For companies
  • Hire developers
  • Hire designers
  • Hire marketers
  • Hire product managers
  • Hire project managers
  • Hire assistants
  • How Arc works
  • How much can you save?
  • Case studies
  • Pricing
    • Remote dev salary explorer
    • Freelance developer rate explorer
    • Job description templates
    • Interview questions
    • Remote work FAQs
    • Team bonding playbooks
    • Employer blog
For talent
  • Overview
  • Remote jobs
  • Remote companies
    • Resume builder and guide
    • Talent career blog
Evolveum
Evolveum

Application Security Engineer

Location

Remote restrictions apply
See all remote locations

Salary Estimate

N/AIconOpenNewWindows

Seniority

N/A

Tech stacks

Security software
System security
Testing
+18

Permanent role
2 days ago
Apply now

Are you an experienced AppSec Engineer with a hacker’s mindset and a developer’s heart? We’re hiring a fully remote Application Security Engineer at Evolveum to secure the world's leading open-source Identity Governance and Administration (IGA) platform!

Details:

  • Position: Application Security Engineer
  • Allocation: Full-time, Part-time (80%+)
  • Location: Fully Remote (EMEA time zones, CZ/SK preferred)
  • Salary range: from 3000 EUR/month (final salary depends on the candidate's experience)

What you will do:

  • Integrate and maintain security testing tools (SAST/DAST, SCA, IaC) directly into our CI/CD pipelines;
  • Conduct vulnerability scanning, perform internal penetration tests on applications/APIs, and prioritize risks;
  • Analyze incoming security reports and vulnerability disclosures from our customers and the open-source community;
  • Perform security-focused code reviews and work side-by-side with our Java/Python developers to implement secure fixes;
  • Partner with our Security Architect and CPO on threat modeling and risk assessments;
  • Elevate our team's security posture by delivering developer training based on bug bounty findings, red team exercises, and real-world exploits;
  • Support incident response by analyzing threats, proposing solutions, and preparing public vulnerability disclosures.

Skills and qualifications:

Must-haves:

  • Proven experience in application security, penetration testing, or red teaming;
  • Strong understanding of OWASP Top 10, common vulnerabilities (SQLi, XSS, CSRF, RCE) and relevant NIST frameworks;
  • Solid software development background (especially Java);
  • Good communication skills – ability to explain security issues to both technical and non-technical colleagues;

Nice-to-haves (Bonus points):

  • Experience managing Bug Bounty programs (e.g., HackerOne) or vulnerability disclosures;
  • A background in product development or the Identity/Access Management (IAM/IGA) space.

Why Evolveum?

We are a globally recognized, EU-based organization with a dedicated, passionate team. Even though we are an open-source vendor, our paid services and global partner network provide us with incredibly stable revenue. This means you get the best of both worlds: the freedom, community, and transparency of open-source, combined with the financial stability and resources of a top-tier tech firm.

Ready to secure the future of open-source identity?

Click the Easy Apply button!

About Evolveum

🔗Website
Visit company profileIconOpenNewWindows

Unlock all Arc benefits!

  • Browse remote jobs in one place
  • Land interviews more quickly
  • Get hands-on recruiter support
PRODUCTS
Arc

The remote career platform for talent

Codementor

Find a mentor to help you in real time

LINKS
About usPricingArc Careers - Hiring Now!Remote Junior JobsRemote jobsCareer Success StoriesTalent Career BlogArc Newsletter
JOBS BY EXPERTISE
Remote Front End Developer JobsRemote Back End Developer JobsRemote Full Stack Developer JobsRemote Mobile Developer JobsRemote Data Scientist JobsRemote Game Developer JobsRemote Data Engineer JobsRemote Programming JobsRemote Design JobsRemote Marketing JobsRemote Product Manager JobsRemote Project Manager JobsRemote Administrative Support Jobs
JOBS BY TECH STACKS
Remote AWS Developer JobsRemote Java Developer JobsRemote Javascript Developer JobsRemote Python Developer JobsRemote React Developer JobsRemote Shopify Developer JobsRemote SQL Developer JobsRemote Unity Developer JobsRemote Wordpress Developer JobsRemote Web Development JobsRemote Motion Graphic JobsRemote SEO JobsRemote AI Jobs
© Copyright 2026 Arc
Cookie PolicyPrivacy PolicyTerms of Service