Talent.com
Senior Product Security Engineer
Senior Product Security EngineerCelonis GmbH • New York, NY, United States
Senior Product Security Engineer

Senior Product Security Engineer

Celonis GmbH • New York, NY, United States
1 day ago
Job type
  • Full-time
Job description

We're Celonis, the global leader in Process Intelligence technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing AI, data and intelligence at the core of business processes - and for that, we need your help. Care to join us?

The Team :

Within our InfoSec organization, Our global security engineering team is responsible for designing, building, and enhancing the underlying security components that help with securing the Celonis Application and Platforms stacks. We think about both offensively and defensively. We continuously monitor our global security posture and are always adapting to the ever-changing threat landscape. The security engineering team is always looking for talented subject matter experts in application, platform and offensive security.

The Role :

Celonis is looking for a Senior Application Security Engineer to help assess and validate that our services, applications, and websites are designed and implemented to the highest security standards. You will be responsible for analyzing the security of applications and services, discovering and addressing security issues, building security automation, and quickly reacting to new threat scenarios. You will have the opportunity to mentor the application security engineers who are building and securing our cutting-edge application layer services.

The work you'll do :

  • Conduct threat modeling, secure code reviews, and security assessments across web / native application, and infrastructure, proactively identifying vulnerabilities and providing clear recommendations to the development teams.
  • Conduct security architecture reviews of the application stack, including applications built on cloud and emerging technologies.
  • Review source code for potential security issues, writing security test cases to check for vulnerabilities or broken / missing security controls.
  • Provide specific risk assessment and remediation guidelines for developers and business owners.
  • Research the latest security best practices, trends, threats and vulnerabilities, and technology frameworks.
  • Perform in-depth security review of new features. This includes identifying security vulnerabilities (including, but not limited to OWASP top ten), reviewing code in Java or C++, verifying security posture through source-assisted security assessments and penetration testing (using manual / automated techniques with tools such as Burp suite and Semgrep).
  • Partner with engineering and operation teams to integrate mitigation controls into continuous integration, delivery and deployment processes.
  • Work on essential areas to develop security baseline for application, container, cloud, orchestration platforms, and integrate it into the CI / CD pipeline.
  • Implement security architecture, methods, and controls required to meet security, compliance, and audit requirements (NIST controls, SOC2, etc.).
  • Lead complex security projects, from initial planning through execution and completion.
  • Act as internal advocate and subject matter expert on secure software development practices.
  • Lead secure development awareness communications and training initiatives.

The qualifications you'll need :

  • 5+ years of previous experience in information security.
  • 3+ years of previous experience working within software development.
  • A bachelor's degree in Computer Science / Information Security / Cyber Security or equivalent.
  • Proven track record of performing secure design reviews and threat modeling on complex systems.
  • Comprehensive knowledge of fundamental application security principles, secure coding practices, and common web application vulnerabilities, including those listed in OWASP Top 10.
  • Excellent written and oral communication skills; ability to articulate and communicate risks to both technical and non-technical audiences.
  • Demonstrated ability to work both independently and in cross-functional teams, effectively multitasking in a fast-paced environment.
  • Firm understanding of enterprise class application architectures that are highly scalable and reliable and the expertise to secure them.
  • History of leading and delivering complex security projects.
  • Visa sponsorship is not offered for this role.

    The base salary range below is for the role in the specified location, based on a Full Time Schedule.

    Total compensation package will include base salary + bonus / commission + equity + benefits (health, dental, life, 401k, and paid time off). Please note that the base salary range is a guideline, and that the actual total compensation offer will be determined based on various factors, including, but not limited to, applicant's qualifications, skills, experiences, and location.

    The base salary range below is for the role in New York, based on a Full Time Schedule.

