Security Engineer arbeitnow Qdrant.tech Germany · 9/25/2026

Primetime

Deutschland

Remote

EUR 70.000 - 110.000

Vollzeit

vor 11 Stunden
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Hebe dich für diese Rolle von der Masse ab — erstelle in etwa einer Minute einen maßgeschneiderten Lebenslauf und ein Anschreiben.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Flexible working hours
Remote-first culture
Own laptop

Zusammenfassung

Qdrant is seeking a Mid-Level Security Engineer to own hands-on security across our AI infrastructure. You will embed in the Cloud Engineering team, partnering with the Security Officer to drive remediation and enforce secure design and tooling.

You will triage bug reports, analyze vulnerabilities in Rust/Go/Python, and enable engineers with automation and secure defaults. This remote-first role emphasizes threat modeling, incident response, and scaling security across CI/CD and cloud

Qualifikationen

  • 3+ years in hands-on security engineering, product security, or vulnerability management.
  • Experience triaging vulnerability reports or working with bug bounty/vulnerability disclosure programs.
  • Practical knowledge of cloud and container security (AWS, Kubernetes).
  • Familiarity with GitHub security features and securing CI/CD pipelines.
  • Strong written communication for external researchers and internal teams.

Aufgaben

  • Run and manage a public bug bounty program, triage reports, reproduce findings, and drive remediation.
  • Investigate vulnerabilities at code level in Rust, Go, and Python tooling.
  • Provide tooling, defaults, docs, and guidance to make secure development the easy path.

Kenntnisse

Security engineering
Vulnerability management
Incident response
Cloud security
AWS
Kubernetes
GitHub security features
Automation tooling

Tools

Rust
Go
Python
AWS
Kubernetes
GitHub

Jobbeschreibung

Qdrant is an open-source vector search engine powering the next generation of AI applications, from semantic search and retrieval-augmented generation (RAG) to AI agents and real-time recommendations.

Trusted by global leaders like Canva, HubSpot, Tripadvisor, Bosch, and Deutsche Telekom, we’re building the retrieval infrastructure layer for modern AI. Recently raising $50M in Series B funding, we are growing rapidly and committed to transforming how AI understands and interacts with data.

As a remote-first company, we believe diverse backgrounds, perspectives, and experiences fuel innovation. Here, you’ll own meaningful work, tackle challenges, and grow alongside passionate individuals dedicated to shaping the future of AI.

We are looking for a Mid-Level Security Engineer to own the hands-on engineering and operational work within our security program. You will be embedded in the Cloud Engineering team, report into the Security Officer, and work closely together to identify risks, set priorities, and drive security issues through remediation. You will act as a security enabler across all Product & Engineering.

What you will own

Run our public bug bounty program: triage reports, reproduce and validate findings, communicate clearly with security researchers, and drive remediation through to closure.

Investigate reported vulnerabilities at the code level, including our Rust core, Go and Python tooling.

Enable engineers to build secure systems: provide tooling, paved-road defaults, documentation, and practical guidance so security is the easy path, not a checkpoint.

Partner with engineering teams to design, review, and verify fixes, and set clear security requirements on changes where the risk warrants it.

Harden and maintain our GitHub organization’s security posture, including secret scanning, push protection, branch protection and rulesets, dependency alerts, and code scanning, in partnership with the engineering teams that use these repositories daily.

Monitor, investigate, and respond to security alerts across AWS, Kubernetes, CI/CD, and related infrastructure.

Track and report security metrics (vulnerability remediation SLAs, MTTR, patch latency, critical findings) and keep reporting current for the Security Officer.

Implement, configure, and maintain security tooling across our development and cloud environments.

Support security incident response, including investigation, containment, remediation, and follow-up.

Maintain clear, complete, and auditable records of vulnerability and incident work in our tracking systems.

Build security automation and guardrails that scale across the development lifecycle: CI/CD security checks, policy-as-code, GitHub automation, and automated cloud security controls, so secure defaults are enforced by tooling rather than review.

Participate in threat modeling and architecture reviews for new services and major changes.

We are also building out our ISMS, which creates opportunities to contribute to security-tooling evaluations, technical vendor assessments, and proof-of-concept work. Formal compliance ownership, vendor risk assessments, and customer security questionnaires remain with the Security Officer.

