Skip to main content
Qdrant

Security Engineer

RemoteGermany only
Published
Role
Security
Experience
Mid
Employment
Full-time
Company size
Startup
Salary not disclosed
Check eligibility

Open to DE only. Set where you work from to check your eligibility.

No BS summary

We are looking for a Mid-Level Security Engineer to own the hands-on engineering and operational work within our security program. You will be embedded in the Cloud Engineering team, report into the Security Officer, and work closely together to identify risks, set priorities, and drive security issues through remediation. You will act as a security enabler across all Product & Engineering.

Core skills

Security EngineeringVulnerability ManagementIncident Response

Required skills

RustGoPythonAWSKubernetesGitHub

Optional skills

penetration testingCTF participationvulnerability researchexploit analysiscloud-native incident response

What you'll do

  • Run our public bug bounty program: triage reports, reproduce and validate findings, communicate clearly with security researchers, and drive remediation through to closure.
  • Investigate reported vulnerabilities at the code level, including our Rust core, Go and Python tooling.
  • Enable engineers to build secure systems: provide tooling, paved-road defaults, documentation, and practical guidance so security is the easy path, not a checkpoint.
  • Harden and maintain our GitHub organization’s security posture, including secret scanning, push protection, branch protection and rulesets, dependency alerts, and code scanning, in partnership with the engineering teams that use these repositories daily.
  • Monitor, investigate, and respond to security alerts across AWS, Kubernetes, CI/CD, and related infrastructure.

What they require

  • You can read and navigate an unfamiliar codebase (Rust, Go, Python) well enough to validate a vulnerability report, trace its impact, and judge whether a proposed fix actually closes it.
  • You write and maintain automation and security tooling comfortably, and can hold a credible technical conversation in code review.
  • Experience triaging vulnerability reports or working with a bug bounty program, vulnerability disclosure program, product security team, or similar function.
  • Practical knowledge of cloud and container security, particularly AWS and Kubernetes.
  • 3+ years in a hands-on security engineering, product security, or vulnerability management role.

Benefits

  • A competitive salary with additional perks.
  • Flexible working hours and async-friendly culture.
  • High ownership and real impact.
  • Open-source, engineering-driven culture.
  • Choose your own laptop equipment.

open-source vector similarity search engine

SoftwareStartupqdrant.tech/
Salary not disclosed