
Senior Application Security Engineer
Hover or tap a row for full statistics (EUR / month on this chart).
Salary analysis
Compared with the selected benchmark ("All roles in Remote - Europe"), this listing's salary midpoint is about 95% lower. The offer sits below the benchmark range (€3,060–€14,526). The listed pay band (€347–€573) is tighter than the benchmark, which suggests lower salary variability. This benchmark is based on 33 comparable listings.
| Market | Lower bound (25th percentile) | Median | Upper bound (75th percentile) |
|---|---|---|---|
| All roles in Remote - Europe | €3,060/per month | €5,524/per month | €14,526/per month |
Are you looking to have an impact on the daily life of millions of entrepreneurs in France (and tomorrow in Europe)? Are you looking for a work environment that values trust, proactivity, and autonomy? Then Pennylane is the right place for you ! Team and environment: As we keep on growing, we're seeking an Application Security Engineer to join Louis's team of 5. You'll handle all technical security matters, support ISO 27001 compliance, and advise employees—especially developers—on security best practices. Your tasks include security by design, vulnerability management, and compliance & awareness. The recruitment process includes chats and technical interviews, with a 15-25 day timeline. Perks include vacations, equity, home-office budget, coworking allowance, Gymlib wellness access, Apple equipment, and remote-work options within Europe. You will work with a diverse, remote-friendly team across Europe and in France under French regulations if based there. We emphasize diversity and equal opportunity.
Job Details
Responsibilities
- Security by design: ensure security of Pennylane’s application and infrastructure
- Engage with Product Team to integrate security from design to delivery
- Ensure security of the main Web app written in Ruby on Rails and ReactJS
- Conducting code reviews from a secure development point of view (~80 releases per day)
- Detect vulnerabilities and propose patches
- Raise CI/CD security level
- Secure AWS infrastructure and Kubernetes (AWS EKS) with DevOps
Requirements
- Able to perform offensive security assessments on an infrastructure and an application
- Experience in exploiting and fixing a wide range of web vulnerabilities
- Programming experience in Ruby, Python, or JavaScript
- Experience in cloud infrastructure security
- Ability to explain technical concepts to non-technical stakeholders
- Fluent in French and/or English
Skills & Technologies
Benefits & Perks
Recruitment Process
- 1General chat with recruiter
- 2Technical interview
- 3Independent take-home technical challenge
- 4Culture fit meeting

Related Opportunities
Discover more opportunities that match your interests and skills