Security Software Engineer (Junior)

United States Digital Space LLC

Delft

On-site

EUR 60,000 - 85,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Thirteenth month salary
8% holiday allowance
Pension scheme
27 vacation days + loyalty & Giving-5-
Home office supplies
Learning & development access
Hackathons & Tech Talks
Hybrid work model

Job summary

United States Digital Space LLC is seeking a security-focused software engineer to help build secure tooling and IAM features. You will translate findings into actionable fixes and contribute to the development lifecycle with a security-first mindset.

You will participate in security campaigns, tackle low-level issues, and help advance shift-left tooling and testing within a collaborative team. Hybrid work in a global engineering environment is offered.

Qualifications

  • Software engineering background with real code written and shipped.
  • Knowledge of OWASP Top 10 and pentest-style thinking.
  • Ability to trace vulnerabilities to root cause and attacker usage.
  • Familiarity with threat modeling (STRIDE) concepts.
  • Clear, structured communication to engineers and non-tech stakeholders.

Responsibilities

  • Build secure tooling and IAM playbooks to default secure software.
  • Translate findings into concrete fixes and contribute to IAM functionality.
  • Participate in structured security campaigns to rank and report risks.
  • Help tackle low-level security issues and prevent insecure patterns.
  • Improve shift-left security tooling, playbooks, and scanning programs.

Skills

Software engineering
OWASP Top 10
Threat modeling
Code reading
Communication
Team collaboration

Education

Bachelors degree in CS or related

Tools

Burp Suite
OWASP ZAP

Job description

Netherlands, DelftTechnologyNetherlands

This \= the job

Security Operations is the company's security engineering team, owning two areas: security across the company's full product portfolio, and the development of Identity and Access Management (IAM) functionality used across the company's products. The team builds secure tooling that integrates into engineering teams' existing workflows, bringing a security-first mindset into the development lifecycle (SSDLC). Automation covers what it can; manual, pentest-style testing covers what it can't.

This \= the job that you aspire to

Within the team, you write code across several fronts: building secure tooling and playbooks that make secure software the default, translating findings into concrete low-level fixes, and contributing to the development of Identity and Access Management (IAM) functionality.

  • When deeper investigation is needed, you take part in structured security campaigns: building an inventory of what needs to be checked, ranking findings by risk, investigating the highest-risk areas in depth, and reporting clearly on what was tested, what was found, and what remains open.
  • You help tackle low-level security issues and build tools that prevent insecure software patterns.
  • You help build and improve the team's shift-left security tooling and playbooks.
  • You contribute to the team's recurring scanning and testing program, following up with engineering teams on findings.
This \= your team

Security Operations is part of Technology, made up of security-minded software engineers who both build and break things: building secure tooling and IAM functionality, and testing systems the way an attacker would to see if they hold up. The team continuously refines its tooling, playbooks, and methods based on what it finds.

