Senior Information Security Engineer - Application Security

Camunda

Connacht

Remote

EUR 90,000 - 140,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Flexible remote work
Health and wellbeing support
Professional development budget

Job summary

Camunda is looking for a Senior Information Security Engineer (AppSec) in Connacht, Ireland. This hands-on role involves working with product and engineering teams to ensure secure software development. You'll lead AppSec tooling, manage vulnerabilities, and perform security reviews.

Strong coding skills, particularly in Java, and experience in CI/CD environments are essential. The position offers remote flexibility and a culture that values diversity and inclusivity.

Qualifications

  • Strong experience with Java services in CI/CD environments.
  • Expertise in secure SDLC and risk assessment.
  • Ability to manage and support security incidents.

Responsibilities

  • Embed security by design in product development.
  • Implement and integrate security tooling into CI/CD pipelines.
  • Drive vulnerability management processes.

Skills

Software engineering
Secure coding
Vulnerability management
Cross-team collaboration
Incident management

Tools

Java
Python
JavaScript
TypeScript
Kubernetes

Job description

About the Role

As a Senior Information Security Engineer (AppSec) at Camunda, you’ll join a small, senior, and highly collaborative InfoSec team that lives our FAITH values – Focus, Ambition, Integrity, Talent and Humor – every day. You’ll work hand‑in‑hand with our product and engineering teams across the entire SDLC to ensure our platform is designed, built, and shipped securely as we continue to grow. This is a technical, hands‑on, developer‑centric role where you’ll shape how we build secure Java services in a modern CI/CD, SaaS environment, strengthen our AppSec tooling and practices, and directly influence how customers trust and adopt Camunda. You can be based anywhere that allows you to collaborate effectively within CET to Eastern Time working hours.

What You’ll Be Doing
  • Partner with engineering teams throughout the SDLC – from early design and architecture discussions, through implementation and testing, to deployment – to embed security by design in our products.
  • Lead and evolve our AppSec tooling and workflows by implementing, tuning, and integrating SAST, DAST, SCA, and container/image scanning into CI/CD pipelines, and making sure findings are actionable for developers.
  • Drive vulnerability management for our applications and supply chain, including triaging and prioritizing issues, coordinating with teams on fix/mitigate/accept decisions, and ensuring we continuously improve our security posture.
  • Perform secure design and architecture reviews and threat modeling for distributed, API‑ and microservices‑based systems, helping teams understand security trade‑offs and make sound, risk‑based decisions.
  • Support and help coordinate application‑layer security incidents and escalations, working closely with Engineering, Support, and other stakeholders to investigate, contain, and learn from issues.
  • Together with the rest of the InfoSec team, help with security audits, customer assurance, and other processes.
What You Bring
  • Ability and/or willingness to use our product.
  • Strong Software engineering and secure coding background, with substantial recent hands‑on experience building and reviewing Java services, working in CI/CD environments, and shipping SaaS or other cloud‑based applications securely.
  • Secure SDLC, architecture & risk assessment experience, including secure design reviews, threat modeling for distributed/API/microservices systems, and performing risk assessments on product changes or new features.
  • Vulnerability management & security tooling expertise, with a proven track record of implementing and tuning SAST/DAST/SCA and container/image scanning, evaluating and triaging findings (including false positives), and driving fix/mitigate/accept decisions with engineering teams.
  • Cross‑team collaboration & communication skills, enabling you to work effectively with Engineering, Support, Sales, and other stakeholders while explaining complex security issues and trade‑offs in a clear, pragmatic way to both technical and non‑technical audiences.
  • Developer‑centric, incident‑savvy mindset, meaning you are comfortable managing and supporting security incidents and escalations, you see yourself as an enabler (not a gatekeeper), and you influence teams toward risk‑based, practical security improvements.
Nice‑to‑haves
  • Experience developing in Python, JavaScript, or TypeScript in addition to Java.
  • Hands‑on experience securing Kubernetes‑ or container‑based workloads and modern cloud environments.
  • Prior work in a B2B software company, especially in high‑availability or multi‑tenant contexts.
  • Experience running security training, talks, or workshops for engineering teams.
Compensation

We offer competitive, fair, and transparent compensation. Salary ranges are location‑based, with Standard and Major markets (global tech hubs) reflecting local competition.

