Application Security Engineer

Application Security Engineer

Vollzeit 60000 - 80000 € / Jahr (geschätzt) Homeoffice (teilweise)
Fin

Auf einen Blick

  • Aufgaben: Entwickle Sicherheitslösungen für unsere KI-gestützten Produkte und schütze Kundeninformationen.
  • Unternehmen: Fin, ein schnell wachsendes Unternehmen im Bereich KI-Kundenservice.
  • Vorteile: Wettbewerbsfähiges Gehalt, Aktienoptionen, flexible Arbeitszeiten und umfassende Gesundheitsleistungen.
  • Weitere Informationen: Dynamisches Team mit großartigen Wachstumschancen und einer offenen Unternehmenskultur.
  • Warum dieser Job: Gestalte die Zukunft des Kundenservice mit innovativer Sicherheitstechnik.
  • Qualifikationen: Erfahrung in Anwendungssicherheit und Softwareentwicklung erforderlich.

Das prognostizierte Gehalt liegt zwischen 60000 - 80000 € pro Jahr.

Fin is the AI Customer Agent company on a mission to help businesses provide perfect customer experiences.

Our AI Agent Fin is the highest-performing AI Customer Agent on the market today, enabling businesses to deliver impeccable, always-on customer support across the customer journey - from service, to sales, to ecommerce.

Powered by our own AI models, Fin resolves complex customer issues end-to-end across every channel, with minimal set-up and integration.

Fin can also be combined with our natively integrated Intercom help desk for one single system that is designed to meet the needs of modern day support teams.

Founded in 2011, Fin became one of the fastest growing companies and remains one of the largest private software companies in the world with nearly 30,000 global businesses using our products to transform their customer support.

Driven by our core values, we push boundaries, build with speed and intensity, and relentlessly deliver incredible value to our customers.

What's the opportunity?

Fin is transforming customer service through AI, helping businesses deliver fast, accurate, and reliable support at scale. Trust is foundational to that mission.

Fin's Security Engineering team is unlike most security teams.

We own and operate critical security services, build customer-facing security features, and partner with engineering teams to make secure development the default.

We're engineers first; designing, building, and operating systems that protect Fin and its customers.

The team owns and operates tier-zero services including authentication, SAML/SSO, teammate activity logs, malicious URL scanning, and other critical trust and security capabilities.

The mission of the team is to help Fin build and operate trusted AI-powered customer service experiences by making security a natural part of how products are designed, developed, and delivered.

As Fin continues to expand its capabilities and adoption, you'll help shape how security evolves alongside some of the most ambitious AI-powered products in customer service.

We're taking an AI-first approach to security, exploring areas such as AI-powered detection, red-team automation, continuous monitoring, and emerging defensive capabilities to help meet an evolving threat landscape.

What will I be doing?

  • Own and engineer tier-zero security capabilities that help customers securely deploy and manage Fin.
  • Design, build, and evolve customer-facing security features, including authentication, SAML/SSO, permissions systems, audit and activity logging, malicious URL scanning, and other enterprise security controls.
  • Partner with engineering teams throughout the software development lifecycle to build secure products and services.
  • Perform architecture reviews, threat modelling exercises, and security assessments for new features and systems.
  • Build security tooling, automation, and developer-facing building blocks that make secure development easier and more scalable.
  • Contribute to secure development standards, guidance, and best practices across Fin.
  • Lead application security initiatives across the software development lifecycle, helping teams identify and address security risks early.
  • Participate in a shared on-call rotation and lead security incident response, investigation, and remediation efforts.
  • Drive security initiatives from problem definition through design, implementation, and measurable outcomes.
  • Partner with teams building AI-powered products to assess and mitigate emerging security risks.
  • Help shape Fin's AI-first approach to security, including AI-powered detection, red-team automation, continuous monitoring, and emerging defensive capabilities.
  • Support the secure adoption of AI-assisted software development tools and engineering workflows.

What skills do I need?

