Product Security Engineer

Blip


Job Location:

Porto - Portugal

Monthly Salary: Not Disclosed
Posted on: 6 hours ago
Vacancies: 1 Vacancy

Job Summary

Product Security Engineer

Product Security Engineer

Blip is a leading tech company focused on software engineering solutions for sports entertainment.

We operate at scale. As part of Flutter Entertainment we play an essential role in the Groups goal of becoming the global leader in online sports betting and iGaming developing innovative products and platforms for over 14 million monthly customers worldwide.

We are serious about Tech. We are problem-solvers with big ambitions keeping a people-first mindset at the core of our work. We prioritize flexibility as we strive to deliver the best technological products and tackle the greatest industry challenges.

Recognizing that everyone brings their own strengths backgrounds and new perspectives we empower you to be yourself. That uniqueness shapes the culture of belonging we are so proud of.

The role
As a Security Engineer youll own meaningful security work across threat modeling penetration testing architecture reviews and automation. Youll bring deep expertise in one or more security domains and use it to design solutions run engagements with real consequence and guide engineering teams through building securely from the beginning. The problems you take on will sometimes be ambiguous and tangled up with competing product and platform priorities and youll be ready to make independent calls on the right approach balancing short-term risk reduction with fixes that actually stick. Youll partner closely with engineering teams and contribute to the Security Champions community making sure the lessons from each engagement land somewhere durable: a pattern a guardrail an automation or an architectural standard others can reuse.

What Youll Be Doing

- Own and deliver on quarterly team goals taking security problems from ambiguous starting points through to shipped durable outcomes.

- Run threat modeling and penetration testing engagements and turn findings into structural improvements rather than one-off fixes.

- Support risk assessments and help translate findings into clear actionable guidance that engineering teams and stakeholders can act on.

- Contribute to the operation of our HackerOne bug bounty and vulnerability disclosure program including triage remediation tracking and feedback loops.

- Deliver security advisements to engineering teams on design decisions helping them make the right security call early.

- Support and contribute to the Security Champions program helping engineers across the business grow their security instincts.

- Build and improve automation that scales the teams work by turning repeatable assessment and review activities into faster more consistent build-secure-by-default capabilities.

- Contribute to the data and tooling behind vulnerability and risk management helping the business track and prioritize risk with confidence.

- Influence priorities processes and trade-offs across the teams you partner with not just within your own.

- Other duties as required.


What Youll Bring

- Several years of hands-on security engineering experience with deep expertise in at least one security domain such as security architecture application security penetration testing detection engineering or similar.

- Track record of independently designing and delivering security solutions not just executing on someone elses plan.

- Familiarity with bug bounty or vulnerability disclosure programs and the triage and remediation workflows that support them.

- Experience contributing to automation or tooling that makes security work faster or more scalable.

- Strong working knowledge of modern cloud infrastructure (AWS GCP or Azure) CI/CD pipelines and software development practices.

- Experience working with and securing enterprise security tools including collaboration and SaaS tooling

- Proficiency in at least one modern programming language (Python Go JavaScript Java or similar).

- Familiarity with industry frameworks such as NIST ISO 27001 OWASP or MITRE ATT&CK.

- Ability to influence priorities and decisions across team boundaries and communicate security risk clearly to technical and non-technical audiences.

- Excellent written and verbal communication skills (English and Portuguese).

This is what you should have. What do we have you ask can check ouramazing perks & benefitsrighthere!

So ... are you in


Equal opportunities

At Blip we are committed to creating a diverse and inclusive workplace. We strongly encourage people from all backgroundsways of thinking and working to apply.
We are committed to including everyoneregardless of their race disability age gender identity sexual orientation and religion.
Everyone brings different perspectives and experiences; you dont have to meet all the requirements listed to apply for this role.If you need any adjustments to apply for the position and to ensure this role aligns with your needs please send an email
We will only respond to inquiries related to disabilities.


Required Experience:

IC

Product Security EngineerProduct Security EngineerBlip is a leading tech company focused on software engineering solutions for sports entertainment.We operate at scale. As part of Flutter Entertainment we play an essential role in the Groups goal of becoming the global leader in online sports bettin...

About Company

Company Logo

INTERNATIONAL TEAM. AWESOME TECHNOLOGY. SOFTWARE ENGINEERING AT ITS FINEST. Based in Porto, Blip is a software engineering company with a difference. Founded in 2009, we already have 320 Blippers. And we’re still growing. We’re in the API Billionaire’s Club alongside Twitter, Faceboo ... View more

View Profile View Profile