This is a hands-on technical role focused on security engineering, vulnerability management, and incident response. The Security Officer owns compliance, formal third-party risk assessments, and customer security questionnaires, allowing you to focus primarily on engineering work. On-call expectations are low: there is no formal rotation, though occasional availability for high-severity incidents is expected.

Who you are

You can read and navigate an unfamiliar codebase (Rust, Go, Python) well enough to validate a vulnerability report, trace its impact, and judge whether a proposed fix actually closes it.

You write and maintain automation and security tooling comfortably, and can hold a credible technical conversation in code review.

Experience triaging vulnerability reports or working with a bug bounty program, vulnerability disclosure program, product security team, or similar function.

Practical knowledge of cloud and container security, particularly AWS and Kubernetes.

Familiarity with GitHub security features and securing CI/CD pipelines.

The ability to investigate alerts and vulnerabilities methodically, distinguish genuine risk from noise, and recommend proportionate remediation.

Clear written communication skills for working with external researchers and internal engineering teams.

A self-directed approach and comfort independently managing a security queue.

3+ years in a hands-on security engineering, product security, or vulnerability management role.

Nice to have

An offensive security background, such as penetration testing, CTF participation, vulnerability research, or exploit analysis.

Experience working in an open-source company or contributing security improvements to open-source projects.

Familiarity with cloud-native incident response.

A remote-first, international team working on cutting-edge AI infrastructure.

A competitive salary with additional perks.

Flexible working hours and async-friendly culture.

High ownership and real impact.

Choose your own laptop equipment.

For US-based full-time employees, we also offer a comprehensive benefits package including 401k match, health, dental, and vision insurance, plus flexible PTO policy.


Qdrant is an equal-opportunity employer. We believe the best ideas come from diverse teams, and we actively welcome applicants from all backgrounds. If this role excites you but you don't check every single box, we'd still love to hear from you! We don't want to miss out on great people because of a checklist.

This overview was written from the original listing to help you understand the role. Always confirm the specifics on the employer’s application page.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Security Engineer
Security Engineer

DeepCamp • Deutschland

Vor Ort
EUR 90.000 - 130.000
Flexible hours
Async-friendly culture
Own laptop
+1
Security Engineer
Security Engineer

Coinscapture • Deutschland

Remote
EUR 70.000 - 110.000
Remote-first culture
Competitive salary
Flexible hours
+5
Senior Support Engineer (EMEA) Qdrant · Berlin · Series B →
Senior Support Engineer (EMEA) Qdrant · Berlin · Series B →

Venture Post • Berlin

Hybrid
EUR 70.000 - 110.000
Remote-first
Competitive salary
Flexible hours
+1
Senior Software Engineer Platform
Senior Software Engineer Platform

Qdrant • Bernau

Vor Ort
EUR 90.000 - 140.000
Business Development Representative (EMEA) arbeitnow Qdrant.tech Germany · 9/27/2026
Business Development Representative (EMEA) arbeitnow Qdrant.tech Germany · 9/27/2026

Primetime • Deutschland

Remote
EUR 55.000 - 90.000
Flexible working hours
Async-friendly culture
Choose your own laptop
+2
Senior Security Engineer, Offensive Security
Senior Security Engineer, Offensive Security

Jobgether • Deutschland

Vor Ort
EUR 119.000 - 170.000
Fully remote
Equity
Learning stipend
+3
Cloud Security Engineer at YGO GmbH
Cloud Security Engineer at YGO GmbH

YGO GmbH • Deutschland

Vor Ort
EUR 90.000 - 120.000
Senior Application Security Engineer (all genders)
Senior Application Security Engineer (all genders)

Distribusion Technologies GmbH • Berlin

Vor Ort
EUR 95.000 - 135.000
Remote‑first
HQ in Berlin
Senior Application Security Engineer (all genders)
Senior Application Security Engineer (all genders)

Distribusion • Berlin

Hybrid
EUR 90.000 - 130.000
Senior Application Security Engineer (all genders)
Senior Application Security Engineer (all genders)

Meyandy LLC • Berlin

Vor Ort
EUR 90.000 - 130.000
Remote-friendly policy
International opportunities
Office Berlin HQ