Security Engineer (AppSec / GRC / AI Security)
David Kennedy Recruitment · Remote — China, Croatia, Cyprus +27
Remote
Sign in and upload your CV to see how well you match this job.
Sign inJob overview
- Location
- Remote — China, Croatia, Cyprus +27
- Workplace
- Remote
- Employment type
- Contract / freelance
- Experience level
- Mid level
- Date posted
- Oct 11, 2026
- Last checked at the source
- Oct 11, 2026
- Job source
- via Himalayas
Requirements
•
2–3+ years of hands-on security engineering experience, with flexibility for exceptional scale-up experience
•
Strong application security experience, including code reviews and vulnerability remediation
•
Proven experience conducting or coordinating security audits and penetration tests
•
Comfortable coding and working directly with Git/GitHub
•
Practical scripting or automation skills, ideally Python or Bash
•
Previous experience within an AI company or a scale-up with 50+ employees
•
Sound understanding of security governance, risk assessment and prioritisation
•
Ability to independently identify, investigate and resolve security issues, and to take end-to-end ownership in a fast-paced environment
•
Benefits
•
Skills
- Python
- R
- Bash
- LLMs
- Git
- Cybersecurity
- Auditing
- Operations
- Communication
- Leadership
Visa and relocation
The posting doesn't mention visa sponsorship. Check the original posting or ask the company.
The posting doesn't mention relocation.
Job description
David Kennedy Recruitment is working with a rapidly growing technology company with over 50 million users worldwide that is seeking to onboard a Security Engineer to join their R&D team.
As the company's sole dedicated Security Engineer, the successful candidate will take end-to-end ownership of security operations, covering application security, vulnerability management, governance and risk, and emerging AI security challenges. The company's products include adult/NSFW content, so candidates must be fully comfortable working with this material.
Position: Security Engineer (AppSec / GRC / AI Security)
Location: Europe/ASIA, Remote
Employment type: B2B engagement preferred
DUTIES AND RESPONSIBILITIES:
•
Application security: review code, find and fix vulnerabilities, work with developers in Git/GitHub, and coordinate external pen tests and audits.
•
Governance, risk and compliance: build and maintain the security risk register, assess exposure across systems, support audit follow-up, and prioritise fixes by risk and business impact.
•
Monitoring and awareness: watch alerts and threats, run awareness programmes and phishing simulations, and provide occasional evening and weekend cover.
•
IT security and access: handle secure onboarding and offboarding, device security (MDM) and access permissions, and tighten internal controls.
•
AI security: track risks to generative AI platforms (prompt injection, jailbreaks, filter bypasses) and vulnerabilities in third-party AI providers.
REQUIREMENTS:
•
2–3+ years of hands-on security engineering experience, with flexibility for exceptional scale-up experience
•
Strong application security experience, including code reviews and vulnerability remediation
•
Proven experience conducting or coordinating security audits and penetration tests
•
Comfortable coding and working directly with Git/GitHub
•
Practical scripting or automation skills, ideally Python or Bash
•
Previous experience within an AI company or a scale-up with 50+ employees
•
Sound understanding of security governance, risk assessment and prioritisation
•
Ability to independently identify, investigate and resolve security issues, and to take end-to-end ownership in a fast-paced environment
•
Excellent English communication skills
•
Based in Europe, with approximately 80% overlap with CET working hours
•
Comfortable with occasional evening/weekend security monitoring
•
Fully comfortable working with adult/NSFW content as part of daily responsibilities
BENEFITS:
•
Fully remote working from Europe
•
Opportunity to own security for a fast-growing AI platform with over 50 million users
•
Direct collaboration with engineering leadership
•
Hands-on, non-advisory role with real responsibility for security outcomes
•
And many more!!!
Originally posted on Himalayas
Security-Engineer, Application-Security-Engineer, GRC-Specialist, AI-Security-Engineer, Cybersecurity-Engineer, AI-Application-Security-Engineer, Software-Security-Engineer, AppSec-Engineer, Security-Software-Engineer, Product-Security-Engineer
Apply on the original site ↗Job source: via Himalayas
GetGlobalJob is not the employer or a recruiting agency. You apply on the original publisher's site: always check the posting before sharing your details, and never pay for a job.
Check your fit for this job
Create your free account and upload your CV to see how well you match this job and which skills you're missing.