Senior Product Security Engineer

R&D - Research and Development Paris la Defense, France Suresnes, France Nantes, France


Description

What makes us Qlik? 

  

A Gartner® Magic Quadrant™ Leader for 13 years in a row, Qlik transforms complex data landscapes into actionable insights, driving strategic business outcomes. Serving over 40,000 global customers, our portfolio leverages pervasive data quality and advanced AI/ML capabilities that lead to better decisions, faster.  

  

We excel in integration and governance solutions that work with diverse data sources, and our real-time analytics uncover hidden patterns, empowering teams to address complex challenges and seize new opportunities. 

  

The Senior Product Security Engineer Role 

  

Join our Security team and take charge of delivering the status of features and products. Independently plan, execute, and thoroughly document Penetration Tests adhering to industry best practices.  

  

Your role involves promoting and inspiring software security best practices, actively assisting stakeholders in developing features with security at the forefront, and creating comprehensive threat models for proposed features. 

  

What makes this role interesting? 

  

Autonomy and Impact: Work independently to plan and execute penetration tests, showcasing your expertise in identifying vulnerabilities and providing effective solutions. 

  

Championing Security Best Practices: Inspire and promote software security best practices and guidelines, contributing to a culture of security awareness and excellence. 

  

Collaborative Security Measures: Collaborate with stakeholders, assisting in the design, development, and testing of features with a strong focus on software security. 

  

Proactive Threat Modelling: Produce threat models against proposed features, offering valuable insights and suggesting defensive countermeasures. 

  

Here’s how you’ll be making an impact: 

  

Vulnerability Resolution: Work with third parties to replicate reported security vulnerabilities, collaborating with R&D teams to develop and implement fixes. 

  

Automated Vulnerability Assessment: Verify results from automated vulnerability assessment tools, ensuring accurate identification of vulnerabilities and minimizing false positives. 

  

Manual Penetration Testing: Perform manual penetration tests using a combination of manual methods and automated tools to ensure a thorough security evaluation. 

  

Developer Training: Coach and train developers on best security practices, creating and delivering engaging training content when necessary. 

  

We’re looking for a teammate with: 

  

  • Strong experience with the OWASP testing guide, showcasing your proficiency in understanding, and implementing industry-standard security practices.
  • Familiarity with multiple web frameworks and technologies, including JavaScript, XML, SOAP, and JSON.
  • Proven experience in creating detailed penetration test reports tailored for both company executives and developers, including prioritization and mitigation advice.

  

The location for this role is: 

  

France 

  

Join us in enhancing security practices and driving impactful measures. If you're passionate about securing software and enjoy autonomy in executing penetration tests, we would for you to apply. 

  

  

More about Qlik and who we are: 

  

Find out more about life at Qlik on social: Instagram, LinkedIn, YouTube, and X/Twitter, and to see all other opportunities to join us and our values, check out our Careers Page. 

  

What else do we offer? 

  

  • Genuine career progression pathways and mentoring programs
  • Culture of innovation, technology, collaboration, and openness
  • Flexible, diverse, and international work environment

  

Giving back is a huge part of our culture. Alongside an extra “change the world” day plus another for personal development, we also highly encourage participation in our Corporate Responsibility Employee Programs 

  

  

If you need assistance applying for a role due to a disability, please submit your request via [email protected]. Any information you provide will be treated according to Qlik’s Recruitment Privacy Notice. Qlik may only respond to emails related to accommodation requests 

  

Qlik is not accepting unsolicited assistance from search firms for this employment opportunity. Please, no phone calls or emails. All resumes submitted by search firms to any employee at Qlik via-email, the Internet or in any form and/or method without a valid written search agreement in place for this position will be deemed the sole property of Qlik. No fee will be paid in the event the candidate is hired by Qlik as a result of the referral or through other means.