Flexport

Product Security Engineer II

Middle · Удалённо · Амстердам, Нидерланды · Английский B2

Навыки

  • Agile
  • AWS
  • Azure
  • Burp Suite
  • Code review
  • Google Cloud
  • Java
Ещё 12
  • JavaScript
  • Kotlin
  • OWASP
  • Ответственность за результат
  • 152-ФЗ / персональные данные
  • Python
  • Ruby
  • SAST / DAST
  • Жизненный цикл разработки
  • SRE-практики
  • TypeScript
  • Управление уязвимостями

О компании и продукте

  • At Flexport, we believe global trade can move the human race forward. That’s why it’s our mission to make global commerce so easy there will be more of it. We’re shaping the future of a $10T industry with solutions powered by innovative technology and exceptional people. Today, companies of all sizes—from emerging brands to Fortune 500s—use Flexport technology to move more than $19B of merchandise across 112 countries a year.
  • The recent global supply chain crisis has put Flexport center stage as we continue to play a pivotal role in how goods move around the world. We are proud to have the support of the best investors in the game who believe in our mission, solutions and people. Ready to tackle global challenges that impact business, society, and the environment? Come join us.
  • At Flexport, we believe global trade can move the human race forward. That’s why it’s our mission to make global commerce so easy there will be more of it. We’re shaping the future of a $10T industry with solutions powered by innovative technology and exceptional people. Today, companies of all sizes - from emerging brands to Fortune 500s - use Flexport technology to move more than $19B of merchandise across 112 countries a year.
  • Flexport is looking for Product Security Engineers to help Flexport establish itself as the most trusted company in the global trade ecosystem. As a Product Security Engineer, you’ll develop a deep understanding of product development and strategy, and will be able to quickly identify and communicate security risks to diverse audiences while offering alternative solutions.

Задачи

  • Strategy & foundations
  • Build guardrails and AI-accelerated patterns that make secure-by-default the path of least resistance for developers
  • Build and maintain security tooling and automation that scales product security
  • Respond to emerging threats
  • Design-time & review
  • Contribute to threat modeling, design reviews, and code reviews with pragmatic guidance that balances risk against velocity
  • Partner with engineering to security-review and test new features and services as they're built
  • Vulnerability management
  • Triage, reproduce, and validate incoming bug bounty submissions and internal security reports
  • Cut through SAST, secrets, and vulnerability scanner noise to prioritize real issues and guide developers to effective fixes
  • Partner with development teams to drive remediation and track issues through closure
  • Developer enablement
  • Write clear, actionable security patterns that let developers ship fast and stay secure
  • Write and maintain runbooks, developer guidelines, and security documentation that scale the team's practices
  • Stay current on web and cloud security trends and bring new findings into product discussions

Требования

  • 2–5 years of experience in product/application security or software development with a security focus
  • Strong grasp of web application security principles and common attack vectors (e.g., OWASP Top 10)
  • Proficiency with application testing tools such as Burp Suite, OWASP ZAP, or browser developer tools
  • Working knowledge of at least one modern programming language (e.g., Ruby, Java/Kotlin, TypeScript/JavaScript, Python)
  • Working knowledge of at least one major cloud provider (AWS, GCP, Azure)
  • Hands-on experience with SAST tools (Cycode, Semgrep, Snyk, or similar)
  • Experience improving developer experience (DevEx) security without slowing teams down
  • Clear, constructive communicator on technical risk - in writing, in code review, and in conversation
  • Collaborative by default: you partner with developers, SREs, and security peers rather than handing down mandates
  • Comfortable with security on-call rotation and picking up work across security disciplines when needed
  • Hands-on experience with bug bounty platforms

Будет плюсом

  • Experience with cloud infrastructure security (AWS, GCP, Azure) and container technologies
  • Participation in CTF events or open-source security projects
  • Familiarity with threat modeling frameworks and secure SDLC best practices
  • Interest in contributing to internal developer security training programs

