We are looking for a Senior Security Engineer to join a team building security solutions that help organizations monitor, assess and improve the security posture of open-source software. The work focuses on a platform for unified visibility into open-source vulnerabilities and a solution that provides security ratings for open-source libraries, enabling better risk-based decisions across development teams.
Responsibilities
- Contribute to the development and enhancement of solutions for open-source vulnerability monitoring and security rating
- Support and improve CI/CD pipelines and GitHub Actions–based workflows
- Apply DevSecOps and secure engineering practices throughout the software lifecycle
- Collaborate closely with cross-functional teams to deliver scalable, reliable and secure solutions
- Share knowledge and support overall product quality as a team player
Requirements
- 3+ years of experience in security engineering with expertise in DevSecOps orchestration, Secure Software Development Life Cycle and security-as-code
- Knowledge of open-source security including Software Composition Analysis and OSS license compliance
- Understanding of CVSS scoring, exploitability analysis and vulnerability remediation strategies
- Hands-on experience securing GitHub Actions workflows and integrating security gates into CI/CD pipelines
- Familiarity with security guidelines and standards
- Strong communication skills, ownership mindset and ability to work effectively in a team environment
- English proficiency at B2 level or higher