Founded in 2016, Katalon is the category leader in AI-augmented software testing, empowering hybrid testers—those blending manual, automation, and AI skills—to deliver exceptional digital experiences. Katalon enables software teams of any size to deliver world-class customer experiences faster, easier, and more efficiently.
Since its first launch, Katalon has experienced tremendous growth, serving more than 30,000 teams across 80+ countries, many of which are in the Fortune Global 500. Katalon has been named a G2 Leader in software testing for 11 consecutive quarters and a Great Place to Work for three consecutive years.
We’re looking for a hands-on Product Security Engineer to join Katalon’s Security team. You’ll work closely with our Product Security Lead, owning the operational security layer cloud infrastructure security tooling, monitoring, and incident response and progressively taking on Application Security, DevSecOps, and AI Security as your scope matures.
This is a mid-level role. We expect real working experience and a problem-solving mindset, not just certifications or theoretical knowledge.
How This Role Grows
Your immediate ownership is cloud security and security operations—bringing our operational security to a place where it runs reliably, with strong detection coverage and clear playbooks.
As you build mastery in these areas, your scope will naturally expand into Application Security, DevSecOps, and AI Security—areas the team is actively investing in and where your contributions will have direct product impact.
The stronger you become on the operations side, the more opportunities you’ll have to move toward higher-complexity security work. There is no artificial boundary between these responsibilities; this is one continuous role that evolves with you.
What You’ll Own
Cloud & Infrastructure Security
-
Maintain and strengthen cloud security configurations across AWS, Azure, and GCP environments.
-
Drive security hardening for Kubernetes, API gateways, databases, servers, and cloud workloads.
Security Monitoring & Incident Response
-
Monitor security alerts from SIEM, EDR, infrastructure logs, and SaaS platforms.
-
Investigate and respond to suspicious activities, phishing attempts, malware, and account compromise incidents from detection through resolution.
Detection Engineering
Vulnerability Management
-
Conduct vulnerability scanning and assessment across infrastructure, cloud workloads, containers, and third-party integrations.
-
Prioritize findings based on real-world exploitability and partner with DevOps and IT teams to drive remediation.
Identity & Access Control
-
Monitor IAM permissions, SSO, MFA, and privileged access management.
-
Proactively enforce the principle of least privilege across cloud and SaaS environments.
Governance & Collaboration
-
Support audit evidence collection for ISO 27001, SOC 2, and ISO 42001.
-
Maintain clear documentation for incidents, vulnerabilities, and access reviews.
-
Communicate security risks effectively to both technical and non-technical stakeholders.
As Your Scope Expands
Application Security & DevSecOps
-
Perform secure code reviews, API security assessments, and threat modeling for new product features.
-
Integrate security tooling—including SAST, DAST, SCA, and secret scanning—into CI/CD pipelines alongside DevOps and engineering teams.
Penetration Testing
AI & LLM Security
-
Assess AI-specific security risks, including Prompt Injection, Insecure Output Handling, and Data Poisoning.
-
Help secure Katalon’s AI Agents by applying best practices and frameworks such as the OWASP Top 10 for LLMs.