Условия

  • An opportunity to contribute to one of the fastest-growing companies, where you’ll have the chance to create a global impact while being a part of a thriving multinational environment
  • Daily catered lunches incl. vegetarian options, breakfast, snacks and soft drinks available in our office on daily basis
  • Commute expenses: Flexport will cover home-office commuting costs for employees living outside of Amsterdam
  • 25 working days as vacation days based on full time employment
  • Health insurance: Flexport offers a collective health insurance plan including a basic package and any available additional packages
  • Your monthly premium is fully paid by Flexport
  • A defined pension contribution scheme
  • Equity program: every team member becomes a shareholder, aligning our success with yours
  • As a private company in a multi-trillion dollar industry, you have a direct stake in our collective growth and success
  • Employee Assistance Program through Aetna Resources for Living: Flexport provides an employer-sponsored program at no cost to you and your household members
  • Parental leave benefit: Flexport is here to support you and your families in one of the most important times in life – the birth of a child!
  • Our parental leave program allows both mothers and partners to take time off from work for pregnancy, childbirth, and to bond with your new child
  • LI-onsite
  • Commitment to Equal Opportunity
  • At Flexport, our ability to fulfill our mission of making global commerce easy and accessible relies on having a diverse, dedicated and engaged workforce
  • All qualified applicants will receive consideration for employment regardless of race, color, religion, sex, national origin, age, physical and mental disability, health status, marital and family status, sexual orientation, gender identity and expression, military and veteran status, and any other characteristic protected by applicable law
  • Global Data Privacy Notice for Job Candidates and Applicants
  • Depending on your location, the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA) may regulate the way we manage the data of job applicants
  • By submitting your application, you are agreeing to our use and processing of your data as required
  • Please see our Privacy Notice available at www.flexport.com/privacy for additional information

Паспорт вакансии

История публикации

Появилась в Вакандии30 дней
Перепубликациинетпубликовалась один раз
Проверяли на источникеВидели 30 дней назад
Среди похожихНет данных26 из 30 · похожих вакансий слишком мало для сравнения

Откуда что взялось

Отмечено то, что вывели мы. Без пометки — значение назвал работодатель.

ГрейдMiddleвыведено из другого признака
Формат работыУдалённовычитано из текста вакансии
ГеографияАмстердам, Нидерландывычитано из текста вакансии
Зарплата≈ 15 042 USD в месяцнаша оценка, в вакансии не названа

Почему на этом месте в выдаче

Порядок выдачи объявлен контрактом: свежесть решает между днями, полнота и зарплата — внутри дня.

Полнота карточки1004 из 4 полей: грейд, формат, география, зарплата
Зарплата названа0вилки работодателя нет, показана наша оценка

Проверка Вакандии

Источники и свежесть

Тип источника
Карьерный сайт работодателя
Найдено публикаций
1
Посмотреть публикации и даты
  • greenhouseОсновная публикация · 2026-06-26

Работодатель

Flexport

36 активных вакансий · вилка работодателя указана в 8%

Открыть профиль компании

Безопасность

Отклик уходит на сайт источника

Вакандия показывает вакансию, но не отправляет отклик и не проверяет работодателя. Сам отклик вы оставляете на внешнем сайтеjob-boards.greenhouse.io.

Признаки мошенничества
  • Просят предоплату, «залог» или деньги за обучение и оборудование.
  • Требуют код из SMS, данные банковской карты или доступ к «Госуслугам».
  • Быстро уводят в мессенджер и торопят с решением.
  • Обещают большой доход без опыта и без деталей задач.

Настоящий работодатель не просит денег и платёжных данных до трудоустройства.

Продолжить поиск

Похожие вакансии

Причина сходства указана на каждой карточке

  1. Почему похожа: похожая специализация · тот же грейд

    GRS Recruitment

    Cybersecurity Engineer

    • Middle
    • Удалённо
    • Никосия, Кипр
    Подробнее