
Security Engineer – AppSec, GRC, AI Security
Posted 1 day ago

Posted 1 day ago
This is a fully remote position, open to applicants in Europe.
• Assume complete responsibility for security operations as the sole dedicated Security Engineer for the company.
• Analyze application code to identify and resolve vulnerabilities.
• Collaborate with developers utilizing Git/GitHub.
• Coordinate external penetration testing and security audits.
• Create and maintain the security risk register.
• Evaluate exposure across systems and assist with audit follow-ups.
• Prioritize remediation efforts based on risk and business impact.
• Monitor security alerts and potential threats.
• Implement security awareness initiatives and phishing simulations.
• Provide security monitoring coverage during occasional evenings and weekends.
• Oversee secure onboarding and offboarding processes.
• Manage device security through Mobile Device Management (MDM) and access permissions.
• Enhance internal security controls.
• Track security risks associated with generative AI, including prompt injection, jailbreaks, and filter bypasses.
• Monitor vulnerabilities present in third-party AI providers.
• Work collaboratively with engineering leadership and developers.
• 2–3+ years of practical experience in security engineering, with consideration for outstanding scale-up experience.
• Strong expertise in application security, including code reviews and vulnerability resolution.
• Demonstrated experience in conducting or coordinating security audits and penetration tests.
• Proficient in coding and working directly with Git/GitHub.
• Practical scripting or automation skills, preferably in Python or Bash.
• Previous experience in an AI company or a scale-up with over 50 employees.
• Solid understanding of security governance, risk assessment, and prioritization.
• Capacity to independently identify, investigate, and resolve security issues, taking full ownership in a dynamic environment.
• Excellent English communication abilities.
• Located in Europe, with approximately 80% overlap with CET working hours.
• Willingness to handle occasional evening/weekend security monitoring.
• Fully comfortable working with adult/NSFW content as part of daily responsibilities.
• Preference for B2B engagement.
• Fully remote work opportunity from Europe.
• Chance to take ownership of security for a rapidly growing AI platform with more than 50 million users.
• Direct collaboration with engineering leadership.
• A hands-on, non-advisory role with genuine responsibility for security outcomes.
Cloudiax
BLUVIT GmbH
Eli Lilly and Company
S + S Regeltechnik GmbH
Get handpicked remote jobs straight to your inbox weekly.