About the job
About Infiterra
Join our mission to revolutionize the subscription economy by streamlining subscription service delivery.
Infiterra empowers IT distributors, Managed Service Providers (MSPs), and telecommunications companies to thrive in the subscription economy. Our cutting-edge subscription commerce platform automates and integrates subscription workflows—from quoting to billing—enhancing operational efficiency, ensuring billing accuracy, and facilitating scalable growth.
As a globally recognized leader in subscription commerce, Infiterra fuses innovation, outstanding performance, and reliable expertise to assist partners in their transformation and growth journeys.
About the Role
We are seeking a dynamic Senior Application Security Engineer to incorporate security into our software design, development, and operational processes. This role is not an afterthought; it’s an integral part of our daily engineering practice. You will collaborate closely with our product and engineering teams to identify risks early, enhance secure-by-design practices, and elevate our application security standards. This is a hands-on AppSec role: engaging with code, architecture, and deeply integrated into the Software Development Life Cycle (SDLC). While Infiterra’s headquarters are in Thessaloniki, Greece, this position is completely remote.
What You’ll Do
Integrate Security into the SDLC
Incorporate security activities throughout all phases of the SDLC: requirements, design, implementation, testing, deployment, and maintenance.
Work closely with engineering teams to ensure consistent application of secure development practices.
Evaluate security controls for new features, services, and architectural modifications.
Threat Modeling & Secure Design
Facilitate threat modeling sessions (e.g., STRIDE) for both new and existing systems.
Identify threats, attack vectors, misconfigurations, and insecure design patterns.
Collaborate with engineers to ensure adherence to secure-by-design principles.
Secure Code & Architecture Reviews
Conduct security-focused code reviews to detect vulnerabilities and risky implementations.
Provide clear, actionable guidance on secure coding patterns and best practices.
- ...

