Application Security Engineer

Security Remote Remote (Europe) Today
Apply for this role
Listed via Greenhouse · Redirects to PandaDoc's careers page

Job Description

As PandaDoc continues to scale, we’re expanding our security team and looking for an Application Security Engineer to help shape and strengthen our security foundations. In this role, you’ll take ownership of key security initiatives across our application, working closely with engineering to embed security into every stage of development. You’ll contribute to building a proactive, automation-driven security culture while addressing both current risks and emerging challenges, including AI security.

In this role, you will:

  • Monitor and test information systems to identify vulnerabilities
  • Execute or manage the remediation of identified vulnerabilities
  • Respond to security incidents and perform root cause analysis
  • Assess and understand PandaDoc’s current security framework and future architecture, providing recommendations for risk reduction
  • Design, implement, maintain, and evangelize automated security solutions
  • Work closely with engineering teams to implement new security controls
  • Analyze and monitor relevant security threats and prevention measures based on industry trends and standards
  • Perform cloud services hardening, including reviewing roles and permissions for services and APIs
  • Help address emergent threats in AI security as PandaDoc deploys AI in its product and for internal use

Our stack:

  • Service-oriented architecture
  • Two main stacks: Java and Python
  • Amazon Web Services: EKS, RDS, ElastiCache, etc.
  • A combination of AWS native and 3rd party security tools for infrastructure and application security (WAF, CNAPP, SCA/SAST, DAST, AWS GuardDuty, etc.)

About you:

  • 2+ years of cloud security experience implementing security controls and best practices in AWS, GCP, or Microsoft Azure
  • 2+ years of experience with security management tools, including IPS/IDS, WAF, vulnerability scanning, and penetration testing
  • Good understanding of Access Control and Identity Access Management principles (SAML 2.0, OAuth, JWT, etc)
  • Experience with implementing DevSecOps practices in SSDLC
  • Solid interpersonal, written, and verbal communication skills
  • Upper-Intermediate English level (B2+)

Company Overview:

PandaDoc empowers more than 60,000 growing organizations to thrive by taking the work out of document workflow. PandaDoc provides an all-in-one document workflow automation platform that helps fast scaling teams accelerate the ability to create, manage, and sign digital documents including proposals, quotes, contracts, and more. For more information, please visit https://www.pandadoc.com.

Company Culture:

We're known for our work-life balance, kind co-workers, & creative virtual team-bonding events. And although our Pandas are located across the globe, we stay connected with the help of technology and ensure that everyone on our team feels, well, like a team.

Pandas work best when they're happy. We retain our talent by upholding our values of integrity & transparency, and selling a product that changes the lives of our customers.

Check out our LinkedIn to learn more.

Benefits:

  • A competitive salary. If you are located in Poland, the salary range is 222000 to 334000 PLN annually.
  • An honest, open culture that emphasizes feedback and promotes professional and personal development
  • An opportunity to work from anywhere — our team is distributed worldwide, from Lisbon to Manila, from Florida to California
  • 6 self care days
  • And much more!

PandaDoc is an Equal Opportunity Employer. We are committed to equal treatment of all employees without regard to race, national origin, religion, gender, age, sexual orientation, veteran status, physical or mental disability or other basis protected by law.

EXTERNAL RECRUITERS

Approval Requirement

The use of external recruiters/staffing agencies requires prior approval from our HR Team. The HR Team at PandaDoc requests that external recruiters/staffing agencies not to contact PandaDoc employees directly in an attempt to present candidates. Complying with this request will be a factor in determining future professional relationships with PandaDoc.

About PandaDoc

PandaDoc is actively hiring on The Code Deck.

All PandaDoc jobs →
Career Toolkit

Ready to apply?

Check your CV against this job, generate a cover letter, and prep for the interview — all in one place.

Open Career Toolkit →
For Employers

Want this spot?

Pin your listing to the top of every search with a gold Featured badge. From £49.

Feature a listing →