Veeamsoftware
OpenSecurity Engineer III, Product AppSec
- Location
- Remote, United States
- Posted
- Jul 31, 2026
- Last seen
- Aug 20, 2026
About the role
Veeam is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale. As the market leader in both data resilience and data security posture management, Veeam is built for the convergence of identity, data, security, and AI risk. Headquartered in Seattle with offices in more than 30 countries, Veeam protects over 550,000 customers worldwide, who trust Veeam to keep their businesses running. Join us as we go fearlessly forward together, growing, learning, and making a real impact for some of the world’s biggest brands.
#LI-JC2 #LI-REMOTE
About the Role
We're looking for a Product Security Engineer to strengthen and scale secure software development practices across cloud-native, enterprise, and AI-enabled product environments. You'll work closely with Product Security, Engineering, DevOps, and Platform teams to identify , prioritize, and remediate vulnerabilities throughout the software development lifecycle. This role is ideal for someone passionate about application security, developer enablement, and building scalable security processes that integrate naturally into engineering workflows.
Due to the fact that this position will deal with highly sensitive data and will support federal customers, we are only considering US citizens at this time. Security clearance is not required , but there is a slight chance it maybe requested in the future
What You’ll Do
• Monitor, assess, and manage security risks related to open-source software dependencies, CVEs, and third-party components • Triage and validate vulnerabilities across applications, containers, infrastructure, and dependencies — prioritizing by exploitability, exposure, and business impact • Coordinate patch management initiatives and support automated patch deployment workflows with Release Engineering and DevOps teams • Support and expand the Security Champion program, partnering with developers to improve secure coding awareness and adoption • Integrate security controls into CI/CD pipelines and automate vulnerability scanning, dependency analysis, and security reporting •
