← Back to job listings
VE
Security Engineer (Product Application Security)
Veeam · United States
About The Role
Join our team as a Product Security Engineer, where you'll play a crucial role in strengthening and scaling secure software development practices across various product environments. You'll collaborate with multiple teams to identify, prioritize, and remediate vulnerabilities throughout the software development lifecycle. Your expertise in application security, vulnerability management, and DevSecOps will be essential in this role. Enjoy a range of benefits, including unlimited paid time off, medical coverage from day one, and professional training opportunities.
- Collaborer avec les équipes de sécurité des produits, d'ingénierie, de DevOps et de plateforme pour identifier, prioriser et remédier aux vulnérabilités tout au long du cycle de vie du développement logiciel.
- Surveiller, évaluer et gérer les risques de sécurité liés aux dépendances logicielles open-source, aux CVE et aux composants tiers.
- Coordonner les initiatives de gestion des correctifs et soutenir les flux de travail de déploiement automatisé des correctifs avec les équipes d'ingénierie des versions et de DevOps.
- This role is ideal for someone passionate about application security, developer enablement, and building scalable security processes that integrate naturally into engineering workflows
- Familiarity with CVEs, CVSS scoring, SBOM concepts, and software supply chain security
- 3+ years of hands-on experience with application security testing tools (SAST, DAST, SCA)
- 2+ years in vulnerability management, including triage, SLA tracking, and remediation coordination
- Experience with CI/CD platforms, modern DevOps workflows, and cloud-native technologies
- Bachelor's degree in Computer Science, Engineering, or equivalent experience
- 5+ years of experience in Product Security, Application Security, DevSecOps, or Vulnerability Management
- Familiarity with IaC, regulated environments, and compliance-driven security activities
- Relevant certifications such as CSSLP, GWEB, CCSP, OSCP, or GPEN
- Experience participating in or managing Security Champion programs
- Knowledge of OWASP Top 10 and secure coding practices for cloud-native and enterprise products
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring