Security Engineer - Mid-Senior - WebSec Team
EUR 38,400-72,000 per year
Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Networking @ 3
PKI @ 3
Reporting @ 3
Security @ 3
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
Join the WebSec Team to help develop and protect privacy and security products, including Threat Protection Pro, the NordLynx protocol, and VPN services. The role focuses on identifying and mitigating vulnerabilities across web and backend applications, networking components, and cryptographic services.
Responsibilities
- Conduct penetration testing on web and backend applications, networking components, and cryptographic services using white-box, grey-box, and black-box approaches.
- Apply reverse engineering skills to identify vulnerabilities during code reviews of advanced security solutions.
- Design and create solutions for complex security issues from scratch.
- Develop scripts and security automation tools to improve penetration testing processes.
- Collaborate with web and backend application developers and other technical teams to validate, assess, and understand the root causes of vulnerabilities and implement mitigations.
- Share security knowledge with colleagues.
Requirements
- Proven experience conducting application security assessments, including planning, testing, and vulnerability reporting.
- Proficiency with security scanners, static code analyzers, and debuggers.
- Understanding of networking and cryptographic fundamentals, including TLS, PFS, PKI, and digital certificates.
- Ability to perform manual security code audits.
- Experience with fuzzing, reverse engineering, and exploit development.
- Experience working with application developers to validate, assess, understand the root causes of vulnerabilities, and mitigate them.
- Strong knowledge of application and infrastructure testing methodologies.
- Knowledge of secure architecture design and assessment, including manual penetration testing approaches.
- Contributions to the security community, such as public CVEs, bug bounty recognition, open-source tools, blogs, or security certifications, are considered a bonus.
Benefits
- Extensive online and in-person training, access to Coursera and Skillshare, mentorship, and internal career opportunities.
- Extra vacation days, additional sick leave, special occasion leave, and parenting-related days off.
- Premium private health insurance, available in Lithuania and Poland.
- Subscriptions to Calm, Headspace, and Mindletic, plus resilience and mindfulness training and mental health events.
- In-house gyms, Multisport and Urban Sport cards, online workouts, group mobility sessions, fitness guidance, and individual consultations.
- Company workation opportunities abroad.
- The ability to work from different locations.
- Gifts for birthdays, work anniversaries, weddings, and new family members.
- Summer camps for children and flexible work arrangements for parents.
- Team-building activities and company events.
- Access to the Vilnius headquarters, including silent rooms, gyms, a game room, a music room, and a coffee bar.
More jobs at Nord Security
DevOps Engineer - Mid - Threat Protection
Nord Security · Vilnius, Lithuania, Kaunas, Lithuania
EUR 43,200-69,600 per year
Retention Data Analyst
Nord Security · Vilnius, Lithuania, Kaunas, Lithuania
EUR 26,400-54,000 per year
Security Engineer – Mid-Senior – WebSec Team
Nord Security · Poland
PLN 206,400-396,000 per year
Site Reliability Engineer - Senior - NordVPN Apps
Nord Security · Poland
PLN 279,600-408,000 per year
Backend Engineer · Mid-Senior · Go · Coveron
Nord Security · Poland
PLN 237,600-400,800 per year
Similar jobs
Application Security Engineer · Mid-Senior · Low-Level
Nord Security · Vilnius, Lithuania, Kaunas, Lithuania
EUR 38,400-75,600 per year
Application Security Engineer · Mid-Senior · iOS
Nord Security · Vilnius, Lithuania, Kaunas, Lithuania
EUR 38,400-75,600 per year
Application Security Engineer · Mid-Senior · Low-Level
Nord Security · Poland
PLN 206,400-360,000 per year
Application Security Engineer - Mid-Senior - iOS
Nord Security · Poland
PLN 206,400-360,000 per year
Application Security Engineer - Senior
Nord Security · Poland
PLN 276,000-360,000 per year
Senior Engineering Manager, Infrastructure Security Engineering - DGX Cloud
Nvidia · United States
USD 248,000-391,000 per year
Senior Manager, Storage Engineering
Nvidia · Santa Clara, United States
USD 248,000-396,800 per year
Service Specialist, Employee Technology Support
Bloomberg · New York City, United States
USD 85,000-100,000 per year