Application Security Engineer

Knime — Germany · Posted ~1 day ago

Skills

Application security Secure software development lifecycle OWASP Top Ten Security awareness Security training Software architecture DevSecOps Software supply chain security Vulnerability management SBOM Third-party library risk management OWASP SDLC

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

An Application Security Engineer will strengthen secure development practices across a software engineering organization. The role combines security awareness and training with hands-on engineering, including integrating security into the SDLC, managing third-party and supply-chain risks, tracking software components through SBOM technologies, and partnering with architects and DevSecOps teams.

Highlights

High-impact application security role focused on security by design, developer enablement, vulnerability reduction, and strengthening secure software practices across an engineering organization.

Description

Mission Strengthen and scale application security practices across KNIME, ensuring that products used by thousands of data professionals and Fortune 500 companies meet enterprise-grade security standards. Role Overview As Application Security Engineer, you will be the driving force behind security awareness, enablement, and engineering across KNIME's software development organization. You'll embed security by design into the SDLC, manage supply chain and vulnerability risks, and collaborate closely with engineers, architects, DevSecOps, and IT/ISMS teams to continuously raise the security bar. Responsibilities Raise awareness of software security across KNIME, especially within the software development organizationOrganize and lead internal trainings and workshops on security topics such as OWASP Top TenPartner with software architects and engineering teams to embed security best practices early in the SDLCTrack usage of third-party libraries through SBOM technologies, validate security issues, and ensure timely remediationImprove automated tooling and processes for enhancing security posture together with the DevSecOps team and engineering leadersConduct periodic internal penetration tests and coordinate external penetration tests including follow-up and issue trackingCollaborate with IT and ISMS teams on compliance and certification topics such as ISO 27001 and SoC2 Requirements Degree in Computer Science or a related field5+ years of experience as an Application Security EngineerStrong technical knowledge of supply chain security, authentication and authorization standards, common vulnerabilities, secure coding practices, and issue remediationDeep interest in software security research with up-to-date knowledge of emerging threats and best practicesSolid understanding of modern web applications and microservice architecturesDevSecOps and programming experience with ability to work closely with engineering teamsFluent in English; German is a plus What Success Looks Like A security-aware engineering culture with teams consistently applying secure coding practicesRobust supply chain and vulnerability management with timely remediation across the organizationEnterprise-grade compliance maintained across ISO 27001, SoC2, and related certificationsContinuously improving security posture supported by strong automated tooling and processesKNIME products trusted by enterprise customers as secure, reliable, and compliant What We Offer Security with impact: Shape the security posture of products used by thousands of data professionals and Fortune 500 companies worldwide. Ownership & influence: Define and elevate security standards across teams in a company where user trust and open-source principles matter. Collaboration at depth: Work closely with experienced engineers, architects, and IT specialists in a transparent, international environment. Learning: Continuous learning through hands-on challenges, peer exchange, and exposure to cutting- edge security and AI topics. Sports: Subsidized gym memberships and sport courses in select locations. Flexibility: Hybrid or remote options (depending on location) and flexible working hours to support your work-life balance. About Us KNIME is a leading AI platform that enables organisations to make sense of their data through intuitive, scalable, and collaborative data science. We empower data professionals and business users alike to build, deploy, and manage AI and data workflows that drive better decisions. Hundreds of global enterprises use the KNIME platform including Citi, Bosch and P&G. KNIME is an equal opportunity employer. We’re all about providing opportunities for different perspectives to come together, where everyone feels included no matter their background.