    $161,000-$218,000 USD

    What Celonis Can Offer You :

  • Pioneer Innovation : Work with the leading, award-winning process mining technology, shaping the future of business.
  • Accelerate Your Growth : Benefit from clear career paths, internal mobility, a dedicated learning program, and mentorship opportunities.
  • Receive Exceptional Benefits : Including generous PTO, hybrid working options, company equity (RSUs), comprehensive benefits, extensive parental leave, dedicated volunteer days, and much more. Interns and working students explore your benefits here.
  • Prioritize Your Well-being : Access to resources such as gym subsidies, counseling, and well-being programs.
  • Connect and Belong : Find community and support through dedicated inclusion and belonging programs.
  • Make Meaningful Impact : Be part of a company driven by strong values that guide everything we do : Live for Customer Value, The Best Team Wins, We Own It, and Earth Is Our Future.
  • Collaborate Globally : Join a dynamic, international team of talented individuals.
  • Empowered Environment : Contribute your ideas in an open culture with autonomous teams.
  • About Us :

    Celonis makes processes work for people, companies and the planet. The Celonis Process Intelligence Platform uses industry-leading process mining and AI technology and augments it with business context to give customers a living digital twin of their business operation. It's system-agnostic and without bias, and provides everyone with a common language for understanding and improving businesses. Celonis enables its customers to continuously realize significant value across the top, bottom, and green line. Celonis is headquartered in Munich, Germany, and New York City, USA, with more than 20 offices worldwide.

    Get familiar with the Celonis Process Intelligence Platform by watching this video.

    Celonis Inclusion Statement :

    At Celonis, we believe our people make us who we are and that "The Best Team Wins". We know that the best teams are made up of people who bring different perspectives to the table. And when everyone feels included, able to speak up and knows their voice is heard - that's when creativity and innovation happen.

    Your Privacy :

    Any information you submit to Celonis as part of your application will be processed in accordance with Celonis' Accessibility and Candidate Notices

    By submitting this application, you confirm that you agree to the storing and processing of your personal data by Celonis as described in our Privacy Notice for the Application and Hiring Process.

    Please be aware of common job offer scams, impersonators and frauds. Learn more here.

    Create a job alert for this search

    Product Security Engineer • New York, NY, United States

    Related jobs
    Senior Engineer, Threat Detection - Advanced Security Solutions

    Senior Engineer, Threat Detection - Advanced Security Solutions

    Presidio Networked Solutions, LLC • New York, NY, United States
    Full-time
    Presidio, Where Teamwork and Innovation Shape the Future.AtPresidio, we're at the forefront of a global technology revolution, transforming industries throughcutting-edge digital solutions and next...Show more
    Last updated: 2 hours ago • Promoted • New!
    Senior Security Engineer

    Senior Security Engineer

    Insight Global • New York, NY, United States
    Full-time
    Insight Global is seeking a Senior Security Engineer to join one of our investment management clients.This individual will serve as a key member of the Information Technology team, reporting direct...Show more
    Last updated: 3 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Imprint Content • New York, NY, United States
    Full-time
    Imprint is reimagining co-branded credit cards & financial products to be smarter, more rewarding, and truly brand-first. We partner with companies like Rakuten, Booking.H-E-B, Fetch, and Brooks Bro...Show more
    Last updated: 22 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Uniswap Labs • New York, NY, United States
    Full-time
    We're looking for a Senior Application Security Engineer to help shape the security of Uniswap's products and infrastructure. You'll play a leading role in protecting one of the most widely used pro...Show more
    Last updated: 22 hours ago • Promoted • New!
    Senior Product Security Engineer

    Senior Product Security Engineer

    Halcyon • New York, NY, United States
    Full-time
    Halcyon is the industry's first dedicated, adaptive security platform that combines multiple proprietary advanced prevention engines along with AI models focused specifically on stopping ransomware...Show more
    Last updated: 22 hours ago • Promoted • New!
    Senior Security Engineer

    Senior Security Engineer

    Kensho • New York, NY, United States
    Full-time
    Kensho is S&P Global's hub for AI innovation and transformation.With expertise in machine learning, natural language processing, and data discovery, we develop and deploy novel solutions to innovat...Show more
    Last updated: 3 days ago • Promoted
    Senior Security Engineer (Product)

