Product & Application Security Engineer
Product & Application Security Engineer
San Francisco, CAExplore this location
Take a look at the map to discover what’s nearby.
Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running. Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands.
About the Role
We are looking for a Senior Security Engineer who thinks like a product architect and codes like a software engineer. At Veeam Kasten, we release market-leading Kubernetes data protection software, which makes security critical to safeguarding our customers' environments and data. This role ensures security is embedded throughout the lifecycle, not just as a gate at the end. You will partner with engineering teams during the whiteboard phase to design secure features and dive into the codebase to find and fix vulnerabilities.
Your Impact
- Design & Architecture: You will be the primary security voice in design reviews. You will perform threat modeling on new features, identifying architectural risks before a single line of code is written
- Code-Level Security: You will actively review Pull Requests and conduct deep-dive code audits. You won't just run scanners; you will manually analyze logic in our code to find complex flaws that automated tools miss
- Vulnerability Remediation: unlike traditional security roles that only "report" bugs, you will help fix them. You will triage findings from our tooling and write production-ready patches to resolve vulnerabilities
- Secure Software Supply Chain: You will oversee the integrity of our build dependencies, ensuring that the open-source libraries we import (and the tools we use to build them) are secure
What You’ll Do
- Triage and fix security alerts from tools like Grype, Cycode, and Wiz
- Implement code fixes for security tech-debt across our stack
- Conduct Threat Modeling sessions for upcoming epics and features in our two-week sprint cycles
- Serve as a Subject Matter Expert on Kubernetes security primitives (RBAC, unprivileged containers, network policies) for the engineering team, owning metrics and definition of success, share best practices through workshops, reviews, and documentation
- Lead audits, incidents, and compliance reviews representing the engineering team with the wider security community in Veeam
Technologies You’ll Work With
Core: Go, Vue.js, Docker, Kubernetes
Security Tooling: Grype, Syft, Checkmarx, Cycode, Wiz
Environment: Public Cloud (Azure/AWS/GCP), On-Prem K8s distributions (OpenShift, Tanzu)
What You’ll Bring
- Developer DNA: You are a competent developer in Go (Golang) and have exposure to modern frontend frameworks like Vue.js.
- Kubernetes Native: YouĘĽve worked extensively with Kubernetes and understand itĘĽs security primitives.
- Shift-Left Mindset: You have experience integrating security into the early stages of the Software Development Life Cycle.
- Tooling Familiarity: Experience with modern AppSec and Supply Chain tools (specifically Grype, Cycode, and Wiz) is a strong plus.
- Pragmatism: You can balance theoretical security perfection with the practical reality of shipping software on a continuously frequent basis.
#LI-KC1
What you'll get
- Unlimited paid time off, 12 paid holidays, plus 4 extra global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
- Paid parental leave: 8 weeks for all parents, 16 weeks for birthing parents
- Medical, dental, and vision coverage starting on your first day
- Mental health support, therapy sessions, and digital wellness tools via our Employee Assistance Program
- 401(k) retirement plan with company matching contributions
- Fertility, adoption, and surrogacy support through Maven, plus paid volunteer time
- AirVet: 24/7 virtual veterinary care at no cost
- Legal services, identity protection, and supplemental health insurance options
- Tax-advantaged spending accounts for healthcare, dependent care, and commuting
- Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops, and learning events like our annual Global Day of Learning
Compensation Transparency
Veeam is committed to pay transparency and equitable compensation. For this role, the compensation range below reflects the expected total target compensation (TTC), inclusive of base pay and a competitive performance-based bonus. For roles with a commission plan, the compensation range represents On Target Earnings (OTE), which includes base salary plus variable commission. When determining compensation, Veeam takes into consideration factors such as experience, education, skills, and geographic zone. Offers are typically made below the midpoint of the range.
In addition to compensation, Veeam provides a comprehensive benefits package, including health coverage, retirement plans, and unlimited time off.
Please note that any personal data collected from you during the recruitment process will be processed in accordance with our Recruiting Privacy Notice.
The Privacy Notice sets out the basis on which the personal data collected from you, or that you provide to us, will be processed by us in connection with our recruitment processes.
By applying for this position, you consent to the processing of your personal data in accordance with our Recruiting Privacy Notice.
By submitting your application, you acknowledge that the information provided in your job application and any supporting documents is complete and accurate to the best of your knowledge. Any misrepresentation, omission, or falsification of information may result in disqualification from consideration for employment or, if discovered after employment begins, termination of employment.
Jobs for you 
Find your fit. Discover roles where bold ideas, real impact, and career-defining growth come together.
Related content
-
Early Careers Ready to start your career? Learn more about our Early Careers opportunities. -
Corporate Functions Learn more about working in Corporate Functions team at Veeam. -
Join Us in Romania Join our Bucharest hub and shape the future with the #1 global leader in data resilience. -
Sales Learn more about working in Sales team at Veeam. -
Growth Explore what Growth at Veeam could look like for you -
Join Us in Poland We’re hiring sales and tech talent across Poland to go fearlessly forward with the #1 global leader in data resilience. -
Join Us in Pune Join our Pune hub and shape the future with the #1 global leader in data resilience. -
Inclusion We believe in hiring the best people from all walks of life. Learn more about Inclusion at Veeam. -
Culture Our company culture is important to us. Learn more about how we work at Veeam. -
Locations Explore our locations to find opportunities near you. -
Benefits Learn more about our company benefits at Veeam. -
Join Us in Czechia Be part of the 700+ Veeamers in Czechia driving global innovation in data resilience. -
Technology Learn more about working in Technology team at Veeam. -
Join Us in Germany Help enterprises across Germany protect what matters most - their data.
Sign up for job alerts
Don't see what you’re looking for? Sign up and we'll notify you when roles become available.
Sign Up