Senior Ruby on Rails Engineer (Trust & Safety)

nebenan.de

Berlin

Vor Ort

EUR 90.000 - 130.000

Vollzeit

Vor 2 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Eine vollständige Bewerbung in einer Minute — Lebenslauf und Anschreiben, maßgeschneidert und versandbereit.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Additional vacation days
Company pension plan
Pets allowed
Company laptop
Flexible working hours
Sabbatical

Zusammenfassung

nebenan.de is seeking an experienced security engineer to design and implement safeguards for our API and backend, focusing on abuse detection, rate limiting, verification checks, and safer defaults. You will lead threat modeling for new features and shape frontend safety improvements for a trusted user experience.

You will own moderation tooling and platform signals, guiding the moderation team to move high-risk cases first while maintaining user safety and privacy in a fast-growing

Qualifikationen

  • Solid Ruby on Rails experience in production.
  • Strong SQL and understanding of how databases behave.
  • Excellent English skills for an international team.
  • German language and German-market moderation context.
  • Firm grasp of client–server architecture and API risk.

Aufgaben

  • Design and implement security safeguards in the API and backend, including abuse detection, rate limiting, and verification checks.
  • Lead threat modeling for new features and design friction/detection against abuse.
  • Own tooling and standards for the moderation team to ensure consistent outcomes for high-risk cases.
  • Coordinate platform-level obligations under the Digital Services Act and GDPR; keep evidence audit-ready.

Kenntnisse

Ruby on Rails
Threat modeling
Incident response
AWS
SQL
English fluency
German language
Frontend collaboration

Tools

AWS

Jobbeschreibung

  • Your mission is to keep our users safe: with technical safeguards built into our platform and API, with product features that help neighbours protect themselves, and in close partnership with our Community Management team
  • You look at everything security first. You ask how someone could attack the trust of our users, and you prevent it before it happens. At the same time you think in products, not only in backend systems: a well-placed warning in the interface, a clear reporting flow, or a safer default setting often protects more people than another rule on the server
  • Concretely, you will:
  • You will be the first hire in a new team of three, safeguarding our users. Becoming a team lead is an option
  • Design and implement technical safeguards in our API and backend: abuse detection, rate limiting, verification checks, and the signals that catch fake accounts and scams early
  • Ship user-facing safety features. Reporting flows, warnings on suspicious messages, blocking and privacy controls, safer defaults. Safety that users can see and use
  • Threat-model new features before they ship. Ask how a bad actor would abuse them, and design the friction and detection against it
  • Assess and implement third party integrations to improve our way of working with threats
  • Stay current on how attacks on social platforms evolve: account takeover, fake accounts, romance and marketplace scams, phishing and QR lures, spam rings, coordinated harassment
  • Lead the response when something is spreading or someone is at risk: decide, act, then close the route it came through
  • Decide what we build ourselves and what we buy. Where the market already solves a problem, such as content scanning, evaluate it, buy it and integrate it. Build where the problem is specific to nebenan
  • Our moderation team handles cases day to day. You build the tooling and the standards they work with, so the highest-risk cases move first and similar cases get similar outcomes
  • Turn what moderation learns into product and platform improvements, and turn platform signals into better moderation decisions
  • Own the platform-side obligations under the Digital Services Act and GDPR: notice and action, statements of reasons, complaint mechanisms, transparency reporting. Keep the evidence audit-ready as you go. Legal owns the interpretation; you make the platform meet it
  • Measure safety honestly: how much harm actually reaches users, how fast we act, and how accurate our decisions are
Benefits
  • Additional vacation days
  • Company pension plan
  • Pets allowed
  • Company laptop
  • Flexible working hours
  • Sabbatical

If you are not full-stack yet, you want to move into that direction and learn other stacksA plus: experience selecting and integrating vendor tooling in a safety or security stackA user- and product-centric view: you care how safety feels in the interface, and you are comfortable shaping frontend features that help users stay safeA plus: hands-on experience of a fraud, scam or impersonation wave at scaleJudgment under pressure: you keep users’ safety and freedom in balance, and you decide quickly when someone may be at riskA plus: a security background in threat modelling, incident response or offensive securityWorks well with non-engineers: moderators, product, legal. You can explain a technical risk in plain language and take a moderation insight back into codeUses AI deliberately as leverage: directs and reviews generated code to production qualityInfrastructure fluency: AWS, logging, observability, queues. You can reason about a system under attack, not only under loadA plus: German language and German-market moderation contextA security-first mindset: you threat-model by instinct, probe how features can be abused, and stay current on attack vectors against social networksSolid Ruby on Rails experience in productionStrong SQL and a real understanding of how databases behave; you can find an abuse pattern in the data yourselfExcellent English skills for working in our international teamA firm grasp of client–server architecture: what the client can and can’t be trusted with, where the risk actually lives, and how an API fails under attack

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Senior Ruby (on Rails) Engineer Trust & Safety (f/m/d)
Senior Ruby (on Rails) Engineer Trust & Safety (f/m/d)

Good Hood Pty Ltd • Berlin

Hybrid
EUR 80.000 - 110.000
Hybrid-Arbeitsmodell
SpenditCard 35 € monatlich
30 Tage Urlaub
Trust & Safety Lead (Technical) (f/m/d)
Trust & Safety Lead (Technical) (f/m/d)

Meyandy LLC • Berlin

Vor Ort
EUR 90.000 - 130.000
Trust & Safety Lead (Technical) (f/m/d)
Trust & Safety Lead (Technical) (f/m/d)

Good Hood GmbH / nebenan.de • Berlin

Vor Ort
EUR 90.000 - 130.000
SpenditCard 35€ monatlich
30 Tage Urlaub
Senior Ruby (on Rails) Engineer Trust & Safety (f/m/d)
Senior Ruby (on Rails) Engineer Trust & Safety (f/m/d)

Join • Berlin

Hybrid
EUR 90.000 - 125.000
Hybrid work model
30 days vacation per year
SpenditCard 35 Euros/month
+1
Trust & Safety Lead (Technical) (f/m/d)
Trust & Safety Lead (Technical) (f/m/d)

Goodhood • Berlin

Vor Ort
EUR 90.000 - 130.000
Hybrid work model
SpenditCard €35/month
30 days vacation
+1
Cloud Security Engineer at YGO GmbH
Cloud Security Engineer at YGO GmbH

YGO GmbH • Deutschland

Vor Ort
EUR 90.000 - 120.000
Technical Lead
Technical Lead

Eurobase People • Berlin

Vor Ort
EUR 99.000 - 121.000
Lead Security Engineer (m/w/d)
Lead Security Engineer (m/w/d)

Recare Deutschland GmbH • Berlin

Hybrid
EUR 90.000 - 130.000
Remote-friendly
Flexible hours
Edenred card
+2
Trust & Safety Lead (Technical) (f/m/d)
Trust & Safety Lead (Technical) (f/m/d)

nebenan.de • Berlin

Vor Ort
EUR 110.000 - 170.000
Hybrid work model
35 Euros SpenditCard monthly
30 days vacation per year
+1
Security Engineer
Security Engineer

DeepCamp • Deutschland

Vor Ort
EUR 90.000 - 130.000
Flexible hours
Async-friendly culture
Own laptop
+1