ClickHouse is an open-source, column-oriented OLAP database management system.
Product Security Engineer
Location
Germany
Posted
126 days ago
Salary
0
Seniority
Senior
Job Description
Product Security Engineer
ClickHouse
• Collaborate with engineering and product on improving existing and building new product features with focus on threat modeling, assurance and secure implementation, some examples of recent work include implementation of secure key management, passwordless authentication, m2m authentication, sandboxing and compute/network/storage isolation • Identify security gaps and vulnerabilities in ClickHouse Cloud and OSS, triage a wide range of vulnerabilities reported via our bug bounty program, responsible disclosure, GitHub Issues covering web, API and server - client assets including low level memory issues like heap or buffer overflows • Improve and develop security assurance activities - pentests, vulnerability assessments, bug bounty programs, fuzzing • Drive implementation and usage of engineering security tools - static, dynamic code analysis, dependency checks, code licensing compliance (working knowledge of Snyk, Semgrep, GitHub CodeQL) • Nurture the engineering - security relationship, identify and implement process and technology improvements • Handle information security events and incidents across ClickHouse products and services • Develop processes, tooling and automation to scale security processes and mitigate risks to the business.
Job Requirements
- Experience supporting engineering and product implementation efforts by performing threat assessments, assurance activities, advisory as well as, in some cases, implementation work across distributed systems covering web, API, client/server assets
- Strong knowledge of and experience with one or more cloud service providers (e.g. AWS, GCP, Azure), Kubernetes, Cilium
- Experience implementing and operating engineering security tools and processes (e.g. static / dynamic code analysis, software composition analysis, SBOM, OWASP SAMM, client and network fuzzing tools)
- Significant development and automation experience, ability to work with C++ code
- Security as code mindset, with focus on solving problems with automation and scale in mind.
Benefits
- Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries.
- Healthcare - Employer contributions towards your healthcare.
- Equity in the company - Every new team member who joins our company receives stock options.
- Time off - Flexible time off in the US, generous entitlement in other countries.
- A $500 Home office setup if you’re a remote employee.
- Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Online Adjunct Faculty – Cybersecurity
SNHU CareersAt SNHU, we do life-changing work — and not just for our students. Find out how your life can change, too.
• Engage students in an asynchronous and inclusive learning environment by providing guidance and resources in a pre-developed online course. • Prioritize Student Engagement – Work with students by responding within set timeframes and reaching out proactively to students needing additional support. • Recognize student needs holistically and connect them with resources. • Encourage participation, collaboration, and strong faculty-student relationships to enhance learning and build skills. • Share Expertise and Resources – Stay current in your field of expertise, share your experience, and recommend relevant supplementary materials to enhance student understanding of course content. • Find accessible ways to explain complex topics. • Offer Feedback & Assessment – Evaluate student work and provide individualized, constructive feedback within set timeframes to promote growth and mastery of course outcomes. • Facilitate Discussions – Encourage student interaction through active participation in online discussions while fostering an inclusive, engaging, and respectful environment that promotes open dialogue and diverse perspectives.
Security Engineer
PermitFlowConstruction permit application and management software. Faster and easier permitting for builders.
• Architect, design, and implement secure, compliant, scalable, and cost-efficient infrastructure solutions to protect a rapidly growing product. • Lead the execution and maintenance of our SOC2 compliance program and other security-related certifications. • Design, implement, and audit Role-Based Access Controls (RBAC), Identity and Access Management (IAM), and secrets management systems. • Design and implement security best practices for backend, frontend services, APIs, and data pipelines. • Own security features end-to-end, from architecture and implementation to testing and production deployment. • Develop and maintain security automation, Infrastructure as Code, and secure CI/CD pipelines. • Implement and manage security monitoring, threat detection, and vulnerability management across our cloud infrastructure. • Establish and enforce security best practices for authentication, authorization, logging, and alerting. • Lead and participate in incident response, troubleshooting complex security issues and driving postmortem learning and improvements. • Collaborate across engineering teams to embed security into the software development lifecycle and balance compliance, velocity, and cost.
Senior Security Program Manager
KeyrockDigital asset market makers building scalable, self-adaptive technologies to support efficient markets.
• Own a portfolio of security programs (planning, resourcing, milestones, dependencies, risk/issue management, and outcomes). • Create and maintain multi-quarter roadmaps aligned to Keyrock’s business and operating model across venues and services (CEX/DEX and liquidity services). • Establish governance and operating cadence: steering meetings, status reporting, program reviews, and executive updates. • Support the CISO in delivering firmwide initiatives. • Partner with Security and Engineering teams to drive key initiatives such as: access governance, secrets management, vulnerability remediation, security logging/monitoring improvements, endpoint/security baseline, and secure SDLC enablement. • Help mature control coverage and evidence for internal/external assurance needs (as applicable in a financial-services context). • Partner with the Director of GRC to support GRC and audit initiatives. • Partner with Security Operations to improve incident preparedness through playbooks, tabletop exercises, lessons learned, and operational runbooks—ensuring security response stays effective in a high-availability trading environment. • Act as the “glue” across technical and business stakeholders—clarifying ownership, unblocking delivery, and keeping programs moving with crisp communication. • Build lightweight, scalable processes that improve security consistency without slowing teams.
Role Description The Information Processing Clerk plays a vital role in ensuring the accurate handling, organization, and maintenance of clinical, administrative, and imaging-related information within Jazz Imaging. This position is responsible for processing patient records, updating electronic systems with critical data, supporting administrative workflows, and maintaining high standards of data integrity and confidentiality. The role contributes directly to operational efficiency and quality of service delivery across the organization. - Accurately enter, update, and maintain patient information in electronic records and imaging systems (e.g., patient demographics, referral details, procedure data). - Prepare, organize, and process documentation related to imaging procedures, patient authorizations, and medical histories. - Ensure all records are complete, consistent, and compliant with established standards. - Retrieve, file, and organize physical and digital documents for clinical and administrative use. - Assist with scanning, indexing, and archiving documents to support efficient information retrieval. - Collaborate with technologists, office staff, and administrators to address documentation discrepancies and ensure timely resolution. - Review records for accuracy, completeness, and compliance with company policies and regulatory requirements (e.g., HIPAA). - Identify and correct data entry errors and inconsistencies. - Support internal audits and quality improvement initiatives related to information management. - Communicate with patients, staff, and external partners to verify information and resolve data issues. - Provide support to front-desk and scheduling staff when necessary to maintain continuity of operations. - Assist with special projects involving data consolidation, reporting, or information systems enhancements. Qualifications - High school diploma or equivalent; associate's degree in health information, business administration, or related field preferred. - Previous experience in data entry, records management, or administrative support is an asset. - Strong attention to detail and a commitment to data accuracy. - Proficiency in using computer systems, office software (e.g., Microsoft Office), and electronic records platforms. - Excellent organizational and time-management skills, with the ability to prioritize tasks. - Good written and verbal communication skills. - Ability to handle confidential information with discretion and professionalism.



