Security Engineer in Product Security job opportunity at JetBrains.



bot
JetBrains Security Engineer in Product Security
Experience: General
Pattern: Remote
apply Apply Now
Salary:
Status:

Product Security

Copy Link Report
degreeOND
loacation Amsterdam, ; Belgrade, Serbia; Berlin, Germany; Limassol, Cyprus; Munich, Germany; Paphos, Cyprus; Prague, Czech Republic; Remote, Germany; Warsaw, Poland; Yerevan, Armenia, Netherlands
loacation Amsterdam, ; B..........Netherlands

JetBrains is a well-known international software development company. Ever since we started, back in 2000, we’ve strived to make the strongest, most effective developer tools on earth. Our products are used by more than 15 million users worldwide, and 88 Fortune Global 100 companies are our customers. We are seeking an experienced and talented Security Engineer to join the Product Security team and help safeguard JetBrains products and services. In this role, you will work closely with product teams to establish, maintain, and continuously improve security processes as part of our SSDLC. You will conduct in-depth security reviews and tests across various development stages, design and implement security controls, set up security automation and pipelines, and contribute to building a strong, developer-friendly security culture. This position offers the opportunity to work on both web and desktop products, tackle complex security challenges, explore innovative solutions — including AI and LLM-driven approaches — and have a direct impact on the security posture of tools used by millions of developers worldwide. As part of our team, you will:  Conduct security tests and reviews of all JetBrains web and desktop products, including features, designs, architecture, and code. Perform threat modeling and risk assessments for new features, components, and integrations. Establish and improve SSDLC and Application Security processes across product teams. Research and address new attack vectors and threats, and help design effective defenses. Help to develop, integrate, and maintain security pipelines and tools that embed security controls into the development workflow or automate manual, time-consuming tasks. Research and implement AI/LLM-based approaches for security automation. Investigate and triage vulnerability reports submitted by external researchers. Collaborate with product teams, providing security guidance, vision, and practical solutions. Contribute to security awareness by creating and maintaining security guidelines and best practices, delivering talks, and designing CTF challenges. We’d love for you to join our team if you have:  Proven experience in Application Security and/or Penetration Testing. Solid knowledge of Web Application Security principles, common attacks, and OWASP TOP 10. A degree in computer science, information technology, or equivalent experience. A strong command of English with excellent written communication skills. Strong experience in vulnerability analysis and proof-of-concept development. An understanding of cloud security fundamentals (AWS, GCP, and Azure). An understanding of the modern software development lifecycle (code reviews, CI, CI-based controls, CD, and packaging) Experience in secure coding and conducting effective security-focused code reviews. An analytical and problem-solving mindset, with the ability to work both independently and in a team. We’d be particularly thrilled if you have:  Experience building security pipelines and integrating them into developer workflows and CI/CD. Experience in security design review, security architecture, system hardening, and risk assessment. Experience developing internal security tools or plugins for developer teams. Experience applying AI/LLM in security tooling or processes. Programming skills in Kotlin, Java, Python, or Go. Knowledge of desktop application security (Windows, macOS, Unix). Hands-on experience with SAST, DAST, SCA, or fuzzing. Experience with bug bounty programs — as a researcher or a triager. Participation in CTFs or other practical security competitions. Any relevant certifications, such as OSCP, OSWE, GXPN, CISSP, etc. Familiarity with compliance and regulatory frameworks such as GDPR, SOC 2, ISO 27001, and emerging AI regulations. #LI-DNIWe process the data provided in your job application in accordance with the Recruitment Privacy Policy.

Other Ai Matches

remote-jobserver Remote
Senior/Staff Software Developer - Kotlin Multiplatform Tooling Applicants are expected to have a solid experience in handling Kotlin Multiplatform Tooling related tasks
Senior Product Manager (IntelliJ Platform) Applicants are expected to have a solid experience in handling IntelliJ Platform related tasks
remote-jobserver Remote
Senior Technical Product Manager (Kotlin Ecosystem - AI Value Stream) Applicants are expected to have a solid experience in handling Kotlin Ecosystem related tasks
Software Engineer (IntelliJ Platfrom Licensing) Applicants are expected to have a solid experience in handling IntelliJ Platform related tasks
Campus Ambassador (China) Applicants are expected to have a solid experience in handling University Relations related tasks
remote-jobserver Remote
Senior ML Engineer (JetBrains Research) Applicants are expected to have a solid experience in handling Applied Research Division related tasks
Software Developer (IntelliJ Platform – Version Control Experience) Applicants are expected to have a solid experience in handling Version Control Experience related tasks
remote-jobserver Remote
Development Team Lead (AI Integrations/ .NET) Applicants are expected to have a solid experience in handling .NET and GameDev related tasks
Software Developer (Platform/ Remote Development) Applicants are expected to have a solid experience in handling Remote Development Technology related tasks
QA Engineer (Version Control Experience) Applicants are expected to have a solid experience in handling Version Control Experience QA related tasks
Payroll Specialist (US) Applicants are expected to have a solid experience in handling Global Payroll related tasks
remote-jobserver Remote
Senior Software Engineer (.NET tooling Core) Applicants are expected to have a solid experience in handling .NET Tooling Core related tasks
Senior Software Developer (Quality Infrastructure) Applicants are expected to have a solid experience in handling Quality Infrastructure related tasks
Finance Systems Analyst and Support Applicants are expected to have a solid experience in handling Financial Support and Analysis related tasks
Entrepreneur in Residence / Product Lead (Project Ignite) Applicants are expected to have a solid experience in handling Ignite related tasks
remote-jobserver Remote
Senior Product Designer (TeamCity) Applicants are expected to have a solid experience in handling TeamCity Discovery related tasks
General Ledger Manager Applicants are expected to have a solid experience in handling Accounting Prague related tasks
HR Specialist Applicants are expected to have a solid experience in handling Human Resources Poland related tasks
remote-jobserver Remote
Infrastructure Security Engineer Applicants are expected to have a solid experience in handling Infrastructure Security related tasks
Kotlin Developer Advocate Applicants are expected to have a solid experience in handling [disbanded] Kotlin Advocacy related tasks
Software Developer (Station/Toolbox App) Applicants are expected to have a solid experience in handling Toolbox App Infrastructure related tasks
Country HR Lead Applicants are expected to have a solid experience in handling Human Resources Munich related tasks
remote-jobserver Remote
Security Engineer in Product Security Applicants are expected to have a solid experience in handling Product Security related tasks