Software Engineer (Security) (m/f/x)

Berlin, Germany

CLARK

Mit CLARK managst du deine Versicherungen online & sparst bis zu 50 % pro Jahr. Starte jetzt und erhalte endlich Überblick über deine Versicherungen.

View all jobs at CLARK

Apply now Apply later

CLARK is one of the world's leading insurtechs. As the first unicorn company from Frankfurt, we're dedicated to building the insurance expert in our customer’s pockets to keep for a lifetime. Leveraging cutting-edge technology and intuitive mobile apps, we empower private customers to effortlessly manage, compare, and optimize their insurance situation online. Our digital platform seamlessly integrates personalized consultation from expert advisors, ensuring a holistic customer experience at their fingertips.

CLARK serves over 2 million customers across five European markets, finding the best possible insurance solutions. Our culture fosters simplicity, reliability and care for our customers and their needs, uniting employees under a shared purpose: to protect their world and give them peace of mind.

We are supported by investors such as Allianz X, Portage, Tencent, White Star Capital, and Yabeo. Our team of over 800 professionals, representing 40 nationalities, operates across Germany, Switzerland, the UK, France, and the Netherlands. We pioneer to reinvent insurance day by day.

Join our diverse team and contribute to our vision to give every single customer peace of mind with their insurance situation. Take the next step in your career with us at CLARK!

As our Software Engineer (Security), you will focus on ensuring the security and integrity of web applications. This role combines deep technical expertise in PHP and Vue.js development with a strong understanding of cybersecurity practices to identify vulnerabilities, implement safeguards, and develop secure code.

Your main tasks will include:

  • Security Implementation:
    • Developing secure backend systems using PHP with a focus on mitigating risks such as SQL injection, cross-site scripting (XSS), and other vulnerabilities
    • Ensuring frontend security using Vue.js by implementing measures like input validation, secure routing, and content security policies
    • Designing and integrating secure RESTful APIs, ensuring encryption and authentication best practices.
  • Threat Assessment and Mitigation:
    • Conducting vulnerability assessments and penetration tests on PHP and Vue.js applications
    • Implementing tools and processes to automate threat detection, renovating processes and monitoring to identify outdated externals and build concepts how to remove these dependencies
  • Development and Maintenance:
    • Staying updated with the latest security patches for PHP, Vue.js, and associated libraries/frameworks
  • Collaboration:
    • Working closely with security and development teams to integrate security into the software development lifecycle (SDLC)
    • Educating other team members on secure coding practices and emerging security threats

You are right with us if:

  • 3+ years of experience in software development with a focus on security
  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field
  • Strong expertise in PHP modern, object-oriented development, including frameworks such as Laravel, Symfony, or Zend
  • Proficiency in Vue.js and its ecosystem (Vuex, Vue Router, etc.)
  • In-depth understanding of common web application vulnerabilities (OWASP Top 10) and secure coding practices
  • Experience with penetration testing tools (e.g., Burp Suite, OWASP ZAP) and static/dynamic code analysis
  • Knowledge of the most current IT risks e.g. understanding of security protocols, authentication, and authorization
  • Previous experience building security countermeasures against attacks on technologies at the web, backend, and database level
  • Attention to detail and a proactive approach to identifying potential security risks
  • Ability to work effectively in a fast-paced, team-oriented environment
  • Sensitivity to the security challenges faced by participants in a large, international project

Why CLARK?

  • Dive into Diversity: Immerse yourself in a vibrant multicultural environment, collaborating with colleagues from over 40 diverse backgrounds
  • Work Your Way: Enjoy the best of both worlds with our hybrid working models and flexible hours, empowering you to achieve your best work-life balance.
  • Time for Impact: Recharge and make a difference with 30 days of holiday plus 2 impact days to pursue your passions and give back to the community.
  • Exclusive Perks: Unlock exclusive discounts tailored just for you, making every day a little sweeter.
  • Fuel for Success: Stay energized and refreshed with complimentary drinks, fresh fruit, and snacks to keep you fueled for greatness.
  • Cultural Connections: Immerse yourself in our cultural initiatives and team events, fostering connections and creating unforgettable memories along the way.

At CLARK, diversity isn't just embraced—it's celebrated!

We're crafting the ultimate work environment where passion and talent can thrive, regardless of background, ethnicity, identity, religion, or age. Everyone deserves an equal shot at success, and we're dedicated to leveling the playing field.

Excited? Your application holds the key to joining our vibrant team, where every voice is valued and every opportunity is within reach. We can't wait to discover what you bring to the table!

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: APIs Burp Suite Code analysis Computer Science Encryption Monitoring OWASP Pentesting PHP Scripting SDLC SQL SQL injection Threat detection Vulnerabilities XSS

Perks/benefits: Career development Flex hours Team events

Region: Europe
Country: Germany

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.