yandex
n26
Страна
Испания
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
ГибридПолная занятость

Product Security Engineer

Оценка ИИ

N26 — топовый финтех-единорог с сильной инженерной культурой. Вакансия предлагает работу с современным стеком (AI, Cloud) и отличный соцпакет, включая бюджет на развитие и релокацию.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Роль требует глубоких знаний в области безопасности приложений, микросервисной архитектуры и новых угроз, связанных с ИИ (LLM). Высокая планка ожиданий по навыкам программирования (Python/Go) и автоматизации процессов безопасности.

Анализ зарплаты

Медиана65 000 €
Рынок55 000 € – 85 000 €
Оценка ИИ

Предлагаемая позиция в Барселоне соответствует уровню Senior/Middle+ специалиста. Рыночные оценки для Product Security в Испании в финтех-секторе обычно выше среднего по рынку из-за высоких требований к безопасности.

Сопроводительное письмо

I am writing to express my strong interest in the Product Security Engineer position at N26. With a solid background in software engineering and a deep focus on application security, I am particularly drawn to N26's commitment to integrating security into the development of cutting-edge technologies like Generative AI and LLMs. My experience in building automation for SSDLC and performing threat modeling for microservices aligns perfectly with your team's mission to empower engineers to build secure products.

In my previous roles, I have successfully collaborated with engineering teams to identify and remediate vulnerabilities early in the SDLC, balancing security requirements with the need for rapid innovation. I am excited about the opportunity to apply my skills in penetration testing and secure coding practices to safeguard N26's diverse product portfolio. I am eager to contribute to a team that values autonomy, diversity, and the proactive research of emerging attack vectors.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в n26 уже сейчас

Присоединяйтесь к N26, чтобы защищать будущее цифрового банкинга и работать с передовыми технологиями ИИ!

Описание вакансии

About the opportunity

We are seeking a Product Security Engineer to empower our engineering teams to design and build secure software across our diverse product portfolio. While this role includes integrating advanced security practices into cutting-edge technologies—such as Generative AI (GenAI), Large Language Models (LLM), and data governance systems - it also focuses on ensuring the security of our microservice architecture and mobile application. Your work will help deliver robust security for every feature and service we provide to our customers.

The Product Security team is part of N26’s Security Engineering Segment, which also includes Infrastructure Security, Trust & Safety and Security Operations. Together, we uphold N26’s security standards by embedding security into every stage of the product lifecycle.

As we embrace emerging technologies like GenAI and LLMs, this role will play a key part in safeguarding sensitive data, aligning with data governance principles, and addressing risks unique to AI-driven products. At the same time, you’ll ensure our broader product ecosystem remains secure, scalable, and resilient. Additionally, you will contribute to the ongoing enhancement of our Product Security Programs, providing proactive guidance to engineering teams to anticipate and counter evolving threats.

In this role, you will:

  • Apply your knowledge of security architecture to help software engineers build secure products and services across a diverse technology stack, including microservices, mobile applications, and cutting-edge AI-driven solutions.
  • Collaborate closely with engineering teams to understand their application security needs, including those related to emerging technologies like Generative AI (GenAI) and Large Language Models (LLM).
  • Perform application security design reviews, threat modeling, and code reviews, ensuring security principles are embedded in every stage of the development lifecycle.
  • Use your penetration testing skills to assess and strengthen the security of internal and external applications and services, including AI-powered features and traditional systems.
  • Develop tooling to support the Secure Software Development Lifecycle (SSDLC) and other security initiatives across diverse product environments.
  • Build automation frameworks to enable engineering teams to deliver secure features efficiently, whether for AI solutions or traditional applications.
  • Educate engineering teams and security champions on secure coding and development practices, including security considerations unique to AI and data governance.
  • Enable engineering teams to identify and remediate vulnerabilities before they reach production, with a focus on both general application security and AI-specific risks.
  • Perform reactive incident response if a security event occurs.
  • Conduct proactive research to detect new attack vectors, including those targeting AI technologies, data pipelines, and LLM-based systems.

What you need to be successful:

Background and Skills:

  • Proficiency in software engineering with one or more general-purpose programming languages (e.g., Python, Go, or similar).
  • Experience with threat modeling, security testing, and analyzing applications, including those involving emerging technologies like Generative AI (GenAI) and Large Language Models (LLM).
  • Prior experience in building automation to support the Secure Software Development Lifecycle (SSDLC).
  • Proven ability to collaborate closely with engineering teams, supporting them throughout the Software Development Lifecycle (SDLC).
  • A passion for information security and an interest in staying ahead of evolving threats, particularly those targeting AI systems.
  • Deep technical knowledge in one or more areas:

+ Cloud and networking security

+ Web application security

+ Mobile security

+ Security challenges unique to AI-driven products and data governance.

  • Strong understanding of microservice architectures and working with scalable software in the cloud.
  • A keen ability to identify flaws in software and effectively communicate practical solutions.
  • Familiarity with static/dynamic code analysis, fuzzing, and other techniques to identify security vulnerabilities.
  • Solid knowledge of secure coding best practices and security standards, including the OWASP Top 10.
  • The ability to balance security risks with the need for product innovation and advancement.

