1,338,580open jobs
78,412companies
206,623added this week
Browse all
Salary
≈ $70k – $165k per year (Estimated)
Location
In office (Berlin)
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 8, 2026. First seen by Alion on Sep 4, 2026.

Overview
Company
Impact
Profile match
Talon.One powers advanced loyalty and promotion strategies for the world’s best brands. Learn more about Talon.One, our platform, and the team behind it.

Join Talon.One, a leading platform for promotions and loyalty in Europe. As a Product Security Engineer, you will be responsible for the security of everything we ship to our customers and third-party partners. You will work hands-on with engineers and product managers, threat-modeling new product features, owning tenant isolation and API security, and building automated testing. You will also run a security champions program and experiment with AI to identify and remediate product security risks at scale.

Missions

  • Threat-model new product features before they're built, including AI-embedded ones, and turn what you find into real engineering work.
  • Own tenant isolation and API security across our Rule Engine, Integration API, Management API, CAMA, UCP Predict features, Talon.One MCP and third-party integrations.
  • Build automated cross-tenant and adversarial testing that runs in CI, so isolation gets checked on every build, not only during our external yearly Pentest iterations.

Profil recherché

- Design API security end-to-end: authentication, credential lifecycle, rate limiting, abuse resistance and webhook security

- Experience with a multi-tenant SaaS platform's authorization and tenant isolation model, and strong knowledge of how to test for broken object-level authorization automatically

- Strong knowledge of OWASP security guidance, including the OWASP Top 10, API Security Top 10, and Top 10 for Large Language Model Applications

- Hands-on experience with Google Cloud security, Kubernetes, and tools like Wiz and Datadog

- Practical experience implementing and tuning SAST and DAST tools in CI/CD workflows, with a focus on useful developer feedback and effective vulnerability remediation

- Understanding how AI features actually get built, retrieval, context assembly, tool calling, agent loops, and know where indirect prompt injection breaks multi-tenant isolation

- Know how to build security monitoring and detections in-house tools (SIEM) yourself, from designing the signal through tuning it and writing the runbook

- Experience with shipping production code, whether you come from software engineering or from security work that includes coding

- Ability to influence engineers who don't report to you, and feel comfortable being early in a function with no existing playbook

- Hands-on experience with threat-modelling methodologies such as STRIDE, translating identified threats into actionable engineering requirements and security tests

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,338,580 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Berlin
≈ $85k – $156k per year (Estimated) • In office • Full-Time • 8+ years exp • Berlin
DevOps
Linux
Apply
≈ $74k – $173k per year (Estimated) • In office • Full-Time • 4+ years exp • Saint-Cloud
DevOps
Kubernetes
Cybersecurity
Crowdstrike
ISO 27001
SOC 2
Apply
≈ $59k – $115k per year (Estimated) • In office • Full-Time • 5+ years exp • Vélizy-Villacoublay
Python
Java
Rust
DevOps
Rest API
Helm
Docker
Kubernetes
GitHub
Linux
Cybersecurity
ISO 27001
SOC 2
FedRAMP
PKI
Apply
≈ $73k – $169k per year (Estimated) • Remote (Malta) • Full-Time • 5+ years exp
Python
TypeScript
AI/ML
AI Agents
DevOps
CI/CD
AWS
Cloudflare
IAM
Cybersecurity
NIST CSF
CIS Benchmarks
PCI DSS
Least Privilege
SIEM
Apply
≈ $73k – $145k per year (Estimated) • Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Boca Raton • Seattle
DevOps
Azure
CI/CD
AWS
Platform Engineering
GitHub
Cybersecurity
Qualys Cloud Platform
NIST CSF
CIS Benchmarks
OWASP Top 10
Syft
Dependabot
Clair
OWASP
Apply
≈ $43k – $96k per year (Estimated) • In office • Full-Time • Master's Degree • Hamburg • Frankfurt am Main • Berlin • Munich
Apply
≈ $48k – $97k per year (Estimated) • Hybrid • Full-Time • Bachelor's Degree • Berlin
Management
Microsoft Office
Apply
$46k – $56k per year • Equity • In office • Full-Time • Bachelor's Degree • Berlin
Apply
Payroll Intern 10 hours ago
≈ $22k – $48k per year (Estimated) • In office • Internship • Berlin
Management
Jira
Microsoft Office
Apply
≈ $107k – $200k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Berlin • London • Lisbon
Apply
See all jobs
This is one of many
1,338,580 more open roles from verified company boards, updated every day.