Software Engineer, Security

Hoxhunt

Helsinki

Hybrid

EUR 50,000 - 67,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Extensive healthcare
Office in Helsinki with gym and pool

Job summary

Hoxhunt is hiring for a security-focused software engineer to design and operate our security event and log pipeline on Google Cloud, with detections, alerting and dashboards built as code. You will extend automation across our vulnerability triager, remediation nudging, and scanning-stack integrations.

Join the Product Security team where you will harden cloud security, implement least-privilege IAM, and build security tooling in a fast-growing, AI-native security company.

Qualifications

  • Hands-on experience with Google Cloud IAM, networking, logging and eventing services.
  • Proficiency in at least one of TypeScript, Python or Go; comfortable with two of them.
  • Experience building data or event pipelines, observability systems, or detection tooling.

Responsibilities

  • Design and build our security event and log pipeline on GCP, with detections, alerting and dashboards as code, tested and deployed via CI/CD.
  • Own and extend security automation: the vulnerability triager, remediation nudging automation, and scanning-stack integrations.
  • Build and improve tooling for the GRC function used daily.
  • Turn recurring manual security work into code, e.g., data-removal monitoring end-to-end.
  • Harden cloud security architecture with SRE/Platform: IAM, least privilege, network egress, secrets, IaC.
  • Contribute to agentic security tooling alongside the team.

Skills

Google Cloud
Kubernetes
TypeScript
Python
Go
CI/CD
Security automation
Data pipelines

Tools

GitHub Advanced Security

Job description

Our mission and why it matters

We are on a mission to make humans the strongest security layer.

Human risk remains one of the biggest vulnerabilities and traditional awareness training is not enough. We take a different approach by combining AI-driven personalization, real threat detection, and behavioral science to actively protect people and organizations.

We don't just simulate risks. We build the tools that detect and stop them.

Why this role matters

We're growing fast, over 50% year over year, and our security has to scale with the product: through tooling and code, not headcount. There is no manned SOC here and no plans for one.

You will build our security observability: the pipeline that collects, processes and routes security events and logs across our Google Cloud platform, and the detections, alerting and dashboards on top of it. You won't start from zero. Dashboards, audit logging, alerting and a SIEM build-out are underway, and you inherit working security automation: an automated vulnerability triager covering our npm, Maven, Go and Python ecosystems, remediation nudging with CI tests, and the scanning-stack integrations around them. Your job is to take all of it from working to excellent.

What you'll own and drive
  • Design and build our security event and log pipeline on GCP, and the detections, alerting and dashboards on top of it, engineered as code: reviewed, tested, deployed through CI/CD.

  • Own and extend our security automation: the vulnerability triager, the remediation nudging automation, and our scanning-stack integrations (GitHub Advanced Security, dependency ownership, issue sync).

  • Build and improve the tooling our GRC function relies on every day.

  • Turn recurring manual security work into code, for example automating our churned-customer data-removal monitoring end to end.

  • Harden our cloud security architecture together with SRE/Platform: trust boundaries, IAM and least privilege, network egress, secrets, infrastructure-as-code.

  • Contribute to our agentic security tooling (AI-assisted PR review and security review) alongside the team.

What makes you thrive here

You'll probably have at least a few years of experience building production software, but we care less about how long you've been active and more about what you've built, how it was built, and why it worked.

You have

  • deep, hands‑on experience with Google Cloud: IAM, networking, logging and eventing services, containers and Kubernetes.

  • production experience in at least one of TypeScript, Python or Go, and no fear of the other two. We work in a large monorepo spanning all three.

  • experience building data or event pipelines, observability systems, or detection tooling, and the instinct to treat all of it as software: version‑controlled, reviewed, tested.

  • a genuine pull toward security. A security title is not required; an engineer who wants their work to protect things is.

  • AI agents in your daily workflow. We expect you to use modern AI tools everywhere to expand and scale your reach.

Who you'll work with

You'll join the Product Security team: a small, high‑leverage group whose job is to address any security concern a product team or customer raises. You build the platforms; your teammates run the programs on top of them and cover application security and compliance. You'll work daily with SRE/Platform and the product engineering teams.

