Staff Security Engineer

Supermetrics

Helsinki

On-site

EUR 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity
Home office allowance
Annual personal learning budget
Sports and wellness allowance

Job summary

Supermetrics in Helsinki HQ is seeking a Senior Security Engineer to join our Security team. You will work with product development to embed security best practices across the software development lifecycle and secure our SaaS platform and internal infrastructure.

You will drive security automation in CI/CD, perform threat modeling, reviews, and collaborate across teams to promote a security‑first culture. The role offers autonomy and opportunities to shape our cloud security posture.

Qualifications

  • 3+ years of full‑time experience in information security and total at least 5 years of full‑time work experience in software development.
  • Expertise in securing cloud infrastructure in AWS, GCP or Azure.
  • Basic knowledge of Kubernetes and securing Kubernetes clusters.
  • Software development experience, including proficiency in at least one programming language (e.g., Python, Go, PHP) and understanding of secure coding practices.
  • Experience of modern CI / CD systems (GitLab / GitHub) and implementing automated security scanning tools (SAST, SCA) as part of pipelines.
  • Knowledge of security frameworks and standards such as OWASP ASVS, OWASP SAMM, ISO 27001, and CIS Benchmarks, and applying them to product development.
  • Hands‑on experience in configuring SIEMs, threat detection and response tooling and web application firewalls.
  • Experience of incident response in cloud environments.
  • Relevant technical security certifications (e.g., CISSP, SANS, etc.).

Responsibilities

  • Design, implement, and maintain security controls across our SaaS platform and internal infrastructure, automating vulnerability and threat detection (SAST, SCA, IAC, container image analysis) and ensuring robust audit logging via SIEM.
  • Do internal reviews, threat modeling and testing of new product features using automated tools and manual code review to identify security issues.
  • Collaborate closely with development and operations teams to integrate security into the Software Development Life Cycle (DevSecOps) and promote a security‑first culture.
  • Improve our existing security tooling in CI / CD and add new tools, implementing automated threat detection and policy‑as‑code solutions to detect data breaches and insecure configurations.

Skills

Information security
Cloud security
Kubernetes
Programming
CI/CD security
Threat modeling
SAST
SCA
IAM policies
SIEM

Tools

GitLab
GitHub
SIEM tooling

Job description

We’re looking for a Senior Security Engineer to join our Security team in Helsinki HQ.

In this role, you will…
  • Work closely with product development to embed security best practices across the entire software development lifecycle and ensure security of our products.
  • In collaboration with the cloud infrastructure team improve security of our cloud infrastructure by improving existing and implementing new security controls.
  • Have a high level of autonomy in your daily work to improve our security posture.
Your day-to-day work and responsibilities include…

Security Engineering & Architecture: Design, implement, and maintain security controls across our SaaS platform and internal infrastructure. This includes automating vulnerability and threat detection (SAST, SCA, IAC, container image analysis), ensuring robust audit logging via SIEM, implementing and managing IAM policies, and continuously identifying and mitigating security risks.

Reviews and Assessments: Do internal reviews, threat modeling and testing of new product features. Use automated tools and manual code review to find security issues in software and infrastructure.

Collaboration & Communication: Collaborate closely with development and operations teams to integrate security into the Software Development Life Cycle (DevSecOps). Champion a security-first culture, embedding security principles into all aspects of our operations and product development.

Security Automation: Improve our existing security tooling in CI / CD and add new tools. Implement automated threat detection and policy-as-code solutions to detect possible data breaches and insecure configurations.

This position is for you if you have at least…
  • 3+ years of full-time experience in information security and in total at least 5 years of full-time work experience in e.g. software development.
  • Expertise in securing cloud infrastructure in AWS, GCP or Azure.
  • Basic knowledge of Kubernetes and securing Kubernetes clusters and containerized applications.
  • Software development experience, including proficiency in at least one programming language (e.g., Python, Go, PHP) and understanding of secure coding practices, is required. Experience reviewing source code is also required.
  • Experience of modern CI / CD systems (GitLab / GitHub) and implementing automated security scanning tools (SAST, SCA etc) as part of pipelines.
  • Knowledge of security frameworks and standards such as OWASP ASVS, OWASP SAMM, ISO 27001, and CIS Benchmarks, and applying them to product development.
  • Keen interest in promoting security in a product development organization and working in close collaboration with software and cloud engineers to improve security of our products.
  • Expertise in securing Kubernetes clusters in complex, multi-cloud environments (a significant plus).
  • Familiarity with AI software development tools and AI security.
  • Hands‑on experience in configuring SIEMs, threat detection and response tooling and web application firewalls.
  • Experience of incident response in cloud environments.
  • Relevant technical security certifications (e.g., CISSP, SANS, etc.).

Does this sound like your next career adventure? Apply now! We’ll fill the role as soon as we find the right person.

Benefits we offer…
  • Attractive pay structure, including equity
  • Great work equipment, and home office allowance for those working in our fully remote locations
  • Annual personal learning budget
  • Sports and wellness allowance

Benefits vary depending on location.

Supermetrics is committed to providing a welcoming and inclusive workplace for all. We believe that a diverse workforce is a strong workforce, and we are dedicated to creating an environment where everyone feels valued and respected. If you require any reasonable accommodations during the application or interview process, please let us know. All requests for accommodation will be kept confidential.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Security Engineer, Product & Platform Security
Lead Security Engineer, Product & Platform Security

Sine Engineering • Tampere

On-site
EUR 120,000 - 190,000
Paid time off
Health & wellbeing package
High-end equipment
+3
Lead Security Engineer
Lead Security Engineer

Sineeng • Tampere

On-site
EUR 120,000 - 180,000
Paid Time Off
Health & Wellness Package
Lunch Benefit
+14
Security Engineer, SecOps
Security Engineer, SecOps

Hoxhunt • Finland

Hybrid
EUR 4,000 - 6,000
Extensive healthcare
Office gym and swimming pool
Flexible working hours
Industrial Security Expert
Industrial Security Expert

Gofore • Helsinki

On-site
Flexible working conditions
Certification support
Bonus based on monthly billing
Software Architect (Security)
Software Architect (Security)

Digia Plc • Jyväskylä

Hybrid
EUR 90,000 - 125,000
Occupational healthcare
Holiday cottages
€2,000 referral bonus
+2
Senior Security Engineer — Cloud & DevSecOps Architect
Senior Security Engineer — Cloud & DevSecOps Architect

Supermetrics • Helsinki

On-site
EUR 90,000 - 130,000
Equity
Home office allowance
Annual personal learning budget
+1
Security compliance specialist
Security compliance specialist

GleSYS AB • Helsinki

Hybrid
EUR 50,000 - 70,000
30 days of vacation
Parental leave top-ups
Wellness allowance
+3
IT Security Operations Specialist
IT Security Operations Specialist

NestAI • Helsinki

On-site
EUR 80,000 - 120,000
Occupational healthcare (Mehiläinen)
Epassi Flex benefit
Lunch benefit
+5
HR Business Partner & Employee Relations Specialist
HR Business Partner & Employee Relations Specialist

WithSecure • Helsinki

On-site
EUR 90,000 - 130,000
Senior DevOps Engineer
Senior DevOps Engineer

Smartlyio • Helsinki

On-site
EUR 60,000 - 80,000
Generous healthcare packages
Mental health services
Flexible work-life balance
+2