  • Proven application security, product security, or security engineering experience within a Saa S environment.
  • Strong software engineering skills with experience designing, building, and operating production systems.
  • Deep understanding of modern application security threats, secure software development practices, and threat modelling.
  • Experience designing, building, or securing authentication, authorization, identity, or enterprise security capabilities.
  • Experience conducting architecture reviews and security assessments for complex systems.
  • Hands‑on security incident response experience, including leading investigations and remediation efforts.
  • Strong programming skills and experience building tools, automation, or developer‑focused solutions.
  • Comfortable using modern AI‑assisted development tools to improve productivity and engineering effectiveness.
  • Ability to communicate security concepts clearly and collaborate effectively with engineering teams.
  • A pragmatic approach to balancing security, customer impact, and engineering velocity.
  • Bonus skills & attributes
  • Experience building or owning authentication, SAML/SSO, identity, or access management capabilities.
  • Experience securing AI-powered products or familiarity with security considerations for large language models, agentic systems, retrieval‑based architectures, or AI tool integrations.
  • Experience building security automation or security‑focused platform capabilities at scale.
  • Familiarity with cloud security, infrastructure security, or distributed systems.
  • Experience working across both large‑scale Saa S environments and high‑growth companies.

Benefits

We are a well treated bunch, with awesome benefits! If there’s something important to you that’s not on this list, talk to us!

  • Competitive salary and equity in a fast-growing start-up
  • We serve lunch every weekday, plus a variety of snack foods and a fully stocked kitchen

• Regular compensation reviews - we reward great work!

  • Unlimited access to Claude Code and best‑in‑class AI tools; experimentation & building is encouraged & celebrated.
  • Pension scheme & match up to 4%
  • Peace of mind with life assurance, as well as comprehensive health and dental insurance for you and your dependents
  • Flexible paid time off policy
  • Paid maternity leave, as well as 6 weeks paternity leave for fathers, to let you spend valuable time with your loved ones
  • If you’re cycling, we’ve got you covered on the Cycle-to-Work Scheme. With secure bike storage too
  • Mac Books are our standard, but we also offer Windows for certain roles when needed.
  • #LI-Hybrid
  • Policies

Fin has a hybrid working policy.

We believe that working in person helps us stay connected, collaborate easier and create a great culture while still providing flexibility to work from home.

We expect employees to be in the office at least three days per week.

We have a radically open and accepting culture at Fin.

We avoid spending time on divisive subjects to foster a safe and cohesive work environment for everyone.

As an organization, our policy is to not advocate on behalf of the company or our employees on any social or political topics out of our internal or external communications.

We respect personal opinion and expression on these topics on personal social platforms on personal time, and do not challenge or confront anyone for their views on non-work related topics.

Our goal is to focus on doing incredible work to achieve our goals and unite the company through our core values.

Fin values diversity and is committed to a policy of Equal Employment Opportunity.

Fin will not discriminate against an applicant or employee on the basis of race, color, religion, creed, national origin, ancestry, sex, gender, age, physical or mental disability, veteran or military status, genetic information, sexual orientation, gender identity, gender expression, marital status, or any other legally recognized protected basis under federal, state, or local law.

#J-18808-Ljbffr

Application Security Engineer Arbeitgeber: Fin

Fin ist ein hervorragender Arbeitgeber, der seinen Mitarbeitern nicht nur ein wettbewerbsfähiges Gehalt und Aktienoptionen in einem schnell wachsenden Start-up bietet, sondern auch eine Vielzahl von Vorteilen wie flexible Arbeitszeiten, umfassende Gesundheits- und Zahnversicherungen sowie großzügige Elternzeitregelungen. Unsere offene und akzeptierende Unternehmenskultur fördert die Zusammenarbeit und Kreativität, während wir gleichzeitig die persönliche und berufliche Weiterentwicklung unserer Mitarbeiter unterstützen. Bei Fin haben Sie die Möglichkeit, an der Spitze der KI-gestützten Kundenservice-Technologie zu arbeiten und dabei einen echten Einfluss auf die Sicherheit und den Erfolg unserer Produkte zu haben.

Fin

Kontaktdaten:

Fin Recruiting-Team

StudySmarter Expertenrat🤫

Wir sind der Meinung, dass du so Application Security Engineer erhalten könntest

Werde sichtbar in der IT-Sicherheits-Community

In der IT-Sicherheit gibt’s eine Menge Fachkreise und Konferenzen, die super für Networking sind. Schau dir Events wie die "IT-Security Convention" oder regionale Meetups an, um Gleichgesinnte und potenzielle Arbeitgeber wie Fin kennenzulernen!

Kollaboriere an Open-Source-Projekten

Zeig dein Können und engagiere dich in Open-Source-Projekten, die auf IT-Sicherheit abzielen. Das ist nicht nur eine tolle Möglichkeit, praktische Erfahrungen zu sammeln, sondern auch, um dein Portfolio zu erweitern und Sichtbarkeit in der Branche zu gewinnen.

