980,327open jobs
58,731companies
157,765added this week
Browse all
Salary
$55k – $82k per year (gross)
Location
Remote (Estonia)also open in Armenia, Bulgaria, Croatia, Cyprus, Czech Republic, Georgia +9
Seniority
Senior · 5+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Sep 30, 2026. First seen by Alion on Sep 28, 2026. TripleTen scores A on the Alion truth index.

Overview
Company
Impact
Profile match
TripleTen is an online technology bootcamp founded in 2019 that trains career changers for entry-level roles in software engineering, data analysis, quality assurance, cybersecurity and business intelligence. Its programmes are part-time and remote, built around project work and human code review rather than recorded lectures, and it advertises an employment guarantee that refunds tuition if a graduate does not find work within a defined period. Headquartered in Boston, it operates in the United States and Latin America and grew out of the education business originally built inside Yandex.

Description

Nebius Academy (powered by TripleTen) provides assessments and training for tech companies and aspiring professionals worldwide, helping companies & individuals transform their lives through career development and acquiring the new skills needed as a tech professional.

Our focus on data science, machine learning, and generative AI helps tech-forward companies level up their employees' skills and drive innovation.

We are looking for an Application Security Engineer to own product security end to end - from threat modelling and secure design reviews to vulnerability management and security controls embedded into CI/CD.

You will work closely with product and platform teams to make security part of the engineering process, building secure defaults and helping prevent vulnerabilities from reaching production without slowing development down.

What you will do

  • Own application and product security end to end, from design reviews and threat modelling to vulnerability remediation and follow-up.
  • Partner with product and platform teams to embed security into the development lifecycle rather than treat it as a final review step.
  • Build and improve security controls in CI/CD, including SAST, dependency, secrets, container, and IaC scanning.
  • Review application designs and code where security risk is meaningful, and turn recurring findings into secure defaults, shared libraries, lint rules, and CI gates.
  • Drive vulnerability management across application code and cloud posture, including triage, risk-based prioritisation, remediation timelines, and external pentest findings.
  • Strengthen security in multitenant B2B systems, including tenant isolation, authentication, authorization, RBAC / ABAC, and access controls.
  • Work on cloud and Kubernetes security across AWS environments, including IAM, secrets management, network boundaries, and workload hardening.
  • Help translate GDPR, SOC 2, and ISO 27001 requirements into practical engineering controls and system properties.
  • Develop and support a security champions programme to help engineering teams adopt secure practices in their day-to-day work.
  • Address security risks specific to AI and LLM-powered features, including prompt injection, data leakage, and untrusted model output.

Requirements

  • 5+ years of engineering experience, including at least 2 years focused on Application Security or Product Security.
  • Strong software engineering background with the ability to read, review, and write production code; Python experience is highly preferred.
  • Deep practical knowledge of web application security, including OWASP Top 10, ASVS, authentication and session management, OAuth2 / OIDC / SAML, and authorization issues such as IDOR and broken access control.
  • Experience securing multitenant or B2B SaaS products, including tenant isolation, RBAC / ABAC, and access control models.
  • Hands-on experience embedding security into CI/CD, including SAST, SCA, secrets scanning, container scanning, and IaC scanning.
  • Strong experience with threat modelling, secure design reviews, and secure code reviews in collaboration with product and engineering teams.
  • Experience managing vulnerabilities based on risk, criticality, and exploitability, including remediation prioritisation and escalation when needed.
  • Working knowledge of AWS and Kubernetes security, including IAM, secrets management, network boundaries, and workload hardening.
  • Strong communication skills and the ability to explain security risks clearly to engineers, product managers, and auditors.
  • Fluent Russian and English at B2 level or above.

Nice to have:

  • Experience building a DevSecOps practice from scratch.
  • Experience running or participating in a Security Champions programme.
  • Hands-on penetration testing experience.
  • Experience securing LLM-powered or AI products.
  • Experience with SOC 2 or ISO 27001 from an engineering perspective.
  • Knowledge of software supply chain security, including SBOMs, SLSA, image signing, or similar practices.

