Senior Application Security Engineer
kevin.
Rethink what you’re capable of with kevin.
Are you ready to make fundamental change and do something radical? We’re rebuilding payments how they always should have been – at pace. So whatever your experience, you’ll use it in ways you never have before. We’re pioneers who embrace uncertainty to do things no one has before. At kevin., you’ll create first-of-a-kind breakthrough solutions alongside other highly skilled people from many industries and backgrounds. We need people who take ownership and build with freedom. You’re the expert in what you do, so we won’t limit you with our expectations. If you bring courage and determination, we’ll surround you with other inspirational people and give you the freedom to exceed what you thought you were capable of. The opportunities at kevin. are unlike anywhere else. You just have to grab them and build your different.
As our new Senior Application Security Engineer, you will:
- Support and consult with product and development teams in the area of application security.
- Lead application security reviews and threat model exercises, including code review and dynamic testing.
- Assist teams in reproducing, triaging, and addressing application security vulnerabilities.
- Support and evolve the bug bounty program.
- Lead both critical and regular security releases.
- Lead the development of automated security testing in order to validate that secure coding best practices are being used
- Guide and advise product development teams as SMEs in the area of application security.
- Assist with recruiting activities and administrative work.
- Develop security training and socialize the material with internal development teams.
- Participate and assist in initiatives to holistically address multiple vulnerabilities found in a functional area.
What you need to be successful:
- Ability to use git SCMs (e.g. Gitlab/Github)
- Able to work well with software development teams.
- Experience identifying security issues through code review and dynamic testing (e.g. penetration test)
- Excellent and professional communication skills (written and verbal) with an ability to articulate complex topics in a clear and concise manner.
- Strong understanding and experience with some common security libraries and tools (e.g. static analysis tools, proxying / penetration testing tools)
- Familiarity and ability to explain common security flaws and ways to address them (e.g. OWASP Top 10)
- Basic development or scripting experience and skills. JavaScript/Typescript, Kotlin and Bash are preferred.
- A basic understanding of network and web related protocols (such as TCP/IP, UDP, HTTP, HTTPS, protocols)
- Be a subject matter expert (SME) of at least 1 technical area impacting the security of the product.
- Strong experience working closely with developers.
We only hire the very best talent from across Europe and beyond. It’s a competitive landscape so our salaries and benefits are equally competitive.We use comprehensive benchmarking to position our salaries above the market average. Our salaries are always competitive and flexible based on your experience and competence. If you’ve got something extra-special to bring to the table, let’s talk!’
For many people, the most valuable benefit of working at kevin. is the opportunity to make fundamental change, create first times and build with freedom as part of the team creating a world of payment possibilities. Alongside this, we have a range of financial, non-financial and cultural benefits on offer.
Core benefits:
- Competitive salary (Routinely benchmarked against latest industry data)
- Private Health Insurance
- Additional vacation plus local public holidays
- Up to 90 days per year of working from anywhere in the world
- Fantastic opportunities for progression and promotion as the business grows (25% of our employees were promoted in the last 12 months)
- Future stock option opportunities based on individual and business performance
Non-financial benefits:
- Work on cutting-edge technologies with the latest tools and modern tech stack
- Apple MacBook and accessories
- Travel insurance for use when travelling for business purposes
- Subsidised secure parking*
- Free on-site gym*
- Free lunch, snacks, and hot/cold drinks*
- Sports and social activities, including free tennis lessons*
- Global company events
- Work with experts from across Europe and beyond
- Be part of a diverse and multinational business with 30+ nationalities
*Benefits may vary by location.
About kevin.
kevin. is the payments reset no one saw coming. We exist to free partners from the pains of legacy payments, so we can build a world of payment possibilities together. We’ve rebuilt the infrastructure to make transactions more direct, efficient, and secure – for digital and physical sales. Our first-of-a-kind payments scheme changes the game for businesses without changing the way people pay – even in-store.
Our multi-tenant payments acceptance network is white-label, brand-agnostic, and free from intermediaries. It gives partners sole control of their payments so they can unlock more value with new services, better conversion, and strengthened customer loyalty. We’re experts from many places working with regulators, banks, payments services providers, and major retailers to build a world of payment possibilities together. Rethink what you’re capable of with kevin.
kevin. is an equal opportunity employer and values diversity. We do not discriminate on the basis of race, religion, colour, national origin, gender, sexual orientation, age, marital status or disability status.