About the job
About Infiterra
Join us in revolutionizing the subscription economy by streamlining subscription service delivery.
Infiterra empowers IT distributors, Managed Service Providers (MSPs), and telecommunications companies to excel in the subscription economy. Our cutting-edge subscription commerce platform automates and integrates subscription workflows, from quote to billing, enhancing operational efficiency, ensuring billing precision, and facilitating scalable growth.
As a recognized global leader in subscription commerce, Infiterra merges innovation with performance excellence and trusted expertise to assist our partners in transforming and expanding their businesses.
About the Role
We are seeking a Senior Application Security Engineer to incorporate security into our software design, development, and operational processes, making it an integral part of our engineering practices rather than an afterthought. You will collaborate closely with product and engineering teams to identify risks early, enhance secure-by-design methodologies, and consistently elevate our application security standards. This is a hands-on AppSec role: involved in the code, architecture, and deeply embedded in the Software Development Life Cycle (SDLC). While Infiterra's headquarters are located in Thessaloniki, Greece, this position is fully remote.
Your Responsibilities
Integrate Security into the SDLC
Embed security activities throughout all phases of the SDLC: requirements, design, implementation, testing, deployment, and maintenance.
Collaborate with engineering teams to ensure consistent application of secure development practices.
Assess security controls for new features, services, and architectural modifications.
Threat Modeling & Secure Design
Conduct threat modeling sessions (e.g., STRIDE) for both new and existing systems.
Recognize threats, attack vectors, misconfigurations, and insecure design patterns.
Work with engineers to ensure compliance with secure-by-design principles.
Secure Code & Architecture Reviews
Conduct security-focused code reviews to detect vulnerabilities and high-risk implementations.
Offer clear, actionable advice on secure coding patterns and best practices.
