Adyen is looking for a Product Security Engineer to join our team. In this role, you will be responsible for improving the security posture of our platforms and services. Your focus will be on threat modeling, security assurance, secure implementation, and scaling our security processes.
What You'll Do
- Collaborate with engineering and product teams on improving existing and building new product features with a focus on threat modeling, assurance, and secure implementation.
- Identify security gaps and vulnerabilities in ClickHouse Cloud and OSS, triage vulnerabilities reported via bug bounty programs, responsible disclosure, and GitHub Issues.
- Improve and develop security assurance activities, including pentests, vulnerability assessments, bug bounty programs, and fuzzing.
- Drive implementation and usage of engineering security tools, such as static and dynamic code analysis, dependency checks, and code licensing compliance.
- Nurture the engineering-security relationship, identifying and implementing process and technology improvements.
- Handle information security events and incidents across ClickHouse products and services.
- Develop processes, tooling, and automation to scale security processes and mitigate risks to the business.
What We're Looking For
- Experience supporting engineering and product implementation efforts by performing threat assessments, assurance activities, and advisory.
- Strong knowledge of and experience with one or more cloud service providers (e.g., AWS, GCP, Azure), Kubernetes, and Cilium.
- Experience implementing and operating engineering security tools and processes (e.g., static/dynamic code analysis, software composition analysis, SBOM, OWASP SAMM, client and network fuzzing tools).
- Significant development and automation experience, with the ability to work with C++ code.
- A security-as-code mindset, with a focus on solving problems with automation and scale in mind.
Nice to Have
- A BS, MS, or PhD in Computer Science or a related field.
- Previous contributions to open source projects.
- Security or cloud-related certifications (e.g., AWS, GCP, Azure).
Technical Stack
- AWS, GCP, Azure, Kubernetes, Cilium, Snyk, Semgrep, GitHub CodeQL, C++
Team & Environment
You'll be part of the Security Team, which is responsible for application, cloud, and enterprise security, incident response, detection, and GRC.
Benefits & Compensation
- A flexible work environment with a globally distributed company that is remote-friendly.
- Healthcare benefits with employer contributions.
- Equity in the company via stock options.
- Flexible time off in the US and generous entitlement in other countries.
- A $500 home office setup allowance for remote employees.
- Global Gatherings, which are company-wide offsites.
Work Mode
This role operates in a local-country work mode and is based in the Netherlands.
ClickHouse provides equal employment opportunities to all employees and applicants and prohibits discrimination and harassment of any type based on protected characteristics.