    Senior Security Engineer (Product)

    Headway • New York, NY, United States
    Full-time
    The Trust team at Headway is focused on security and privacy for all of Headway’s customers - therapists, patients, and payers (ex : insurance companies and health systems).As an early member on the...Show more
    Last updated: 1 day ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Recruitics Careers • New York, NY, United States
    Full-time
    Recruitics is a data-centric recruitment marketing agency that makes it easy for the world's leading brands to attract and hire great talent. We revolutionized recruitment advertising in 2012 with t...Show more
    Last updated: 3 days ago • Promoted
    Senior Product Security Engineer New York, New York, United States

    Senior Product Security Engineer New York, New York, United States

    StubHub • New York, NY, United States
    Full-time
    StubHub is on a mission to redefine the live event experience on a global scale.Whether someone is looking to attend their first event or their hundredth, were here to delight them all the way from...Show more
    Last updated: 4 hours ago • Promoted • New!
    Senior Security Engineer (Product)

    Senior Security Engineer (Product)

    Headway - Design & Development • New York, NY, United States
    Full-time
    Headway's mission is a big one - to build a new mental health care system everyone can access.We've built technology that helps people find great therapists with the first software-enabled national...Show more
    Last updated: 2 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Nexxen • New York, NY, United States
    Full-time
    Flexible advertising, unified by data.Nexxen empowers advertisers, agencies, publishers and broadcasters around the world to utilize data and advanced TV in the ways that are most meaningful to the...Show more
    Last updated: 11 days ago • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Recruitics • New York, NY, United States
    Full-time
    Recruitics is a data-centric recruitment marketing agency that makes it easy for the world's leading brands to attract and hire great talent. We revolutionized recruitment advertising in 2012 with t...Show more
    Last updated: 2 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Datadog • New York, NY, United States
    Full-time
    As a Senior Security Engineer within Platform Security at Datadog, you will play a vital role in securing our infrastructure for agentic applications. This role will be critical in establishing and ...Show more
    Last updated: 1 day ago • Promoted
    Senior Security Engineer | Enterprise Security

    Senior Security Engineer | Enterprise Security

    RAMP • New York, NY, United States
    Full-time
    At Ramp, we're rethinking how modern finance teams function in the age of AI.We believe AI isn't just the next big wave.It's the new foundation for how business gets done.We're investing in that fu...Show more
    Last updated: 3 days ago • Promoted
    Senior / Staff Enterprise Security Engineer

    Senior / Staff Enterprise Security Engineer

    Abridge Al, Inc • New York, NY, United States
    Full-time
    Abridge was founded in 2018 with the mission of powering deeper understanding in healthcare.Our AI-powered platform was purpose-built for medical conversations, improving clinical documentation eff...Show more
    Last updated: 14 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Yantran LLC • Middletown, NJ, United States
    Full-time
    Senior Application Security Engineer.Location : Middletown, NJ (F2F Required, Onsite from Day.We are looking for a Senior Application Security Engineer to join our growing team and play a hands-on r...Show more
    Last updated: 22 days ago • Promoted
    Senior Product Security Engineer

    Senior Product Security Engineer

    StubHub • New York, NY, United States
    Full-time
    Senior Product Security Engineer.Be among the first 25 applicants.Senior Product Security Engineer.StubHub is on a mission to redefine the live event experience on a global scale.Whether someone is...Show more
    Last updated: 4 hours ago • Promoted • New!
    Senior Lead Security Engineer

    Senior Lead Security Engineer

    JPMorgan Chase Bank, N.A. • Jersey City, NJ, United States
    Full-time
    Join a team at the forefront of securing the future of connected devices and smart environments within a world-renowned company. As a Senior Lead Security Engineer at JPMorgan Chase within the Cyber...Show more
    Last updated: 2 days ago • Promoted