Software Engineer II

Búsqueda Avanzada
Madrid, Spain
5 days ago
Apply on www.adzuna.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
3 years minimum
Compensation
€65,000.0 - €74,000.0
Working hours
Regular working hours
Job source

Tech stack

Clean Code Principles JavaScript (Programming Language) Artificial Intelligence User Authentication Cyber Security Cross-Origin Resource Sharing (Ajax Programming) Web Development Identity and Access Management Node.Js Open Web Application Security Role-Based Access Control Secure Coding
+7 more
Web Application Security TypeScript Software Vulnerability Management Application Enhancement Tool Codebase Kibana Vulnerability Analysis

Job description

We are looking for a security-focused Engineer to strengthen Kibana’s security posture and build robust platform security features. In this role, you’ll be responsible for hardening Kibana against evolving threats, managing security vulnerabilities, and ensuring our application meets the highest security standards for enterprise and government customers. You’ll also leverage AI to build innovative security tools that enhance our vulnerability detection, automate security workflows, and accelerate threat response. If you’re passionate about web application security and want to make a direct impact on protecting critical infrastructure while pushing the boundaries of AI-powered security, this is the role for you. What You Will Be Doing Lead security hardening efforts across Kibana’s codebase and infrastructure, including content security policy implementation and enforcement Build AI-powered tools and workflows to enhance security operations, including automated vulnerability detection, intelligent security alert triage, and predictive threat analysis Manage third-party dependency security through regular audits, vulnerability assessments, and coordinated upgrades Collaborate with security researchers and respond to vulnerability reports with urgency and thoroughness Design and implement security controls for authentication, authorization, and auditing features Work closely with Operations and Engineering teams to ensure security best practices across our hosted and on-premise offerings Contribute to threat modeling and security architecture decisions for new features Write secure, maintainable code for both client and server-side components

Requirements

At least 3 years of web development experience, with a focus on secure development practices Strong knowledge of web application security principles including OWASP Top 10, secure authentication patterns, and defense-in-depth strategies Experience with security vulnerability management, including triage, remediation, and coordinated disclosure Proficiency with JavaScript, TypeScript, and Node.js Familiarity with security scanning tools and vulnerability management platforms (e.g., Snyk, CodeQL, HackerOne) Ability to work and communicate effectively with a worldwide team in a distributed work environment Hands-on experience implementing and maintaining content security policies, CORS policies, and other browser security controls Understanding of single-sign-on technologies, role-based access control, and identity management protocols

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.adzuna.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:21 min

Deploying a primary Elasticsearch and Kibana cluster configuration

Philipp Krenn · World Congress 2022

45 sec

Working securely with Node.js path application programming interfaces

Sonya Moisset · World Congress 2023

3:34 min

Augmenting codebases with semantic architectures

Zaak Chalal Zaak Chalal · World Congress 2026 Europe

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

1:32 min

Overcoming modernization challenges in aging monolithic codebases

Igor Minar Igor Minar +1 · World Congress 2025

3:55 min

Identifying underlying Node.js runtime vulnerabilities using fuzzing tools

Sonya Moisset · World Congress 2023

Videos

See all

Related articles

See all