
Security Engineer, Product Security at Grammarly. . Location: Berlin; Hybrid. Grammarly offers a dynamic hybrid working model for this role. This flexible approach gives team members the best of both worlds: plenty of focus time along with in-person collaboration that helps foster trust, innovation, and a strong team culture.. . About Grammarly. . Grammarly. is the world’s leading AI writing assistance company trusted by over 40 million people and 50,000 organizations. From instantly creating a first draft to perfecting every message, Grammarly helps people at 96% of the. . Fortune 500 and teams at companies like Atlassian, Databricks, and Zoom get their point across—and get results—with best-in-class security practices that keep data private and protected. Founded in 2009, Grammarly is No. 14 on the . Forbes. Cloud 100, one of . TIME. ’s 100 Most Influential Companies, one of . Fast Company. ’s Most Innovative Companies in AI, and one of . Inc.. ’s Best Workplaces.. . The Opportunity. . To achieve our ambitious goals, we’re looking for a Security Engineer to join our Product Security Team. Our commitment to user trust is unwavering, and this new team member will play a crucial role in maintaining the trust of millions of users who rely on our products. You will work alongside our product engineering teams, building security into the product from the design phase and throughout the product development lifecycle. . . Grammarly’s engineers and researchers have the freedom to innovate and uncover breakthroughs—and, in turn, influence our product roadmap. The complexity of our technical challenges is growing rapidly as we scale our interfaces, algorithms, and infrastructure. You can hear more from our team on our. technical blog. .. . As a Security Engineer in Product Security, you will:. . . Collaborate with Product Engineering teams throughout the SDLC, creating Threat Models, conducting Design Reviews, Secure Code Reviews, and manual testing to identify vulnerabilities. . . Develop and implement end-to-end security solutions to mitigate security risks in our suite of products.. . Help drive improvements across our Product Security tooling, automation, and bug bounty program.. . Experiment with and develop AI-based tools to enable the Security team to move even faster.. . Be the voice of our customers, actively engaging stakeholders across engineering teams, communicating security risks and trade-offs while keeping customer data secure.. . . Qualifications. . . Has 4+ years of relevant experience in securing applications at scale.. . Experience working at each touch-point in a secure SDLC: threat modeling, design reviews, secure code reviews, and web app pentesting.. . Familiarity with the standard Product Security tool suite: SAST, DAST, and SCA.. . Software engineering or programming experience in at least one language, such as Java, Python, JavaScript, or Go.. . Experience managing vulnerability disclosure programs or conducting security research on bug bounty platforms such as HackerOne or Bugcrowd.. . The ability to think like an adversary to identify risk, and then build like an engineer to mitigate those risks.. . Excellent problem-solving skills, with the ability to work independently and handle multiple tasks.. . Embodies our EAGER values—is ethical, adaptable, gritty, empathetic, and remarkable.. . Is inspired by our MOVE principles: move fast and learn faster; obsess about creating customer value; value impact over activity; and embrace healthy disagreement rooted in trust.. . . Support for you, professionally and personally. . . Professional growth: . We believe that autonomy and trust are key to empowering our team members to do their best, most innovative work in a way that aligns with their interests, talents, and well-being. We also support professional development and advancement with training, coaching, and regular feedback.. . A connected team:. Grammarly builds a product that helps people connect, and we apply this mindset to our own team. Our remote-first hybrid model enables a highly collaborative culture supported by our EAGER (ethical, adaptable, gritty, empathetic, and remarkable) values. We work to foster belonging among team members in a variety of ways. This includes our employee resource groups, Grammarly Circles, which promote connection among those with shared identities including BIPOC and . LGBTQIA+. team members, women, and parents. We also celebrate our colleagues and accomplishments with global, local, and team-specific programs. . . Comprehensive benefits for candidates based in Germany: . Grammarly offers all team members competitive pay along with a benefits package encompassing life care (including mental health care and risk benefits) and ample and defined time off. We also offer support to set up a home office, wellness and pet care stipends, learning and development opportunities, and more.. . . We encourage you to apply. . At Grammarly, we value our differences, and we encourage all to apply. Grammarly is an equal-opportunity company. We do not discriminate on the basis of race or ethnic origin, religion or belief, gender, disability, sexual identity, or age.. . For more details about the personal data Grammarly collects during the recruitment process, for what purposes, and how you can address your rights, please see the Grammarly Data Privacy Notice for Candidates . here. .. #LI-Hybrid. .