What you can expect from us
  • Compensation: monthly salary of €4,500–6,000 depending on your experience. You may notice varying salary ranges for roles with similar titles across Hoxhunt; this is because each range is grounded in our role leveling and reflects the seniority, scope, and impact expectations required for that specific role and team, and we operate with a low hierarchy.

  • Working ways: flexible, hybrid. You are expected to visit the Helsinki office weekly.

  • High performance meets high humanity: driven, high‑impact work with egos left at the door, surrounded by wildly talented colleagues in an environment built on kindness, support, and psychological safety.

  • Authentic trust and autonomy: we hire great people and trust them to do great work. Real ownership over how our security automation gets built, and the space to decide what's worth automating first.

  • A product you can be proud of: Hoxhunt's own products are security products. Building security tooling at a company that ships security tooling means your internal work and the product sharpen each other.

  • The perks that matter: extensive healthcare and our fresh office in Helsinki, complete with a gym and swimming pool.

Recruitment process
  1. Interview with Talent Acquisition (30 min)

  2. Hiring Manager interview with the Director of Product Security (45–60 min)

  3. Technical assignment and panel interview (60–90 min)

  4. Meeting with the VP of Engineering (30 min)

  5. Reference checks and final offer

About Hoxhunt

Hoxhunt was founded in 2016 by four visionaries. Today we are a global team of +270 amazing Hoxhunters advancing a truly AI-native category leader in human risk management, with key hubs in the United States, the United Kingdom, Singapore, and Finland. We are proud to be an award‑winning, fast‑growing software company, recognized by G2 and Gartner, named to TIME Magazine's list of the World's Top EdTech Companies, and featured for our innovation in major publications like Fast Company, TechCrunch, Forbes, and Inc.

As a multi-product company, Hoxhunt goes beyond traditional security awareness. We don't just educate employees through frequent, personalized, and behavior‑changing cybersecurity training - we also actively build real threat intelligence and response tools that protect organizations against malicious cyberattacks every single day.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Software Engineer, Security
Senior Software Engineer, Security

Hoxhunt • Helsinki

Hybrid
EUR 67,000 - 84,000
Extensive healthcare
Helsinki office with gym and swimming
Hybrid work model
Senior Software Engineer, New product, Full-stack
Senior Software Engineer, New product, Full-stack

Hoxhunt, Inc. • Helsinki

Hybrid
EUR 67,000 - 84,000
Healthcare
Office in Helsinki
Gym and swimming pool
+1
Junior Security Engineer, GRC
Junior Security Engineer, GRC

Hoxhunt • Helsinki

Hybrid
EUR 33,000 - 45,000
Extensive healthcare
Beautiful Helsinki office
Gym and swimming pool
Senior Software Engineer, Gamified Phishing Training
Senior Software Engineer, Gamified Phishing Training

Hoxhunt • Helsinki

Hybrid
EUR 67,000 - 84,000
Healthcare
Helsinki office
Gym
+1
Senior Software Engineer, New product, Threat Detection, Full-stack
Senior Software Engineer, New product, Threat Detection, Full-stack

Hoxhunt • Helsinki

Hybrid
EUR 72,000 - 90,000
Healthcare
Helsinki office facilities (gym & pool
Security Engineer
Security Engineer

Hoxhunt • Helsinki

Hybrid
EUR 50,000 - 67,000
Healthcare benefits
Helsinki office
Gym access
+1
Security Engineer, SecOps
Security Engineer, SecOps

Hoxhunt • Finland

Hybrid
EUR 4,000 - 6,000
Extensive healthcare
Office gym and swimming pool
Flexible working hours
Senior Software Engineer, New product, Full-stack
Senior Software Engineer, New product, Full-stack

Hoxhunt • Helsinki

Hybrid
Extensive healthcare benefits
Gym and swimming pool access
Flexible working setting
Senior Product Designer
Senior Product Designer

Hoxhunt, Inc. • Helsinki

Hybrid
EUR 61,000 - 67,000
Gym and pool
Jacuzzi
(Senior) Financial Controller
(Senior) Financial Controller

Hoxhunt • Helsinki

Hybrid
Healthcare
Hybrid work setting
Office in Helsinki