Security Engineer In Saas
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+10 more
Job description
????????Factorial builds AI Business Management Software for companies of all sizes.Its platform centralizes workflows across HR, Finance, Talent, Operations, and IT, helping teams reduce manual processes.Factorial is a SaaS company headquartered in Barcelona.??????Perform proactive penetration testing across applications, APIs, infrastructure, and AI-powered featuresReproduce and validate vulnerability reports submitted by third parties, including the bug bounty programCollaborate with development teams to remediate security findings and improve secure coding practicesImprove vulnerability validation, triage, and remediation processesHunt for recurring or legacy vulnerability patterns through root cause analysis, previous incidents, and security findingsBuild and improve security automations, agents, skills, and CI/CD controlsHelp secure the use of AI across product and internal workflows, including LLMs, agents, data access, tools, permissions, and abuse scenariosContribute to the development of security tools, automations, and infrastructureStay up to date with security research, threats, attack techniques, and emerging AI security risks??????????3+ Years of professional experience in Application Security, Offensive Security, or Penetration TestingMandatory experience in Web Application Penetration TestingDegree in Engineering or Computer ScienceStrong knowledge of web applications, databases, network protocols, operating systems, cybersecurity fundamentals, CVSS, testing methodologies, and toolingProficiency in scripting or programming languages used in security testing and automation, such as Python or BashAbility to work across different security problems and reason criticallyAbility to build tools, automations, guardrails, and scalable practical security solutionsCuriosity and willingness to learn AI security topics, including LLM testing, prompt injection, agentic workflows, data exposure, tool permissions, RAG security, and secure AI adoptionFluent EnglishNice to have: BSCP or eWPTX certifications, experience with Ruby / Ruby on Rails applications???????Base salary of ****€ plus 7-10% variable performance pay paid quarterlyESOP planAlan private health insuranceWellhub gym, pool, and outdoor class benefitsCobee expense savingsLanguage classesBreakfast at the office and organic fruitFood discounts with NoraPet-friendly workplaceOn-site work several days a week (80%) with remote work supported when it makes sense (20%)Office-first, flexible approach#J-**-Ljbffr
Requirements
??????Perform proactive penetration testing across applications, APIs, infrastructure, and AI-powered featuresReproduce and validate vulnerability reports submitted by third parties, including the bug bounty programCollaborate with development teams to remediate security findings and improve secure coding practicesImprove vulnerability validation, triage, and remediation processesHunt for recurring or legacy vulnerability patterns through root cause analysis, previous incidents, and security findingsBuild and improve security automations, agents, skills, and CI/CD controlsHelp secure the use of AI across product and internal workflows, including LLMs, agents, data access, tools, permissions, and abuse scenariosContribute to the development of security tools, automations, and infrastructureStay up to date with security research, threats, attack techniques, and emerging AI security risks??????????3+ Years of professional experience in Application Security, Offensive Security, or Penetration TestingMandatory experience in Web Application Penetration TestingDegree in Engineering or Computer ScienceStrong knowledge of web applications, databases, network protocols, operating systems, cybersecurity fundamentals, CVSS, testing methodologies, and toolingProficiency in scripting or programming languages used in security testing and automation, such as Python or BashAbility to work across different security problems and reason criticallyAbility to build tools, automations, guardrails, and scalable practical security solutionsCuriosity and willingness to learn AI security topics, including LLM testing, prompt injection, agentic workflows, data exposure, tool permissions, RAG security, and secure AI adoptionFluent EnglishNice to have: BSCP or eWPTX certifications, experience with Ruby / Ruby on Rails applications???????Base salary of *******€ plus 7-10% variable performance pay paid quarterlyESOP planAlan private health insuranceWellhub gym, pool, and outdoor class
Benefits & conditions
benefitsCobee expense savingsLanguage classesBreakfast at the office and organic fruitFood discounts with NoraPet-friendly workplaceOn-site work several days a week (80%) with remote work supported when it makes sense (20%)Office-first, flexible approach #J-*****-Ljbffr
About the company
Barcelona, España
????????Factorial builds AI Business Management Software for companies of all sizes. Its platform centralizes workflows across HR, Finance, Talent, Operations, and IT, helping teams reduce manual processes.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The 12 Best Jobs for Software Engineers
9 Ways to Make Money Hacking
Fully Remote Software Engineer Jobs
Is Software Engineering Over-Saturated?