This \= our tech stack
  • the company's core products are primarily built in C#/.NET.
  • Across the wider the company portfolio you will also encounter other languages, such as C, Python, and PHP — comfort reading unfamiliar code is useful, though you don't need to master every language. The team relies on a combination of automated scanning and dependency tooling, AI-assisted analysis, and manual, pentest-style testing with tools such as Burp Suite or OWASP ZAP.
This \= what you bring
  • A software engineering background (junior to medior level), you've written and shipped real code, ideally in C#/.NET or a comparable ecosystem.
  • Genuine interest in application security and classical penetration-testing techniques: you know your way around the OWASP Top 10 (injection, broken authentication, IDOR, SSRF, and similar) and want to go deeper.
  • A \"trace it to the source\" mindset: you want to understand not just that something is vulnerable, but why, and how an attacker would actually use it.
  • Basic awareness of threat modeling concepts (e.g., STRIDE) and interest in growing into attack-surface thinking.
  • Comfort reading code across different languages and frameworks.
  • Clear, structured communication: you can explain a technical finding to both an engineer and a non-technical stakeholder.
  • A collaborative, learning attitude: you are supported by senior colleagues and are expected to grow toward more autonomous work over time.
Nice to have (not required):
  • Familiarity with the OWASP Top 10 and OWASP ASVS.
  • CompTIA Security+ or an equivalent foundational security certification.
  • eJPT (eLearnSecurity Junior Penetration Tester) or a similar hands‑on/practical entry‑level pentest credential.
This \= what you get
  • At the company, we understand the importance of achieving a healthy balance between effort and relaxation, because it enhances both job satisfaction and well-being.
  • Over 2,000 colleagues worldwide, with technology colleagues across our offices in Delft (HQ), Utrecht, Eindhoven, Zwolle, and our Kuala Lumpur development center.
  • A 40-hour workweek on a permanent (indefinite) contract.
  • Hybrid working model: 2 days in the office, 3 days working from home.
  • Competitive salary, a thirteenth month, and 8% holiday allowance.
  • A modern pension scheme.
  • 27 vacation days, plus up to 5 loyalty days (one extra day per full year of employment) and up to 3 \"Giving Back\" days for a charity of your choice.
  • Home office supplies to support your home working setup.
  • Access to LinkedIn Learning and the company's own learning & development center to help you grow into this role.
  • Events such as a global hackathon and Tech Talks to develop and showcase your skills.
About the company

the company develops cloud software for small and medium-sized companies and their accountants. The products automate business processes in areas such as Finance and HR and provide specific ERP solutions for wholesale distribution, manufacturing, projects and construction. This saves time and provides insight. It enables customers to work efficiently, make informed decisions and continue growing. More than 675,000 companies primarily in the Netherlands, Belgium and Germany already rely on the company's software. the company was founded in 1984 in Delft, the Netherlands, which is still the location of our head office. Every day, more than 2,000 ambitious professionals work on innovation. Driving responsible business, with respect for each other, the environment and society is central to this. For more information, visit www.the company.com.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Software Engineer (Junior)
Security Software Engineer (Junior)

Accountancy Gemak • Delft

Hybrid
EUR 40,000 - 60,000
Hybrid working
Pension scheme
Vacation days (27 + 5 loyalty)
+3
Security Software Engineer (Junior)
Security Software Engineer (Junior)

Exact • Delft

On-site
EUR 60,000 - 90,000
Product Security Engineer II
Product Security Engineer II

United States Digital Space LLC • Amsterdam

Hybrid
EUR 70,000 - 110,000
Health insurance
Daily catered lunches
Pension plan
+2
Security Engineer
Security Engineer

Software Search • Netherlands

Hybrid
EUR 100,000 - 123,000
Permanent contract
Training budget and security community
Junior software engineer .NET
Junior software engineer .NET

United States Digital Space LLC • Utrecht

Hybrid
EUR 42,000 - 56,000
Thirteenth Month
Pension Plan
Permanent Contract
+5
Security Automation Engineer
Security Automation Engineer

Northwave • Utrecht

Hybrid
EUR 50,000 - 70,000
Competitive salary with annual review
Pension contributions
25 vacation days plus national holidays
+3
Senior Cyber Security Analyst
Senior Cyber Security Analyst

SoftwareOne • Amsterdam

On-site
EUR 90,000 - 120,000
Wellbeing support
Annual training budget
Mobility options
+2
Business Development Consultant Cybersecurity
Business Development Consultant Cybersecurity

SoftwareOne • Amsterdam

Hybrid
EUR 70,000 - 100,000
Hybrid work model
Wellbeing support
Annual training budget
+1
Cyber Security Analyst
Cyber Security Analyst

SoftwareOne • Amsterdam

On-site
EUR 45,000 - 75,000
Wellbeing support
Annual training budget
Team events
+1
Software Engineer Maritime Signature Systems
Software Engineer Maritime Signature Systems

United States Digital Space LLC • Den Haag

On-site
EUR 39,000 - 56,000
Holiday pay
13th month bonus
Flex budget
+1