Product Security Engineer (d/f/m)

Berlin - Engineering

Our story:


Every year millions of people are either filing their taxes in fear or giving up on their tax refund altogether. We're working on fixing that. Our intuitive app enables anyone, regardless of education or background, to file their taxes with newfound confidence.


Spread across Berlin and Madrid, Team Taxfix is a compassionate group of solution-finders. We speak our minds openly, and with 350+ professionals from 45+ different nationalities, we're rich in ideas and voices. In four years, we've raised over 100 million euros in funding and helped people reclaim more than 900 million euros.

Your challenge: 

You will be part of a talented multidisciplinary product team working with the latest technologies. You will own the security part of our product, and be responsible for underlying security infrastructure and culture.

 

Your responsibilities:

  • Help engineering teams build secure products & services from the ground up.
  • Perform application security design reviews, threat modelling and code reviews.
  • Conduct security testing on our internal and external applications and services.
  • Educate & train engineering teams to create a security conscious engineering organization.
  • Coordinate with group of product engineers (Security Champions) on the execution of security initiatives on the product.
  • Build new tools and processes with security industry best practices.
  • Support and manage end-to-end security lifecycle of our applications.

 

Your profile:

  • Deep technical knowledge in web application security & mobile security.
  • Strong understanding of security architecture review, threat modeling, code review & penetration testing.
  • Aptness to find flaws in the software before it reaches production.
  • Solid foundation of core information security principles and concepts including cryptography.
  • Experience in software engineering and comfortable building automation tools.
  • Solid understanding of cloud native technologies.
  • Good understanding of cloud environments (ideally GCP).
  • A genuine interest and passion for Security who loves taking initiatives.
  • Previous experience working in a DevSecOps environment in a product company.

 

Why Taxfix? 

  • A chance to do meaningful, people-centric work with an international team of passionate professionals.
  • Holistic wellbeing with free mental health coaching sessions, yoga, and a discounted membership to Urban Sports Club.
  • A monthly allowance to spend on home support services, including childcare, housekeeping, pet sitting, tutoring, and elderly care.
  • Dedicated relocation and visa support for those that need it.
  • Choose to work from home or our modern office when needed—plus healthy drinks and snacks when you do come in.
  • 27 annual vacation days and flexible working hours.
  • Full trust to take ownership of your work in a flat hierarchy where feedback is encouraged and expected.
  • A generous learning budget to support your personal and professional development and guidance from our internal L&D experts.
  • Work from abroad for up to one month every year. Just align with your team, and then enjoy your trip.
  • Plenty of opportunities to socialise as a team. In addition to internal tech meetups, our international team hosts regular get-togethers—virtually and in person when possible.
  • Free tax declaration filing, of course, through the Taxfix app—and internal support for all personal tax-related questions.
  • Have a four-legged friend in your life? We’re happy to have dogs join us in the office.


Excited? So are we. Learn more about
Team Taxfix on our blog and get a glimpse of our culture below:

 

At Taxfix, we believe that incredible things happen when you have a wealth of perspectives and experiences. We're proudly committed to equal employment and development opportunities no matter your gender, race, religion, age, sexual orientation, colour, disability, or place of origin. To help mitigate any potential unconscious biases, we ask that you refrain from including your picture, age, or marital status on your CV. Let your experiences speak for themselves.

 

Not sure if you meet all the requirements for this role? Please apply anyways. You might bring something special to the team that we hadn't previously considered.