Veeam Software

Security Engineer III, Product AppSec

Middle · Удалённо · США · Английский B2

Навыки

  • Azure
  • Bash / shell
  • CI/CD
  • DevSecOps
  • Docker
  • GitHub
  • Maven
Ещё 9
  • OWASP
  • PowerShell
  • Python
  • SAST / DAST
  • Жизненный цикл разработки
  • SLA
  • Terraform
  • Управление уязвимостями
  • YAML

О компании и продукте

  • We're looking for a Product Security Engineer to strengthen and scale secure software development practices across cloud-native, enterprise, and AI-enabled product environments. You'll work closely with Product Security, Engineering, DevOps, and Platform teams to identify , prioritize, and remediate vulnerabilities throughout the software development lifecycle. This role is ideal for someone passionate about application security, developer enablement, and building scalable security processes that integrate naturally into engineering workflows.
  • Due to the fact that this position will deal with highly sensitive data and will support federal customers, we are only considering US citizens at this time. Security clearance is not required , but there is a slight chance it maybe requested in the future
  • Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk

Задачи

  • Monitor, assess, and manage security risks related to open-source software dependencies, CVEs, and third-party components
  • Triage and validate vulnerabilities across applications, containers, infrastructure, and dependencies — prioritizing by exploitability, exposure, and business impact
  • Coordinate patch management initiatives and support automated patch deployment workflows with Release Engineering and DevOps teams
  • Support and expand the Security Champion program, partnering with developers to improve secure coding awareness and adoption
  • Integrate security controls into CI/CD pipelines and automate vulnerability scanning, dependency analysis, and security reporting
  • Develop playbooks, documentation, and educational materials that promote self-service security within engineering teams
  • Contribute to threat modeling, secure architecture discussions, and continuous improvement of secure SDLC processes
  • Technologies You’ll Work With
  • SCA and vulnerability scanning platforms: Snyk, Mend, Dependabot, GitHub Advanced Security, Veracode, Checkmarx
  • Cloud and container security: Wiz, Prisma Cloud, Docker, Azure
  • CI/CD platforms and DevOps toolchains
  • SBOM generation tools, artifact repositories, and package signing technologies
  • Scripting and automation: Python, Bash, PowerShell, YAML

Требования

  • 5+ years of experience in Product Security, Application Security, DevSecOps, or Vulnerability Management
  • 3+ years of hands-on experience with application security testing tools (SAST, DAST, SCA)
  • 2+ years in vulnerability management, including triage, SLA tracking, and remediation coordination
  • Familiarity with CVEs, CVSS scoring, SBOM concepts, and software supply chain security
  • Experience with CI/CD platforms, modern DevOps workflows, and cloud-native technologies
  • Bachelor's degree in Computer Science , Engineering, or equivalent experience
  • Bonus Skills
  • Experience participating in or managing Security Champion programs
  • Knowledge of OWASP Top 10 and secure coding practices for cloud-native and enterprise products
  • Familiarity with IaC, regulated environments, and compliance-driven security activities
  • Relevant certifications such as CSSLP, GWEB, CCSP, OSCP, or GPEN
  • What you'll get
  • Paid parental leave: 8 weeks for all parents, 16 weeks for birthing parents
  • Mental health support, therapy sessions, and digital wellness tools via our Employee Assistance Program
  • Fertility, adoption, and surrogacy support through Maven, plus paid volunteer time
  • AirVet: 24/7 virtual veterinary care at no cost
  • Legal services, identity protection, and supplemental health insurance options
  • Tax-advantaged spending accounts for healthcare, dependent care, and commuting
  • Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops, and learning events like our annual Global Day of Learning
  • Compensation Transparency
  • Veeam is committed to pay transparency and equitable compensation

Условия

  • Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running
  • Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands
  • LI-JC2 #LI-REMOTE
  • Unlimited paid time off, 12 paid holidays including 4 global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
  • Medical, dental, and vision coverage starting on your first day
  • 401(k) retirement plan with company matching contributions
  • For this role, the compensation range below reflects the expected total target compensation (TTC), inclusive of base pay and a competitive performance-based bonus

Паспорт вакансии

История публикации

Появилась в Вакандии27 дней
Перепубликациинетпубликовалась один раз
Проверяли на источникеВидели 26 дней назад
Среди похожихНет данных26 из 30 · похожих вакансий слишком мало для сравнения

Откуда что взялось

Отмечено то, что вывели мы. Без пометки — значение назвал работодатель.

ГрейдMiddleвыведено из другого признака
Формат работыУдалённо
ГеографияСШАвычитано из текста вакансии
Зарплата208 500 — 347 500 USD в годвычитано из текста вакансии

Почему на этом месте в выдаче

Порядок выдачи объявлен контрактом: свежесть решает между днями, полнота и зарплата — внутри дня.

Полнота карточки1004 из 4 полей: грейд, формат, география, зарплата
Зарплата названа100вилку назвал источник

Проверка Вакандии

Источники и свежесть

Тип источника
Карьерный сайт работодателя
Найдено публикаций
1
Посмотреть публикации и даты
  • greenhouseОсновная публикация · 2026-06-24

Работодатель

Veeam Software

50 активных вакансий · вилка работодателя указана в 16%

Открыть профиль компании

Безопасность

Отклик уходит на сайт источника

Вакандия показывает вакансию, но не отправляет отклик и не проверяет работодателя. Сам отклик вы оставляете на внешнем сайтеjob-boards.eu.greenhouse.io.

Признаки мошенничества
  • Просят предоплату, «залог» или деньги за обучение и оборудование.
  • Требуют код из SMS, данные банковской карты или доступ к «Госуслугам».
  • Быстро уводят в мессенджер и торопят с решением.
  • Обещают большой доход без опыта и без деталей задач.

Настоящий работодатель не просит денег и платёжных данных до трудоустройства.

Продолжить поиск

Похожие вакансии

Причина сходства указана на каждой карточке

  1. Почему похожа: похожая специализация · тот же грейд

    GRS Recruitment

    Cybersecurity Engineer

    • Middle
    • Удалённо
    • Никосия, Кипр
    Подробнее