Veeam Software

Security Engineer III, Product AppSec

Veeam Software$151K — $251K *
US-AnywhereRemote in United States
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years in Product Security, Application Security, DevSecOps, or Vulnerability Management
  • 3+ years with application security testing tools (SAST, DAST, SCA)
  • 2+ years in vulnerability management, including triage and remediation coordination
  • Familiarity with CVEs, CVSS scoring, and software supply chain security
  • Experience with CI/CD platforms and cloud-native technologies
  • Bachelor's degree in Computer Science, Engineering, or equivalent experience

Responsibilities

  • Monitor and manage security risks related to open-source and third-party components
  • Triage and validate vulnerabilities prioritizing based on exploitability and business impact
  • Support automated patch deployment with engineering and DevOps teams
  • Expand the Security Champion program to promote secure coding
  • Integrate security controls into CI/CD pipelines and automate vulnerability scanning
  • Develop documentation and educational materials for engineering teams
  • Contribute to secure architecture discussions and improve secure SDLC processes

Benefits

  • Unlimited paid time off and 12 paid holidays including specific self-care days
  • Paid parental leave for all parents and extended leave for birthing parents
  • Comprehensive medical, dental, and vision coverage from day one
  • Mental health support and therapy sessions through an Employee Assistance Program
  • 401(k) retirement plan with company matching contributions
  • Support for fertility, adoption, and surrogacy
  • 24/7 virtual veterinary care at no cost
  • Legal services, identity protection, and supplemental health insurance
  • Tax-advantaged accounts for healthcare and commuting
  • Learning and development opportunities through various platforms
Full Job Description
#LI-JC2 #LI-REMOTE
About the Role

We're looking for a Product Security Engineer to strengthen and scale secure software development practices across cloud-native, enterprise, and AI-enabled product environments. You'll work closely with Product Security, Engineering, DevOps, and Platform teams to identify, prioritize, and remediate vulnerabilities throughout the software development lifecycle. This role is ideal for someone passionate about application security, developer enablement, and building scalable security processes that integrate naturally into engineering workflows.

Due to the fact that this position will deal with highly sensitive data and will support federal customers, we are only considering US citizens at this time. Security clearance is not required, but there is a slight chance it maybe requested in the future
What You'll Do
  • Monitor, assess, and manage security risks related to open-source software dependencies, CVEs, and third-party components
  • Triage and validate vulnerabilities across applications, containers, infrastructure, and dependencies - prioritizing by exploitability, exposure, and business impact
  • Coordinate patch management initiatives and support automated patch deployment workflows with Release Engineering and DevOps teams
  • Support and expand the Security Champion program, partnering with developers to improve secure coding awareness and adoption
  • Integrate security controls into CI/CD pipelines and automate vulnerability scanning, dependency analysis, and security reporting
  • Develop playbooks, documentation, and educational materials that promote self-service security within engineering teams
  • Contribute to threat modeling, secure architecture discussions, and continuous improvement of secure SDLC processes
Technologies You'll Work With
  • SCA and vulnerability scanning platforms: Snyk, Mend, Dependabot, GitHub Advanced Security, Veracode, Checkmarx
  • Cloud and container security: Wiz, Prisma Cloud, Docker, Azure
  • CI/CD platforms and DevOps toolchains
  • SBOM generation tools, artifact repositories, and package signing technologies
  • Scripting and automation: Python, Bash, PowerShell, YAML
What You'll Bring
  • 5+ years of experience in Product Security, Application Security, DevSecOps, or Vulnerability Management
  • 3+ years of hands-on experience with application security testing tools (SAST, DAST, SCA)
  • 2+ years in vulnerability management, including triage, SLA tracking, and remediation coordination
  • Familiarity with CVEs, CVSS scoring, SBOM concepts, and software supply chain security
  • Experience with CI/CD platforms, modern DevOps workflows, and cloud-native technologies
  • Bachelor's degree in Computer Science, Engineering, or equivalent experience
Bonus Skills
  • Experience participating in or managing Security Champion programs
  • Knowledge of OWASP Top 10 and secure coding practices for cloud-native and enterprise products
  • Familiarity with IaC, regulated environments, and compliance-driven security activities
  • Relevant certifications such as CSSLP, GWEB, CCSP, OSCP, or GPEN


What you'll get
  • Unlimited paid time off, 12 paid holidays including 4 global VeeaMe Days for self-care and 24 paid volunteer hours annually through Veeam Cares
  • Paid parental leave: 8 weeks for all parents, 16 weeks for birthing parents
  • Medical, dental, and vision coverage starting on your first day
  • Mental health support, therapy sessions, and digital wellness tools via our Employee Assistance Program
  • 401(k) retirement plan with company matching contributions
  • Fertility, adoption, and surrogacy support through Maven, plus paid volunteer time
  • AirVet: 24/7 virtual veterinary care at no cost
  • Legal services, identity protection, and supplemental health insurance options
  • Tax-advantaged spending accounts for healthcare, dependent care, and commuting
  • Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O'Reilly), mentoring, workshops, and learning events like our annual Global Day of Learning

Compensation Transparency

Veeam is committed to pay transparency and equitable compensation. For this role, the compensation range below reflects the expected total target compensation (TTC), inclusive of base pay and a competitive performance-based bonus. For roles with a commission plan, the compensation range represents On Target Earnings (OTE), which includes base salary plus variable commission. When determining compensation, Veeam takes into consideration factors such as experience, education, skills, and geographic zone. Offers are typically made below the midpoint of the range.

In addition to compensation, Veeam provides a comprehensive benefits package, including health coverage, retirement plans, and unlimited time off.

U.S. Geographic Zones & Compensation Ranges (TTC / OTE)

Zone 1: San Francisco Bay Area, New York City Boroughs

$208,500-$347,500 USD

Zone 2: Washington, California (excluding San Francisco Bay Area)

$191,100-$318,500 USD

Zone 3: Texas, Illinois, North Carolina, Colorado, Massachusetts, Pennsylvania, Virginia, Oregon, Nevada, Hawaii, New York (excluding NYC boroughs); Sales roles located in Georgia, Ohio, and Arizona

$173,800-$289,700 USD

Zone 4: All other US locations

$151,200-$251,900 USD

About Veeam Software

Veeam Software is a privately held information technology company that develops backup, disaster recovery and intelligent data management software for virtual, physical and multi-cloud infrastructures. The company's headquarters are in Baar, Switzerland, and it has offices in more than 30 countries. Veeam has more than 375,000 customers worldwide, including 82% of the Fortune 500 and 69% of the Global 2,000 enterprises. The company was founded in 2006 by Ratmir Timashev and Andrei Baronov.
Learn more about Veeam Software
Size
5,000 employees
Industry
Founded
2006

Similar Jobs

More Jobs at Veeam Software

More Information Technology Jobs

Find similar Security Engineer III, Product AppSec jobs: