AppSec - DevSecOps Engineer

Sorry, this job was removed at 02:16 p.m. (CST) on Friday, Jan 09, 2026
Be an Early Applicant
2 Locations
Remote or Hybrid
eCommerce
The Role
About the Team
At Trendyol Tech, our mission is to create a positive impact in our ecosystem by enabling commerce through technology.
We solve complex problems with data, creativity, and agility — always driven by real outcomes. With a culture built on learning, collaboration, and ownership, we grow together while building what’s next.

About the Role
As an Application Security Engineer, you'll be a vital part of our team, responsible for building security directly into our software development lifecycle. This role involves more than just finding vulnerabilities; you'll be a key partner to both our Development and DevOps teams, helping to implement robust security controls from code creation to deployment. You'll leverage your expertise in modern security tools, automation, and best practices to ensure our applications are secure and resilient.

Responsibilities

  • Collaborate closely with Development teams to integrate security controls throughout the Software Development Life Cycle (SDLC) and Software Supply Chain.
  • Embed secure coding and threat modeling into the development process by integrating and operating security tools throughout CI/CD pipelines (SAST, DAST, SCA, IaC Scanning, IAST, Container Scanning, etc.).
  • Improve and maintain CI/CD security posture, including secure dependency management practices.
  • Contribute to securing container ecosystems, including:
  • Secure container image creation and vulnerability remediation
  • Image signing and verification
  • Policy management
  • Secrets management, and Git security
  • Develop tools and automation scripts to support repeatable application security tasks.
  • Discover and maintain an inventory of web application assets and perform periodic security scanning.

Expected Qualifications

  • Agile-minded team player with strong collaboration skills.
  • Strong eagerness for self-improvement; open-minded, proactive, and future-oriented.
  • Knowledge of industry standards and frameworks, including:
  • OWASP Top 10
  • OWASP ASVS
  • OWASP Top 10 CI/CD
  • OWASP Top 10 Kubernetes
  • Hands-on experience with Secure SDLC practices, including:
  • Secure coding education and enablement
  • CI/CD security tool integration (SAST, SCA, IaC, IAST, ASO, Container Scanning, etc.)
  • Threat modeling methodologies
  • Solid understanding of Software Supply Chain Security, including:
  • Dependency management
  • CI/CD posture security
  • Technical knowledge of containerization, orchestration platforms, and cloud security concepts, such as:
  • Building vulnerability-free container images
  • Image signing and verification
  • Policy management
  • Software development experience focused on building maintainable and scalable applications, using languages such as Go or Python.
  • Developing Application Security services that serve the entire Trendyol developer ecosystem.
  • Engineering scalable, modern, and production-ready applications, moving beyond basic automation and simple scripts.
  • Using modern development workflows to effectively collaborate and "speak the same language" with software engineers.
  • Ability to assess vulnerability risks and provide effective remediation recommendations.

What We Offer
- Hybrid working model with flexibility: a schedule that helps you find the right balance between flexibility and team bonding, including work-from-abroad opportunities and a summer working model.
- Customisable FlexBenefits budget: Adjust your daily meal allowance, choose your health insurance package (and extend it to your spouse or children), and pick from additional benefits like fuel support or Trendyol shopping credits.
- Well-being support: Access to location-based in-house doctors, as well as psychologist and dietitian support, and HPV vaccination provision.
- Personalised training allowance and learning opportunities: Use your annual budget for any training or conference of your choice, explore our Learning Management System (LMS) anytime, and join in-person learning sessions offered throughout the year.
- Responsibility from day one: Take full ownership from the start in a culture where every voice is heard and valued.
- A diverse, international team: Collaborate with global peers across our offices in Berlin, Amsterdam, Dubai, and beyond, in a startup-spirited and collaborative environment.
- Opportunities to grow with the best: Tackle meaningful challenges, develop through hands-on experience, and grow with the support of expert guidance and global mentoring.
- Meaningful connections beyond tasks: Be part of team rituals, events, and social activities that help us stay connected and inspired.

Take the Next Step
If this role excites you, apply today, we look forward to taking the next step with you.
Want to get to know the team better first? Explore our Career Website, LinkedIn, or YouTube to learn more about #LifeatTrendyol and how we work.

Similar Jobs

GitLab Logo GitLab

Senior Director, Professional Services

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
28 Locations
2500 Employees

Coinbase Logo Coinbase

Technical Account Manager

Artificial Intelligence • Blockchain • Fintech • Financial Services • Cryptocurrency • NFT • Web3
Easy Apply
Remote
28 Locations
4000 Employees
88K-98K Annually

GitLab Logo GitLab

Staff Engineer

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
31 Locations
2500 Employees

Capco Logo Capco

Consultant

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
10 Locations
6000 Employees
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
10,653 Employees
Year Founded: 2010

What We Do

We were founded in 2010 with a dynamic and agile start-up spirit. Since then, we have grown into a decacorn, backed by Alibaba, General Atlantic, Softbank, Princeville Capital, and several sovereign wealth funds. We believe that technology is the driver; e-commerce is the outcome. Thanks to our dedicated team, we are one of the top five e-commerce companies in EMEA and one of the fastest-growing e-commerce companies in the world! We deliver more than 1.5 million packages every day across 27 countries. We offer our 30 million customers a flawless shopping experience. Dreaming big is in our DNA: We're gearing up to be the leading global e-commerce platform. As a dynamic and passionate company, we are constantly growing with Trendyol Tech, one of the top R&D centres; Trendyol Express, the fastest growing delivery network; Dolap, the largest second-hand goods platform; and Trendyol Go, our instant food and grocery delivery service. And we’re not done yet! Now, we are on a journey to expand the positive impact we create to international markets. We opened our first international office in Berlin in May 2022 and Amsterdam followed in October 2022 and may others are on the way.

Similar Companies Hiring

ClickMint Thumbnail
Marketing Tech • Generative AI • eCommerce • AdTech
Malibu, CA
9 Employees
PRIMA Thumbnail
Travel • Software • Marketing Tech • Hospitality • eCommerce
US
15 Employees
Scotch Thumbnail
Software • Retail • Payments • Fintech • eCommerce • Artificial Intelligence • Analytics
US
25 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account