About the job
This position can be located in either Berlin or London.
JOIN US TO MAKE A DIFFRENCE IN FINANCE
Trade Republic is Europe's largest savings platform, with a presence in 17 countries and over 8 million customers who trust us with more than €100 billion in assets. We are on a mission to empower individuals to accumulate wealth through straightforward, secure, and accessible financial systems. This role offers a unique opportunity to advance your career alongside a talented team using cutting-edge technology, as we shape a bright financial future for millions.
YOUR ROLE AND IMPACT
As a Senior Security Engineer within our Application Security team, you will play a critical role in securing Trade Republic's applications and development lifecycle by integrating proactive security measures and upholding engineering excellence. Your key responsibilities will include:
- Collaborating with engineering teams to embed security throughout the software development lifecycle from design to deployment.
- Conducting security code reviews, threat modeling sessions, and architecture evaluations for essential applications and services.
- Designing and implementing SAST, DAST, and SCA solutions to identify vulnerabilities early in the development process.
- Building and maintaining application security testing automation within CI/CD pipelines.
- Creating secure coding standards, security libraries, and reusable security components for engineering teams.
- Executing penetration testing and vulnerability assessments of web applications, APIs, and mobile applications.
- Triaging, prioritizing, and remediating application vulnerabilities in close collaboration with development teams.
- Establishing a security champions program and delivering security training to engineering teams.
- Researching emerging application security threats and integrating defensive measures into our security architecture.
- Contributing to the management of bug bounty programs and liaising with external security researchers.
WHAT WE SEEK IN YOU
Core Qualifications:
- 5+ years of experience as a Security Engineer, with a minimum of 4 years specializing in application security.
- A deep understanding of web application security principles and practices.
- Experience in implementing security measures and conducting security assessments.
- Strong communication skills and the ability to work collaboratively in a team-oriented environment.
