Company Logo
Software Engineer

Netflix - 1d ago

Company Logo
Senior Software Engineer

Reddit - 4d ago

Senior/Staff Application Security Engineer

Requirements

  • 6+ years of experience in application security.
  • Strong knowledge of common application security risks (e.g. OWASP Top 10) and how to mitigate them.
  • Experience with secure coding practices in languages such as Python, Go, Java, or JavaScript.
  • Proficiency in a common programming language (such as Go or Python) with a willingness to learn Go, if necessary.
  • Hands-on experience with security testing tools (Burp Suite, ZAP, Semgrep, etc.).
  • Understanding of authentication protocols like SAML or OIDC.
  • Experience in conducting threat-modeling sessions.

Nice to Haves

  • Confidence in presenting your ideas and opinions in a manner that can be challenged, while responding well to feedback.
  • Experience in designing, building, and maintaining security automation.
  • Experience in translating compliance and regulation requirements into technical specifications.
  • Experience in exploiting vulnerabilities in web applications, Linux kernels, containers, and networks.
  • Security certifications such as OSCP or OSWE.

What you'll be doing

  • Build and maintain Application Security Posture Management (ASPM) at the Company scale.
  • Automate and support SAST, SCA tools, etc as part of CI/CD pipelines.
  • Improving SAST, secrets detection rules. Keeping false positive rate low.
  • Identify, analyze, and remediate application security vulnerabilities.
  • Collaborate with development teams to integrate security best practices into the software development lifecycle (SDLC).
  • Develop and maintain secure coding guidelines for development teams.
  • Conduct, run threat modeling and risk assessments for new and existing applications.
  • Provide development teams with instruments that facilitate security-related work like threat modelling, vulnerability detection, etc.
  • Stay updated on the latest security threats, vulnerabilities, and mitigation techniques.
  • Serve as an application security subject matter expert to other teams.

Perks and Benefits

  • Competitive compensation
  • Career growth and learning opportunities
  • Flexibility and ownership
  • Collaborative and innovative culture
  • Opportunity to work on impactful AI projects
  • International environment and talented teams
AI Summary ✨
Nebius logo

Nebius

Remote EMEA

Remote EMEA
Experience: Senior
Posted: September 14, 2026
Last seen: 2 hours ago
Golang
Java
Javascript
Kubernetes
Python
security

Why we track Nebius

Nebius is the Amsterdam-headquartered, Nasdaq-listed AI cloud that spun out of Yandex. They build GPU clusters, their own server hardware, and a full cloud stack for AI training and inference, with engineering concentrated in Amsterdam and teams in London, Prague, Berlin, Finland, and Paris plus remote roles across Europe. Pay is strong: levels.fyi shows a €140K median in the Netherlands (€160K at the G17 level) and a £183K median in London.

Similar jobs

  • a day ago
    New
    Remote EMEA
  • 5 days ago
    Remote
  • 8 days ago
    Remote EMEA
  • 8 days ago
    Remote EMEA
  • See all jobs in undefined