logo[мetahunt]
> Djinni

Security Engineer

company:Outsource
pythonterraform
sastdastscaci/cdllmai agentsthreat modelingjava
test task:yes
englishB2
experience3+ years
> full description

Important: after confirming your application on this platform, you’ll receive an email with the next step: completing your application on our internal site, LaunchPod. So keep an eye on your inbox and don’t miss this step — without it, the process can’t move forward.

 

Why join us

If you're looking for a place to grow, make an impact, and work with people who care, we'd love to meet you! :)

 

About the role

We are looking for a Python Application Security Engineer to automate application security controls and integrate secure coding practices into software development and cloud workflows.

 

The mandatory requirements are 3+ years of experience in software engineering and security, Python, AppSec tool APIs, CSPM, IaC/Terraform checks and independent execution; upper-intermediate English is required. SAST/DAST/SCA, AI security, threat modeling and Java are a plus.

 

Must haves

  • 3+ years of experience combining software engineering experience, security implementation and/or architecture experience.
  • Strong coding and architectural proficiency in Python (for security automation and scripting).
  • Hands-on experience or familiarity with Wiz, Prisma Cloud, or similar tools for cloud security posture management and threat detection.
  • Implementation experience with deploy-time checks against Infrastructure as Code (IaC) / Terraform.
  • Implementation experience with runtime checks through Cloud Security Posture Management (CSPM).
  • Fully autonomous execution capability, requiring no daily supervision to map out and build automated security runbooks.
  • Upper-intermediate English level.

 

Nice to haves

  • Deep, hands-on expertise deploying and tuning modern application security testing tools (SAST, DAST, SCA) and integrating them into complex CI/CD orchestration ecosystems.
  • Experience integrating LLMs, AI agents, or automated coding assistants to streamline vulnerability triaging or secure code generation.
  • Advanced application threat modeling experience.
  • Ability to confidently read, review and secure enterprise source Java code.

 

What you will do

  • AppSec Engineering & Automation: Engineer and deploy AI-enabled secure code scanning capabilities and "Golden Images" to drive secure-from-the-start adoption.
  • Technical Modernization: Automate the development of secure coding patterns and integrate them with traditional and Agentic SDLC workflows.
  • Security Tooling Integration: Architect the integration of continuous security scanning tools (SAST, DAST, SCA) into enterprise CI/CD pipelines, tuning them to eliminate noise.
  • Cloud & Runtime Security: Implement runtime security checks via CSPM to maintain continuous cloud visibility and threat posture management.
  • Developer Experience (DevEx): Act as a senior technical SME, reading and reviewing complex application code (Java/Python) to provide software engineers with highly specific, code-level remediation guidance.

 

 

The benefits of joining us

  • Professional growth

Accelerate your professional journey with mentorship, TechTalks, and personalized growth roadmaps

  • Competitive compensation

We match your ever-growing skills, talent, and contributions with competitive USD-based compensation and budgets for education, fitness, and team activities

  • A selection of exciting projects

Join projects with modern solutions development and top-tier clients that include Fortune 500 enterprises and leading product brands

  • Flextime

Tailor your schedule for an optimal work-life balance, by having the options of working from home and going to the office – whatever makes you the happiest and most productive.

 

Meet Our Recruitment Process

Asynchronous stage – An automated, self-paced track that helps us move faster and give you quicker feedback:

  • Short online form to confirm basic requirements
  • 30–60 minute skills assessment via Codility – a platform founded in Poland that helps us provide quicker feedback and streamline this stage of the process.
  • 5-minute introduction video

Synchronous stage – Live interviews

  • Technical interview with our engineering team (scheduled at your convenience)
  • Final interview with your future teammates

If it’s a match — you’ll get an offer!