Description
Solaris is Europe's leading embedded finance platform. Solaris’ full German banking license and proprietary modular B2B tech stack empowers its partners – from SMEs to large, multinational, non-financial companies – to offer compliant, customer-centric banking services, providing seamless experiences to customers across all industries. Founded in 2016, Solaris pioneered the Banking-as-a-Service market with an unparalleled combination of tech and banking.
Solaris is headquartered in Berlin and employs 300 people in Europe. Your Role Integrate security seamlessly into the Software Development Lifecycle (SDLC) and DevSecOps pipelines by automating security gates (SAST, DAST, SCA, and container scanning). Conduct thorough threat modeling and architectural security reviews for complex applications, APIs, and microservices prior to deployment.
Perform deep-dive manual and automated secure code reviews across various codebases to identify logic flaws and subtle implementation vulnerabilities. Build and maintain "secure-by-default" internal libraries, frameworks, and developer tools to systematically eliminate entire classes of vulnerabilities. Take ownership of the application vulnerability lifecycle, including triaging, validating, and prioritizing vulnerabilities originating from internal testing, penetration tests, and external bug bounty programs.
Act as a strategic partner to product and engineering teams, providing pragmatic mitigation guidance that balances product velocity with security assurance. , addressing OWASP Top 10, LLM/AI security risks). Support incident response and detection team
Employer contacts (email/phone/telegram) are hidden from the public preview —
send your CV, and we will connect you directly.