Veeam Software

Senior Security Engineer, Product AppSec

Senior · Удалённо · США · Английский B2

Навыки

  • API (интеграции)
  • AWS
  • Azure
  • Bash / shell
  • CI/CD
  • DevSecOps
  • Docker
Ещё 16
  • Google Cloud
  • GitHub Actions
  • GitLab CI
  • Jenkins
  • Jira
  • Kubernetes
  • Maven
  • Machine Learning
  • PowerShell
  • Python
  • SAST / DAST
  • Жизненный цикл разработки
  • SIEM
  • SLA
  • Terraform
  • Управление уязвимостями

О компании и продукте

  • We're looking for a Senior Product Security Engineer to advance the integration and operational maturity of enterprise application security tooling and vulnerability management across a modern software delivery environment. You'll serve as a senior technical contributor responsible for embedding security into the SDLC, improving developer security enablement, and driving scalable vulnerability management programs across cloud-native, enterprise, and AI-enabled products. This role works closely with Engineering, DevOps, Platform Engineering, Security Operations, and Compliance teams to improve visibility, automation, governance, and remediation workflows at scale.
  • Due to the fact that this position will deal with highly sensitive data and will support federal customers, we are only considering US citizens at this time. Security clearance is not required , but there is a slight chance it maybe requested in the future
  • Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running. Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands.

Задачи

  • Evaluate, deploy, integrate, and optimize security tooling — including SAST, DAST, SCA, IAST, container scanning, SBOM generation, secrets detection, and API security testing — across CI/CD pipelines and developer workflows
  • Build automated workflows for vulnerability ingestion, prioritization, remediation tracking, and reporting, integrating with platforms such as GitHub Actions, Azure DevOps, Jenkins, Jira, and SIEM tools
  • Drive enterprise vulnerability management initiatives, including prioritization frameworks, SLA tracking, remediation velocity improvements, and security posture dashboards
  • Embed security-by-design principles into the SDLC, developing security guardrails and policy-as-code capabilities for cloud and application environments
  • Partner with DevOps and CI/CD teams to improve automated security validation, release governance, and software supply chain security
  • Serve as a senior technical advisor on application security, influencing engineering and product roadmaps to improve platform security and operational resilience
  • Mentor engineers and security practitioners on secure development and DevSecOps best practices
  • Technologies You’ll Work With
  • CI/CD platforms: GitHub Actions, Azure DevOps, Jenkins, GitLab CI
  • Security tooling: SAST, DAST, SCA, IAST, CSPM tools, container scanning platforms
  • Cloud providers: Azure (primary), AWS, or GCP
  • IaC and containerization: Terraform, Kubernetes, Docker
  • Supply chain security: SLSA, Sigstore, SBOM tooling
  • Scripting and automation: Python, Bash, PowerShell

Требования

  • 8+ years of experience in Application Security, Product Security, DevSecOps, or Security Engineering
  • 3+ years of hands-on experience with SAST, DAST, SCA, and IAST tooling integrated into CI/CD pipelines
  • 3+ years in vulnerability management, including triage, risk scoring, and remediation coordination across engineering teams
  • Strong experience with Secure SDLC, threat modeling, and software supply chain security
  • Experience building API integrations and workflow automation across security platforms
  • Bachelor's degree in Computer Science, Engineering, or equivalent experience
  • Bonus Skills
  • Experience in regulated or compliance-driven environments, including policy-as-code and OPA/Gatekeeper
  • Familiarity with AI/ML security risks and emerging AI application security practices
  • Demonstrated experience leading cross-functional security initiatives and influencing without direct authority
  • Relevant certifications such as CISSP, CISM, CSSLP, or cloud security certifications
  • What you'll get
  • Paid parental leave: 8 weeks for all parents, 16 weeks for birthing parents
  • Mental health support, therapy sessions, and digital wellness tools via our Employee Assistance Program
  • Fertility, adoption, and surrogacy support through Maven, plus paid volunteer time
  • AirVet: 24/7 virtual veterinary care at no cost
  • Legal services, identity protection, and supplemental health insurance options
  • Tax-advantaged spending accounts for healthcare, dependent care, and commuting
  • Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops, and learning events like our annual Global Day of Learning
  • Compensation Transparency
  • Veeam is committed to pay transparency and equitable compensation

Условия

  • Unlimited paid time off, 12 paid holidays including 4 global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
  • Medical, dental, and vision coverage starting on your first day
  • 401(k) retirement plan with company matching contributions
  • For this role, the compensation range below reflects the expected total target compensation (TTC), inclusive of base pay and a competitive performance-based bonus

Паспорт вакансии

История публикации

Появилась в Вакандии27 дней
Перепубликациинетпубликовалась один раз
Проверяли на источникеВидели 26 дней назад
Среди похожихНет данных46 из 30 · у похожих вакансий почти одинаковый возраст — сравнивать нечего

Откуда что взялось

Отмечено то, что вывели мы. Без пометки — значение назвал работодатель.

ГрейдSeniorвычитано из текста вакансии
Формат работыУдалённо
ГеографияСШАвычитано из текста вакансии
Зарплата≈ 18 000 USD в месяцнаша оценка, в вакансии не названа

Почему на этом месте в выдаче

Порядок выдачи объявлен контрактом: свежесть решает между днями, полнота и зарплата — внутри дня.

Полнота карточки1004 из 4 полей: грейд, формат, география, зарплата
Зарплата названа0вилки работодателя нет, показана наша оценка

Проверка Вакандии

Источники и свежесть

Тип источника
Карьерный сайт работодателя
Найдено публикаций
1
Посмотреть публикации и даты
  • greenhouseОсновная публикация · 2026-06-24

Работодатель

Veeam Software

50 активных вакансий · вилка работодателя указана в 16%

Открыть профиль компании

Безопасность

Отклик уходит на сайт источника

Вакандия показывает вакансию, но не отправляет отклик и не проверяет работодателя. Сам отклик вы оставляете на внешнем сайтеjob-boards.eu.greenhouse.io.

Признаки мошенничества
  • Просят предоплату, «залог» или деньги за обучение и оборудование.
  • Требуют код из SMS, данные банковской карты или доступ к «Госуслугам».
  • Быстро уводят в мессенджер и торопят с решением.
  • Обещают большой доход без опыта и без деталей задач.

Настоящий работодатель не просит денег и платёжных данных до трудоустройства.

Продолжить поиск

Похожие вакансии

Причина сходства указана на каждой карточке

  1. Почему похожа: похожая специализация · тот же грейд

    Spendesk

    Senior Security Engineer

    • Senior
    • Удалённо
    • Париж, Франция
    Подробнее
  2. Почему похожа: похожая специализация · тот же грейд

    N26

    Senior Product Security Engineer

    • Senior
    • Удалённо
    • Барселона, Испания
    Подробнее
  3. Почему похожа: похожая специализация · тот же грейд

    Rivian · агентство

    Sr. Cybersecurity Engineer

    • Senior
    • Гибрид
    • Атланта, США
    Подробнее