senior Security Engineer (m/f/d)
Senior Security Engineer (m/f/d)

EPAM Systems • Berlin

Hybrid
EUR 90.000 - 130.000
30 days holiday
Company Pension Scheme
Regular performance assessments
+5
Senior Product Security Engineer
Senior Product Security Engineer

United States Digital Space LLC • Chemnitz

Hybrid
EUR 80.000 - 110.000
LTIP (unit-based Long Term Incentive  
Hybrid work option
Yearly flex work allowance €1560
+4
Team Lead - DevOps (m/f/d)
Team Lead - DevOps (m/f/d)

EGYM | DACH • Berlin

Vor Ort
EUR 110.000 - 140.000
Flexible working hours
Home office possibilities
30 days vacation per year
+2
Application Security Engineer (m/w/d)
Application Security Engineer (m/w/d)

United States Digital Space LLC • Berlin

Vor Ort
EUR 70.000 - 100.000
30 Tage Urlaub
flexible Arbeitszeiten
Moderne Ausstattung
+1