Cyber Security Engineer
We are seeking a motivated and skilled Cyber Security Engineer to join Product Security team. This role will primarily focus on managing and enhancing Web Application Firewalls (WAFs) and strengthening Product Security. The ideal candidate will bring hands-on experience with security technologies, a keen understanding of application security challenges, and the ability to collaborate effectively across product and engineering teams.
About You – Experience, Education, Skills, and Accomplishments
- 5+ years of experience in cyber security, with emphasis on WAF, application and cloud security.
- 4+ years of experience working with WAF solutions (e.g., AWS WAF, Azure WAF, F5, Cloudflare WAF).
- 3+ years of experience working with cloud platforms (AWS, Azure, GCP) and related security practices.
- 2+ years of experience working with secure SDLC, OWASP Top 10 and application security vulnerabilities.
It Would Be Great If You Also Had
- Familiarity with security frameworks and standards such as NIST, OWASP, CSA.
- Hands-on experience with vulnerability scanning, and incident response.
- Strong understanding of networking concepts, application protocols (HTTP/HTTPS), and cloud security.
- Relevant certifications such as CISSP, CCSP, CySA+ are a plus.
- Experience with automation of security controls.
- Exposure to security tools such as DAST, RBVM, SAST.
- Familiar with cloud architecture, container security and DevSecOps practices.
- Excellent problem-solving, communication, and collaboration skills.
What Will You Be Doing In This Role?
- Design, deploy, configure, and maintain Web Application Firewalls (WAF) to protect enterprise web applications from cyber threats.
- Conduct security assessments of products to identify vulnerabilities.
- Collaborate with development and product teams to integrate security best practices into the product lifecycle.
- Monitor, analyze, and respond to security alerts and incidents related to WAFs and application security.
- Implement security controls and policies aligned with industry standards and regulatory requirements.
- Participate in vulnerability management, penetration testing, and remediation efforts.
- Develop and enforce security controls security documentation, aligned with industry standards and compliance requirements.
- Research emerging security threats and recommend technology solutions related to enhance security posture.
Product You Will Be Developing
The Cybersecurity Engineer will work within Clarivate's global security team, focusing on Security Engineering & Operations, Product Security, Security Architecture, and Governance, Risk & Compliance. You will contribute to incident response, risk management, compliance, and security tool integration while ensuring best practices are followed across our cloud and on-prem environments.
About The Team
Our Cybersecurity team is spread across the world, with members in North America, Europe, and Asia. The Cybersecurity Engineer role will be part of the Product Security team. This position will report to the Cybersecurity Manager based in North America and will collaborate closely with other security teams, product teams, and internal stakeholders to support our security initiatives and maintain a strong security posture.
Benefits
Serbia:
- Holidays: 25 days paid leave per annum
- Private Health Insurance
- Paid Lunch
- Yearly Bonus
- Yearly Merit Plan
- My Learning Platform
- Fit Pass
- Life Insurance
- Accident Insurance
- Company bicycles for rent free of charge
*Different benefits offered by the Barcelona office
Hours Of Work
This is a permanent full-time position, with core engagement hours within CET time zone. This is a hybrid position; you will be expected to work from our Belgrade office 3 days every other week.
*Different working hours offered by the Barcelona office
Please note that only shortlisted candidates will be contacted.
At Clarivate, we are committed to providing equal employment opportunities for all qualified persons with respect to hiring, compensation, promotion, training, and other terms, conditions, and privileges of employment. We comply with applicable laws and regulations governing non-discrimination in all locations.