About the job
About Infiterra
Join us on our mission to revolutionize the subscription economy by streamlining the delivery of subscription services.
Infiterra empowers IT distributors, Managed Service Providers (MSPs), and telecommunications companies to thrive in the subscription economy through our innovative subscription commerce platform. This platform automates and integrates subscription workflows, from quote to billing, enhancing operational efficiency, accuracy in billing, and facilitating scalable growth.
As a recognized global leader in subscription commerce, Infiterra merges cutting-edge innovation, outstanding performance, and reliable expertise to assist our partners in transforming and expanding their businesses.
About the Role
We are in search of a Senior Application Security Engineer who will integrate security principles into our software design, development, and operational processes. This role is not just an afterthought; security will be an integral part of our daily engineering practices. You will actively collaborate with product and engineering teams to identify risks early on, enhance secure-by-design methodologies, and elevate our application security standards continuously. This is a hands-on AppSec role: closely aligned with the code, architecture, and fully embedded in the Software Development Life Cycle (SDLC). While Infiterra’s headquarters are based in Thessaloniki, Greece, this position offers full remote flexibility.
Your Responsibilities
Integrate Security into the SDLC
- Incorporate security activities throughout all SDLC phases: requirements gathering, design, implementation, testing, deployment, and maintenance.
- Collaborate closely with engineering teams to ensure consistent application of secure development practices.
- Evaluate security controls for new features, services, and architectural modifications.
Threat Modeling & Secure Design
- Conduct threat modeling sessions (e.g., STRIDE) for both new and existing systems.
- Identify potential threats, attack vectors, misconfigurations, and insecure design patterns.
- Work alongside engineers to ensure compliance with secure-by-design principles.
Secure Code & Architecture Reviews
- Execute security-focused code reviews to uncover vulnerabilities and risky implementations.
- Provide clear, actionable recommendations on secure coding standards and best practices.
