Pandadoc
Pandadoc2mo ago

Application Security Engineer

(poland)Remotemid
EngineeringSecuritySecurity EngineerApplication Security EngineerCybersecurity
4 views0 saves0 applied

Quick Summary

Overview

As PandaDoc continues to scale, we’re expanding our security team and looking for an Application Security Engineer to help shape and strengthen our security foundations.

Requirements Summary

2+ years of cloud security experience implementing security controls and best practices in AWS, GCP, or Microsoft Azure 2+ years of experience with security management tools, including IPS/IDS, WAF, vulnerability scanning, and penetration testing…

Technical Tools
awsazuregcpjavapandaspythonmicroservicesoauth
  • Review, test, and monitor our applications to identify security weaknesses
  • Manage vulnerabilities from discovery through remediation, working directly with engineering teams to resolve them
  • Respond to infrastructure security alerts and perform hardening, including reviewing roles and permissions across services and APIs
  • Participate in incident response and root cause analysis
  • Analyze and monitor relevant security threats and prevention measures based on industry trends and standards
  • Partner with product, development, and infrastructure teams to embed security requirements into how they build
  • Integrate and operate automated security testing across the development lifecycle, including SAST, DAST, SCA, secrets detection, container, and supply chain security
  • Develop security automation and tooling to scale security across engineering
  • Drive threat modeling and secure-by-design practices across our services
  • Assess our overall security posture and identify risks, providing recommendations to strengthen it
  • Assist in addressing emergent threats in AI security as PandaDoc deploys AI in its product and for internal use
  • Service-oriented architecture
  • Main development stacks: Java/Spring, Python/Django, JavaScript/React
  • Docker, Kubernetes
  • Amazon Web Services: EKS, RDS, S3, ElastiCache, etc.
  • Monitoring stack: Grafana, Loki, Tempo, Mimir
  • Source control & CI/CD: GitHub / GitHub Actions
  • A combination of AWS native and 3rd party security solutions for infrastructure and application security (WAF, CNAPP, SCA/SAST, DAST, IDS/IPS, etc.)
  • 3+ years of experience with application security tools such as SAST/SCA, DAST, WAF, CI/CD security, and penetration testing
  • 2+ years of cloud security experience implementing security controls and best practices in AWS, GCP, or Microsoft Azure
  • Strong background in web application security, including common vulnerability classes (OWASP Top 10, CWE Top 25), attack vectors, and mitigations
  • Good understanding of access control and identity management principles (SAML 2.0, OAuth, OIDC, JWT, etc.)
  • Practical skills building security automation and tooling with Python, Bash, or equivalent languages
  • Experience implementing DevSecOps practices across the SDLC
  • Familiarity with containerized, Kubernetes-based environments and their security
  • Solid interpersonal, written, and verbal communication skills
  • Upper-Intermediate English level (B2+)

PandaDoc empowers more than 60,000 growing organizations to thrive by taking the work out of document workflow. PandaDoc provides an all-in-one document workflow automation platform that helps fast scaling teams accelerate the ability to create, manage, and sign digital documents including proposals, quotes, contracts, and more.  For more information, please visit https://www.pandadoc.com.

We're known for our work-life balance, kind co-workers, & creative virtual team-bonding events. And although our Pandas are located across the globe, we stay connected with the help of technology and ensure that everyone on our team feels, well, like a team.

Pandas work best when they're happy. We retain our talent by upholding our values of integrity & transparency, and selling a product that changes the lives of our customers. 

Check out our LinkedIn to learn more.

The monthly base salary for this role is 21,000 PLN to 24,750 PLN.

What We Offer

~1 min read

Our team members and their families have access to comprehensive benefits including:

Multisport Card for fitness and wellness activities (individual or family plan)
LuxMed healthcare coverage (individual or family plan)
UNUM life insurance protection (individual or family plan)
Onboarding benefit allowance that can be used for necessary work equipment and setup
6 self-care days beyond standard Polish vacation entitlements
Wellness, learning and development budgets
Employees may be able to purchase company stock or receive annual bonuses.

Requirements

~1 min read

The use of external recruiters/staffing agencies requires prior approval from our HR Team. The HR Team at PandaDoc requests that external recruiters/staffing agencies not to contact PandaDoc employees directly in an attempt to present candidates. Complying with this request will be a factor in determining future professional relationships with PandaDoc.

Location & Eligibility

Where is the job
Worldwide
Fully remote, anywhere in the world
Who can apply
Same as job location
Listed under
Worldwide

Listing Details

Posted
April 15, 2026
First seen
April 15, 2026
Last seen
June 30, 2026

Posting Health

Days active
76
Repost count
0
Trust Level
39%
Scored at
June 30, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Pandadoc
Pandadoc
greenhouse

PandaDoc is an all-in-one document automation software that streamlines the process of creating, approving, and eSigning proposals, quotes, and contracts.

Employees
750
Founded
2013
View company profile
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

PandadocApplication Security Engineer