Point your AI agent at freehire and let it find you a job.

Get the CLI →

ABOUTYOUGmbH

NewBe an early applicant

Application Security Engineer (all genders)

Discussion

Summary

Application Security Engineer at ABOUT YOU (online fashion shop): conducts penetration tests and manual code reviews, hardens AWS/Kubernetes infrastructure, automates security auditing with Python and GitLab CI, triages monitoring events, and joins SOC incident response including occasional 24/7 on-call.

We are looking for an Application Security Engineer (all genders) to join the Application Security circle of our IT-Security unit, dedicated to protecting our online shop, our corporate systems and our customers.

In this role, you will hack internal systems, design and implement security measures to safeguard our infrastructure, applications, and data. You will work closely with other security engineers, developers and IT teams to ensure security best practices, automate security processes, and respond to emerging threats.

  • Conduct regular penetration tests and code reviews

  • Advise in the setup and maintenance of applications and infrastructure (usually hosted in AWS/Kubernetes)

  • Triage and respond to monitoring events

  • Optimization and automation of security auditing processes. This could also include setting up attack infrastructure, writing scripts in Python and implementing security scanning in Gitlab CI

  • Take part in some incident response activities within the SOC, which include occasional 24/7 on-call

  • At least 1+ year in a Junior-level position and overall min. 2+ years of experience in application security

  • Strong background in threat modeling, penetration testing, and manual secure code reviews

  • Fluency in Python for security automation, tooling, and code assessment

  • Solid hands-on experience securing modern cloud environments (AWS or GCP)

  • Demonstrated ability to manage complex technical security projects, align dependencies, and track deliverables across multi-functional engineering teams

Nice to have

  • Certificates: e.g. OSCP, OSWP, etc.

  • Knowledge of Laravel / PHP.

  • Ability to read and understand JavaScript

  • Ability to read and understand Go

  • Experience with incident response activities

  • Experience with web application firewalls, CDN providers, e.g. Cloudflare, Akamai

  • Experience with Gitlab CI/CD Pipelines

Your perks at a glance: Visit our benefits page.

Simply apply online via our career page - we will get back to you as soon as possible!

A Place Where You Can Be You
We take it as our responsibility to create an environment where everyone feels welcome, exactly as they are.
Different backgrounds and perspectives make us stronger and shape our culture in ways that matter.
What we stand for internally, we stand for as a brand: acceptance, inclusion, and a fairer approach to fashion.

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available