The Annual Total Target Cash (base salary + 100% variable target, where applicable) shown below spans from the minimum in a Standard market to the maximum in a Major market. Final offers depend on skills, experience, and location, and we typically hire in the first half of the range to allow room for growth.

  • United States: $143,800.00 to $231,900.00
  • United Kingdom: £90,300.00 to £148,500.00
  • Singapore: S$178,600.00 to S$267,900.00

If you’re based elsewhere, you’ll be hired via Remote.com (our global employer partner), and your Talent Acquisition Partner will provide a personalized Total Rewards Calculator after your first interview.

Equity: We also offer equity (where applicable) through our Virtual Stock Option Plan (VSOP).

Benefits & Perks
  • Remote & Flexible: Work from anywhere with the setup that suits you, home office budget, co‑working space support, and flexible time off to recharge when you need it.
  • In Person Connection: We invest in meaningful face time through our Annual Kickoff (Vienna in 2025, Madrid in 2026!), team offsites, and Camundi Connection Budgets, including contributing to meetups while travelling, and local gatherings with fellow Camundi.
  • Health & Wellbeing: Access locally tailored healthcare, Modern Health for global mental wellbeing, and our Live Well Lifestyle Spending Account (LSA), a flexible, global benefit that puts you in control of your whole life, not just work, from staying active, to caring for family, exploring personal passions, meaningful experiences, and investing in your financial wellbeing. The Live Well program launches in 2026 and scales to €1,000 annually from 2027.
  • Financial Security: Retirement and pension plans (often with company contributions), plus life and disability insurance where relevant.
  • Professional Growth: Up to €1,000 per year for self‑driven learning: courses, certifications, books, you decide!

Everyone is welcome at Camunda — it’s a celebrated component of our culture. We strive to create an inclusive environment that empowers our people. At Camunda, we honour diverse cultures and backgrounds and are proud to be an equal opportunity employer. All qualified applicants will receive consideration without regard to gender, race, ethnicity, religion, belief, sexual orientation, age, disability or any other protected characteristics under applicable law. We are looking forward to your application!

AI in our hiring process

Camunda may use AI tools to aid the screening of applications and during the interview process. You can learn more here.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer
Senior Application Security Engineer

Uniting Holding • Dublin

Hybrid
EUR 75,000 - 95,000
Competitive remuneration
Company-paid health insurance
Hybrid Working Model
+2
Senior Application Security Engineer
Senior Application Security Engineer

SoftCo • Dublin

Hybrid
EUR 120,000 - 180,000
Performance bonus
Health insurance
Pension
+6
Senior AppSec Engineer - Secure Java & CI/CD
Senior AppSec Engineer - Secure Java & CI/CD

Camunda • Connacht

Remote
EUR 90,000 - 140,000
Flexible remote work
Health and wellbeing support
Professional development budget
Staff Engineer (IT Automation & AI-native Transformation)
Staff Engineer (IT Automation & AI-native Transformation)

SoSafe • Ireland

On-site
EUR 70,000 - 90,000
Flexible hours
33 vacation days
Access to corporate discounts
+2
Application Security Engineer (Experienced in applications security focusing on red, blue or pu[...]
Application Security Engineer (Experienced in applications security focusing on red, blue or pu[...]

MUFG Investor Services • Dublin

On-site
EUR 90,000 - 130,000
Application Security Engineer
Application Security Engineer

Intercom • Dublin

Hybrid
EUR 70,000 - 100,000
Competitive salary and equity
Free lunch and snacks
Flexible paid time off
+4
Application Security Engineer
Application Security Engineer

United States Digital Space LLC • Dublin

Hybrid
EUR 70,000 - 90,000
Competitive salary and equity
Daily lunch and snacks
Flexible paid time off
+2
Cybersecurity Engineer
Cybersecurity Engineer

Workday • Dublin

On-site
EUR 70,000 - 105,000
Hybrid work model
Equal Opportunity Employer
Senior Security Engineer
Senior Security Engineer

Cubic³ • Dublin

On-site
EUR 80,000 - 100,000
Software Engineer II - Full Stack - Web Engineering
Software Engineer II - Full Stack - Web Engineering

United States Digital Space LLC • Ireland

Hybrid
EUR 71,000 - 113,000
Health coverage
Flexible locations & schedules
Generous vacation days
+2