Nutze spezielle Jobportale für IT-Sicherheit

Schau auf spezialisierten Jobportalen wie "heise jobs" oder "StepStone" nach offenen Stellen in der IT-Sicherheit. Hier findest du viele Angebote, die nicht immer auf den großen Plattformen gelistet sind. Vergiss nicht, dich direkt auf der Website von Fin zu bewerben!

Halte deine Skills up-to-date

In der IT-Sicherheit bleibt nichts stehen, also bleib am Ball! Investiere Zeit in Weiterbildung und besuche Online-Kurse oder Webinare zu aktuellen Sicherheitsthemen. Das zeigt nicht nur dein Engagement, sondern stärkt auch dein Profil bei Fin.

Wir glauben, dass du diese Fähigkeiten brauchst, um Application Security Engineer mit Bravour zu bestehen

Anwendungssicherheit
Produktsicherheit
Sicherheitsengineering
Softwareengineering
Sichere Softwareentwicklung
Bedrohungsmodellierung
Authentifizierung

Einige Tipps für deine Bewerbung 🫡

Zeig deine technischen Skills!:Im Bereich IT-Sicherheit ist es wichtig, dass du deine technischen Fähigkeiten klar kommunizierst. Stelle sicher, dass dein Lebenslauf relevante Zertifikate (wie CEH oder CISSP) sowie praktische Erfahrungen bei Sicherheitsprojekten oder Penetrationstests zeigt. Dies wird uns helfen, einen besseren Eindruck von deinem Fachwissen zu bekommen.

Präsentiere dein Wissen über aktuelle Trends:Wir möchten sehen, dass du über die neuesten Entwicklungen im Bereich IT-Sicherheit informiert bist. In deinem Anschreiben kannst du beispielsweise auf ein aktuelles Sicherheitsproblem oder einen neuen Standard eingehen, den du für relevant hältst. Dadurch zeigst du uns, dass du dich aktiv mit dem Thema auseinandersetzt und für die Position brennst.

Mach deine Leidenschaft deutlich:Da es sich um eine Vollzeitposition handelt, ist es wichtig, dass du uns in deinem Anschreiben zeigst, warum du in der IT-Sicherheit arbeiten möchtest. Erzähl uns von deinen Erfahrungen, wie du zur Cyber-Security gekommen bist und was dich motiviert, in dieser Branche zu arbeiten. Deine Motivation spielt eine große Rolle bei der Auswahl!

Referenzen oder Projekte anfügen:Wenn du bereits an interessanten Projekten gearbeitet hast oder relevante Referenzen hast, die deine Fähigkeiten unterstreichen, füge diese in deine Bewerbung hinzu. Das gibt uns einen Einblick in deine praktische Erfahrung und zeigt, was du wirklich drauf hast. Ein Link zu einem GitHub-Profil oder Sicherheitsanalysen, die du durchgeführt hast, wäre hier super hilfreich!

Wie man sich auf ein Vorstellungsgespräch bei Fin vorbereitet

Sicherheitsprotokolle dominiert!

Mach dich mit den neuesten Sicherheitsprotokollen und -standards vertraut. Bei Fin könnte es sein, dass du in technisch anspruchsvollen Fragen zu Netzwerksicherheit und Schwachstellenmanagement gefordert wirst – zeig, dass du die Grundlagen und die aktuellen Trends im Bereich IT-Sicherheit beherrschst!

Praktische Erfahrung zählt!

Bereite dich darauf vor, über frühere Projekte oder Erfahrungen im Bereich IT-Sicherheit zu sprechen. Es ist wichtig, Beispiele zu haben, wie du Sicherheitslücken identifiziert und behoben hast oder welche Tools du verwendet hast, um Systeme abzusichern. Fin sucht nach jemandem, der die Theorie auch anwenden kann!

Teamarbeit nicht vergessen!

IT-Sicherheit ist oft Teamarbeit. Sei bereit, Fragen zu beantworten, wie du in einem Team umgehst, um Sicherheitsprobleme zu lösen. Denk auch an Beispiel-Situationen, in denen du optimal mit anderen zusammengearbeitet hast – das könnte einen großen Unterschied machen!

Motivation und Lernbereitschaft zeigen!

Da es sich um eine Vollzeitstelle handelt, wird Fin auch wissen wollen, wie motiviert du bist und welche Schritte du unternimmst, um dein Wissen in der sich ständig weiterentwickelnden Welt der IT-Sicherheit auf dem neuesten Stand zu halten. Das könnte in einem Gespräch über deine Weiterbildung oder zertifikatsbezogenen Pläne relevant sein!