What’s in it for you:

  • Accelerate your career growth by joining one of Europe’s most talked about disruptors.
  • Employee benefits that range from a competitive personal development budget, work from home budget, discounts to fitness & wellness memberships, language apps and public transportation.
  • Come together with your team in the office for a dedicated day of teamwork each week, plus another day of your choice, and enjoy the flexibility of remote work the rest of the time. Some roles may require additional in-office presence.
  • As an N26 employee you will have access to a Premium subscription on your personal N26 bank account. As well as subscriptions for friends and family members.
  • Additional day of annual leave for each year of service.
  • A high degree of autonomy and access to cutting edge technologies - all while working with a friendly team of peers of diverse nationalities, life experiences and backgrounds.
  • A relocation package with visa support for those who need it.

Who we are

N26 has reimagined banking for today’s digital world. Technology and design empowereverything we do and it’s how we are building the global banking platform the world loves to use.

We've eliminated physical branches, paperwork, and hidden fees for an elegant digital experience and supreme savings. Giving people the power to live and bank their way is what gets us out of bed in the morning and inspires the work that we do.

We are headquartered in Berlin with offices in multiple cities across Europe, including Vienna and Barcelona, and a 1,500-strong team of more than 80 nationalities.

Sounds good? Apply now for this position.

Equal Opportunities:

We recognize that our strength lies in our people and the varied perspectives they bring to our workforce. We strive to build talented and diverse teams to drive our business success and empower our people to reach their full potential.

We genuinely welcome and encourage applications from people of all backgrounds, cultures, genders, sexual orientations, abilities, neurodiversities, and ages. We're committed to creating an inclusive workspace where everyone feels valued and respected, free from harassment and discrimination. If there's anything you need to make the application process work for you, please let us know by reaching out to candidate.exp@n26.com.

Visit our website to learn more about Diversity, Equity, & Inclusion at N26.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • Python
  • Go
  • Threat Modeling
  • SSDLC
  • Microservices
  • Cloud Security
  • Mobile Security
  • OWASP Top 10
  • Penetration Testing
  • Generative AI
  • LLM
  • Static Analysis
  • Dynamic Analysis
  • Fuzzing

Возможные вопросы на собеседовании

Проверка понимания специфических рисков, упомянутых в описании вакансии.

Какие основные риски безопасности вы видите при интеграции LLM в банковские продукты и как их минимизировать?

Оценка навыков автоматизации безопасности, критически важных для этой роли.

Расскажите о вашем опыте разработки инструментов для автоматизации SSDLC. Какие метрики эффективности вы использовали?

Проверка умения работать с разработчиками и внедрять культуру безопасности.

Как вы подходите к проведению threat modeling сессий с командами, которые никогда раньше этого не делали?

Оценка практических навыков поиска уязвимостей.

Опишите самую сложную уязвимость в логике приложения, которую вы обнаружили. Как вы помогли команде её исправить?

Проверка способности быстро реагировать на инциденты.

Каков ваш алгоритм действий при обнаружении критической уязвимости в уже работающем микросервисе в продакшене?

Похожие вакансии

roku
Не указана

Security Engineer, Monitoring and Response

ГибридВеликобритания
SIEM · SOAR · Incident Response · Vulnerability Management · AWS GuardDuty · EDR · Threat Intelligence · Network Security · ISO 27001 · NIST · PCI DSS · Cloud Security
+12 навыков
globalrelay
Не указана

Network Security Specialist – L2

В офисеВеликобритания
Arista · Cisco · Aruba · BGP · EVPN · VXLAN · Linux · Firewalls · TCP/IP · Zabbix · Jira · Jenkins · OpenStack · OpenShift · Python · Ansible · ITIL
+17 навыков
globalrelay
Не указана

Network Security Specialist – L1

В офисеВеликобритания
Firewall · ACL · VPN · TCP/IP · BGP · VXLAN · Juniper · Fortinet · Aruba · Zabbix · Jira · ITIL · Network Security
+13 навыков
jetbrains
Не указана

Security Engineer in Product Security

УдалённоНидерланды
Application Security · Penetration Testing · OWASP Top 10 · AWS · GCP · Azure · SSDLC · CI/CD · SAST · DAST · SCA · Fuzzing · Kotlin · Java · Python · Go · Threat Modeling · Vulnerability Analysis
+18 навыков
jetbrains
Не указана

Security Compliance Specialist

УдалённоНидерланды
SOC 2 · ISO 27001 · NIST RMF · NIST CSF · NIST SSDF · GDPR · Risk Management · Compliance Audit · Vendor Management · Information Security
+10 навыков
globalrelay
Не указана

Cyber Security Specialist - L3

В офисеВеликобритания
WAF · SIEM · HSM · EDR · Vulnerability Management · Python · PowerShell · TCP/IP · DNS · SMTP · Cryptography · CISSP · ISO 27001 · SOC 2 · GDPR · NIST · Linux · Windows Server
+18 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

n26
Страна
Испания