What we can offer you

  • A supportive and proactive work environment.
  • Competitive compensation: 4000-6000 EUR Gross per month
  • Fully remote and full-time collaboration.
  • Modern digital tools for seamless collaboration.
  • Tangible results measured by student success.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
980,327 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Tallinn
≈ $67k – $152k per year (Estimated) • Remote (United Arab Emirates) • Full-Time • 7+ years exp
Cybersecurity
ISO 27001
Apply
≈ $87k – $204k per year (Estimated) • Remote (Germany, Italy, Spain, Portugal) • Full-Time • 6+ years exp
DevOps
GCP
Azure
AWS
Linux
Windows
Cybersecurity
Crowdstrike
SentinelOne
Microsoft Defender
Apply
≈ $85k – $201k per year (Estimated) • Remote (Belgium, Italy, Spain, Portugal) • Full-Time • 6+ years exp
DevOps
GCP
Azure
AWS
Linux
Windows
Cybersecurity
Crowdstrike
SentinelOne
Microsoft Defender
Apply
$144k – $236k per year • Remote (United States, Canada) • Full-Time • 5+ years exp • Bachelor's Degree
Python
AI/ML
Model Context Protocol
DevOps
Kubernetes
Cybersecurity
OWASP Top 10
Threat Modeling
Apply
≈ $42k – $85k per year (Estimated) • Remote (Singapore, UTC-8 – UTC+10 hours) • Full-Time • 3+ years exp • Singapore
DevOps
DNS
Cybersecurity
Shodan
Censys
VirusTotal
MITRE ATT&CK
Management
Stripe
Apply
$52k per year (gross) • In office • Full-Time • 5+ years exp • Vienna
Java
SQL
Java
Spring Boot
Databases
PostgreSQL
AI/ML
LLM
DevOps
Rest API
Terraform
GitHub Actions
CI/CD
AWS
Platform Engineering
Cybersecurity
Keycloak
Management
Agile
QA
Selenium
Rest-Assured
Apply
Hybrid • Full-Time • Cyprus
Python
SQL
Databases
PostgreSQL
ClickHouse
AI/ML
MLFlow
LightGBM
PyTorch
Machine Learning
DevOps
CI/CD
Docker
Analytics
A/B Testing
Apply
$82k – $135k per year • Remote (United States) • Full-Time • 3+ years exp • Bachelor's Degree • Omaha
Python
SQL
SAS
AI/ML
Time Series Forecasting
Machine Learning
Apply
$120k – $140k per year • In office • 8+ years exp • Greenwood Village
AI/ML
AI Agents
LLM
Marketing
Google Ads
Apply
≈ $53k – $148k per year (Estimated) • In office • Internship • 2+ years exp • Miami
Python
SQL
Analytics
Power BI
Microsoft Excel
Apply
$55k – $82k per year (gross) • Remote (Poland) • Full-Time • 5+ years exp • Warsaw
Python
AI/ML
LLM
Machine Learning
DevOps
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
OWASP ASVS
SLSA
Apply
$55k – $82k per year (gross) • Remote (Armenia) • Full-Time • 5+ years exp • Yerevan
Python
AI/ML
LLM
Machine Learning
DevOps
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
OWASP ASVS
SLSA
Apply
$55k – $82k per year (gross) • Remote (Cyprus) • Full-Time • 5+ years exp • Limassol
Python
AI/ML
LLM
Machine Learning
DevOps
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
OWASP ASVS
SLSA
Apply
$55k – $82k per year (gross) • Remote (Hungary) • Full-Time • 5+ years exp
Python
AI/ML
LLM
Machine Learning
DevOps
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
OWASP ASVS
SLSA
Apply
$55k – $82k per year (gross) • Remote (Georgia) • Full-Time • 5+ years exp
Python
AI/ML
LLM
Machine Learning
DevOps
CI/CD
AWS
Kubernetes
IAM
Cybersecurity
ISO 27001
OWASP Top 10
SOC 2
GDPR
OWASP ASVS
SLSA
Apply
In office • Tallinn
Apply
$46k – $54k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Tallinn
Apply
≈ $28k – $67k per year (Estimated) • Remote (Estonia) • Full-Time • 3+ years exp • Tallinn
Apply
≈ $42k – $89k per year (Estimated) • Hybrid • Full-Time • Bachelor's Degree • Tallinn
Apply
≈ $31k – $70k per year (Estimated) • Remote (Estonia, European time zones hours) • Part-Time • 5+ years exp • Tallinn
AI/ML
Claude
Midjourney
Management
n8n
Google Calendar
Google Sheets
Apply
See all jobs
This is one of many
980,327 more open roles from verified company boards, updated every day.