4 months ago
Stockholm, SwedenSenior
Responsibilities
- Conduct secure code reviews, threat modeling, and architecture assessments to identify and mitigate vulnerabilities.
- Collaborate with engineering teams to design and implement security features and embed security into product development.
- Lead security training, workshops, and one-to-one mentoring for developers.
- Integrate SAST/DAST and supply chain security tools into CI/CD pipelines.
- Detect, triage, and respond to application vulnerabilities and incidents while driving remediation and continuous improvement.
- Monitor and address emerging risks in AI infrastructure, LLM pipelines, and third-party dependencies.
Requirements
- 5+ years of experience in application security within product-focused technology companies, high-growth startups, or leading AI labs.
- Strong programming and engineering skills.
- Deep expertise in secure code review, threat modeling, SAST/DAST, supply chain security, product patching, and vulnerability management.
- Experience securing CI/CD pipelines, secrets management, service-to-service authentication, containerized workloads, and public cloud platforms.
- Hands-on experience collaborating with developers to implement security features and best practices.
- Experience educating and mentoring engineers on secure coding, vulnerability remediation, and emerging threats.
- Ability to read and contribute to codebases, build security tooling, and integrate security into engineering workflows.
- Experience building internal security tools or contributing to open-source security projects is a bonus.