Security Engineer In Saas

Enfint
Barcelona, Spain
1 day ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Software System Penetration Testing Business Software Software as a Service Cyber Security Databases Continuous Integration Data Security Python (Programming Language) Microsoft Office Network Protocols
+10 more
Ruby on Rails Ruby Secure Coding Strategies of Testing Web Applications Scripting Large Language Models Software Security Build Tools Programming Languages

Job description

????????Factorial builds AI Business Management Software for companies of all sizes.Its platform centralizes workflows across HR, Finance, Talent, Operations, and IT, helping teams reduce manual processes.Factorial is a SaaS company headquartered in Barcelona.??????Perform proactive penetration testing across applications, APIs, infrastructure, and AI-powered featuresReproduce and validate vulnerability reports submitted by third parties, including the bug bounty programCollaborate with development teams to remediate security findings and improve secure coding practicesImprove vulnerability validation, triage, and remediation processesHunt for recurring or legacy vulnerability patterns through root cause analysis, previous incidents, and security findingsBuild and improve security automations, agents, skills, and CI/CD controlsHelp secure the use of AI across product and internal workflows, including LLMs, agents, data access, tools, permissions, and abuse scenariosContribute to the development of security tools, automations, and infrastructureStay up to date with security research, threats, attack techniques, and emerging AI security risks??????????3+ Years of professional experience in Application Security, Offensive Security, or Penetration TestingMandatory experience in Web Application Penetration TestingDegree in Engineering or Computer ScienceStrong knowledge of web applications, databases, network protocols, operating systems, cybersecurity fundamentals, CVSS, testing methodologies, and toolingProficiency in scripting or programming languages used in security testing and automation, such as Python or BashAbility to work across different security problems and reason criticallyAbility to build tools, automations, guardrails, and scalable practical security solutionsCuriosity and willingness to learn AI security topics, including LLM testing, prompt injection, agentic workflows, data exposure, tool permissions, RAG security, and secure AI adoptionFluent EnglishNice to have: BSCP or eWPTX certifications, experience with Ruby / Ruby on Rails applications???????Base salary of ****€ plus 7-10% variable performance pay paid quarterlyESOP planAlan private health insuranceWellhub gym, pool, and outdoor class benefitsCobee expense savingsLanguage classesBreakfast at the office and organic fruitFood discounts with NoraPet-friendly workplaceOn-site work several days a week (80%) with remote work supported when it makes sense (20%)Office-first, flexible approach#J-**-Ljbffr

Requirements

??????Perform proactive penetration testing across applications, APIs, infrastructure, and AI-powered featuresReproduce and validate vulnerability reports submitted by third parties, including the bug bounty programCollaborate with development teams to remediate security findings and improve secure coding practicesImprove vulnerability validation, triage, and remediation processesHunt for recurring or legacy vulnerability patterns through root cause analysis, previous incidents, and security findingsBuild and improve security automations, agents, skills, and CI/CD controlsHelp secure the use of AI across product and internal workflows, including LLMs, agents, data access, tools, permissions, and abuse scenariosContribute to the development of security tools, automations, and infrastructureStay up to date with security research, threats, attack techniques, and emerging AI security risks??????????3+ Years of professional experience in Application Security, Offensive Security, or Penetration TestingMandatory experience in Web Application Penetration TestingDegree in Engineering or Computer ScienceStrong knowledge of web applications, databases, network protocols, operating systems, cybersecurity fundamentals, CVSS, testing methodologies, and toolingProficiency in scripting or programming languages used in security testing and automation, such as Python or BashAbility to work across different security problems and reason criticallyAbility to build tools, automations, guardrails, and scalable practical security solutionsCuriosity and willingness to learn AI security topics, including LLM testing, prompt injection, agentic workflows, data exposure, tool permissions, RAG security, and secure AI adoptionFluent EnglishNice to have: BSCP or eWPTX certifications, experience with Ruby / Ruby on Rails applications???????Base salary of *******€ plus 7-10% variable performance pay paid quarterlyESOP planAlan private health insuranceWellhub gym, pool, and outdoor class

Benefits & conditions

benefitsCobee expense savingsLanguage classesBreakfast at the office and organic fruitFood discounts with NoraPet-friendly workplaceOn-site work several days a week (80%) with remote work supported when it makes sense (20%)Office-first, flexible approach #J-*****-Ljbffr

About the company

Barcelona, España

????????Factorial builds AI Business Management Software for companies of all sizes. Its platform centralizes workflows across HR, Finance, Talent, Operations, and IT, helping teams reduce manual processes.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

50 sec

Why developer happiness matters in web frameworks

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

3:04 min

Database evolution and the funding behind vector databases

Erik Bamberg · LIVE

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:30 min

Falling in love with Ruby and creating Basecamp

David Heinemeier Hansson David Heinemeier Hansson +1 · Coffee With Developers

Videos

See all

Related articles

See all