407,354open jobs
14,154companies
73,129added this week
Browse all
Salary
$78k – $173k per year (Estimated)
Location
Remote (Germany)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
vivenu is a flexible and advanced ticketing platform designed for ambitious event organizers around the world. It offers a fully customizable, white-label solution that centers around the brand, sales, and business needs of its users. vivenu provides powerful tools such as APIs and SDKs, enabling a seamless integration with third-party software and allowing enterprises to build their own applications.

With over 10 million end users and usage quadrupling annually, our infrastructure now handles over 1 billion requests per month - and counting. Our API-first platform solves complex system challenges at scale - delivering performance, flexibility, and reliability for the world’s leading live entertainment brands.

This isn't just a maintenance role - it is a blank canvas to build, scale, and architect a state-of-the-art AppSec program from the ground up. We are currently operating at a fraction of our ultimate potential, which means you have an immense, blank-canvas opportunity to fundamentally shape our security culture, processes, and tooling across the entire global engineering organization.

You will drive the entire AppSec lifecycle: from offensive red teaming and threat modeling to risk-based vulnerability management and pioneering a true shift-left culture.

What Makes This Role Challenging and Engaging:

  • High-Impact Technical Environment: You won't just follow blueprints; you will holistically influence a shift-left architecture across both application and platform layers.

  • Modern Technology Stack: Dive into securing a massive TypeScript monolith alongside Go supporting services, giving you hands-on experience in modern language security and advanced GitHub CI/CD pipeline hardening.

  • Web and API: secure the application of the vivenu platform which provides customers with an out-of-the-box ticketing software as well as the underlying API structure

  • Complex Multi-Cloud Architecture: Challenge your skills against a sophisticated multi-tenant, multi-region environment spanning k8s, GCP (our primary compute) and and separate database services

  • Cutting-Edge Deployment: Secure a next-gen Kubernetes "satellite architecture" utilizing hardened private compute nodes, VPC peering, and Argo CD for GitOps-a true, modern cloud-native security mandate.

As a Senior Security Engineer - AppSec (d/f/m) your responsibilities will include:

  • Be a Trusted Advisor: Partner closely with engineering teams to champion security-by-design and elevate our overall security posture.
  • Offensive & Defensive Testing: Coordinate and execute threat modeling and advanced security tests across our product and underlying infrastructure.
  • Lead Next-Gen Vulnerability Management: Drive triage and remediation using modern, risk-based principles like EPSS, while leveraging AI technologies to accelerate security testing at scale.
  • Pioneer Security-as-Code: Design, implement, and automate security checks and guardrails (SAST, DAST, and secret scanning) directly into CI/CD pipelines.
  • Review & Refine: Perform deep-dive code and configuration reviews, advocating for secure coding practices that support a proactive shift-left strategy.

What you will need to succeed in this role:

  • Experience: 5+ years of dedicated Security Engineering experience, ideally within a high-growth SaaS, E-commerce, or Fintech environment.
  • SaaS Deep-Dive: The ability to dive deep into the business logic of a complex SaaS application to uncover and verify elusive attack vectors.
  • Web and API Security Mastery: a deep understanding of web/API attack vectors and scalable best practices and how to run workloads securely in a cloud environment (k8s, AWS/GCP/Azure)
  • Ownership: A proven track record of autonomously driving security initiatives from conception to completion.
  • Automation Mindset: Proficiency in at least one programming language for scripting and security tool development (bonus points for automating GRC evidence collection).
  • Education: A Bachelor’s or Master’s degree in Computer Science, Cybersecurity, IT, or a related technical field (or equivalent practical experience).

    Preferred:

  • Experience navigating PCI DSS script security.
  • A background in Red/Purple Team operations and advanced penetration testing, paired with the empathy and collaboration skills needed to help dev teams fix software vulnerabilities.
  • Hands-on experience with Terraform for securing infrastructure-as-code and integrating security testing.
  • Familiarity with our modern tech stack: GCP, Golang, and TypeScript.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
407,354 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
Remote/Hybrid • 7+ years exp
PowerShell
Python
DevOps
Ansible
AWS
Azure
CI/CD
Docker
GCP
Kubernetes
Terraform
VMWare
Apply
Remote/Hybrid • Sydney
Apex
Apex
MuleSoft
AI/ML
Anthropic
AWS Bedrock
LangChain
LiteLLM
LlamaIndex
LLM
OpenAI
Portkey
RAG
Vertex AI
DevOps
Ansible
ArgoCD
AWS
Azure
Docker
GCP
GitHub
GitLab
Jenkins
Kong
Kubernetes
Platform Engineering
Terraform
Vector
Apply
Remote/Hybrid • Singapore
Apex
Apex
MuleSoft
AI/ML
Anthropic
AWS Bedrock
LangChain
LiteLLM
LlamaIndex
LLM
OpenAI
Portkey
RAG
Vertex AI
DevOps
Ansible
ArgoCD
AWS
Azure
Docker
GCP
GitHub
GitLab
Jenkins
Kong
Kubernetes
Platform Engineering
Terraform
Vector
Apply
Remote/Hybrid • 5+ years exp • Bachelor's Degree
JavaScript
DevOps
AWS
Azure
CI/CD
Docker
GCP
Apply
.NET Developer 9 min ago
$53k – $181k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Brisbane • Melbourne
C#
SQL
C#
.NET
Databases
Amazon Aurora
DynamoDB
ElasticSearch
DevOps
Amazon Kinesis
AWS
AWS Lambda
CI/CD
Docker
GitHub
GitHub Actions
Kubernetes
Apply
In office • Full-Time • 7+ years exp • Zurich
Apply
$140k – $180k per year • In office • Full-Time • 7+ years exp • New York
Management
Notion
Apply
$240k – $280k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • New York
Apply
Financial Accountant 11 days ago
In office • Full-Time • 2+ years exp • Bachelor's Degree • Düsseldorf
Apply
$77k – $211k per year (Estimated) • Remote • Full-Time
Cybersecurity
GDPR
ISO 27001
NIST CSF
PCI DSS
SOC 2
Management
ServiceNow
Apply
See all jobs
This is one of many
407,354 more open roles from verified company boards, updated every day.