Back to search
EngineeringOn-site

Application Security Engineer

Lovable · On-site

Apply
Last seen by MeritLog September 9, 2026Source: AshbySource version: ashby-public-job-posting-v1

MeritLog read this listing from Lovable's Ashby job board and last checked it on September 9, 2026.

Source: the employer's Ashby job board. Open the original listing for current details.

Job details

Work model
On-site
Salary
Not listed by source
Location
Stockholm

Hiring context

How this role compares at Lovable

Lovable has 84 live roles in MeritLog’s catalog across 11 job families, and 33 of them are in engineering. 0 of those listings publish a pay range, a disclosure rate of 0%.

Lovable concentrates this hiring in:

Counted across the job boards MeritLog tracks, at the time this page was served. Pay comparisons use only listings that publish a complete range in the same currency and period.

What the role asks for

What you'd do

  • Conduct secure code reviews, threat modeling, and architecture assessments to identify and mitigate vulnerabilities early.
  • Work closely with engineering teams to design and implement security features, provide actionable feedback, and ensure security is embedded in product development.
  • Lead security training, workshops, and 1:1 mentoring to upskill developers and foster a security-first culture.
  • Integrate SAST/DAST and supply chain security tools into our CI/CD pipelines for continuous, automated protection.
  • Detect, triage, and respond to application vulnerabilities and incidents, driving remediation and continuous improvement.
  • Monitor and address emerging risks in AI infrastructure, LLM pipelines, and third-party dependencies.
  • Secure the last piece of software.
  • Frontend: React and Typescript
  • Backend: Golang and Rust
  • Cloud: Cloudflare, Google Cloud, AWS, Terraform
  • DevOps & Tooling: CI/CD pipelines, observability, infrastructure-as-code
  • Please submit your application in English-our working language at Lovable.
  • We’re committed to fair and equal treatment for all candidates. If you’re interested, apply via our careers portal

What they're asking for

  • 5+ years of experience in application security, securing cloud-native environments at product-focused tech companies, high-growth startups, or leading AI labs.Experience
  • Strong programming and engineering skills.Skill
  • Deep expertise in application security: secure code review, threat modeling, SAST/DAST, supply chain security, product patching, and vulnerability management.Skill
  • Strong background in securing engineering infrastructure: CI/CD pipelines, secrets management, service-to-service authentication, containerized workloads, and public cloud platforms.Skill
  • Hands-on experience collaborating with developers to design and implement security features and best practices.Skill
  • Passion for educating and mentoring engineers on secure coding, vulnerability remediation, and emerging threats.Skill
  • Systems mindset: comfortable reading and contributing to codebases, building security tooling, and integrating security into engineering workflows.Skill
  • Bonus: Experience building internal security tools or contributing to open-source security projects.SkillPreferred

Parsed by MeritLog from the employer’s own posting. The full description follows below.

Job description

TL;DR We are seeking an Application Security Engineer to champion security across our entire development lifecycle. You’ll play a pivotal role in reviewing code, designing secure features, and mentoring engineers, ensuring security is at the heart of everything we build. If you’re passionate about application security, thrive on close collaboration with developers, and want to do the work of your life, this is your opportunity WHY LOVABLE? Lovable is the software creation platform that gives people the power to act on the problems closest to them. For decades, turning an idea into software required so much capital, technical fluency, and time that many ideas never came to life. Lovable is the counterargument: a platform for all people with ideas, ambition, and problems worth solving. From solopreneurs to small business owners to teams at companies like Adidas and Zendesk, people have built over 60 million projects on Lovable since its launch in November 2024. And we’re just getting started. We’re building a generational company from Stockholm, with growing teams in London, Boston, New York, and San Francisco. Our team is small, talent-dense, and moving quickly, with a culture rooted in extreme ownership, high velocity, and low-ego collaboration. We look for people who care deeply, ship fast, and are eager to make a dent in the world. Lovable is one of TIME’s 100 Most Influential Companies and has been recognized on the Forbes AI 50 and CNBC Disruptor 50, reflecting our momentum as one of Europe’s fastest-growing AI companies and one of the most ambitious places to build in this next era of software. WHAT YOU’LL BRING - 5+ years of experience in application security, securing cloud-native environments at product-focused tech companies, high-growth startups, or leading AI labs. - Strong programming and engineering skills. - Deep expertise in application security: secure code review, threat modeling, SAST/DAST, supply chain security, product patching, and vulnerability management. - Strong background in securing engineering infrastructure: CI/CD pipelines, secrets management, service-to-service authentication, containerized workloads, and public cloud platforms. - Hands-on experience collaborating with developers to design and implement security features and best practices. - Passion for educating and mentoring engineers on secure coding, vulnerability remediation, and emerging threats. - Systems mindset: comfortable reading and contributing to codebases, building security tooling, and integrating security into engineering workflows. - Bonus: Experience building internal security tools or contributing to open-source security projects. WHAT YOU’LL DO - Conduct secure code reviews, threat modeling, and architecture assessments to identify and mitigate vulnerabilities early. - Work closely with engineering teams to design and implement security features, provide actionable feedback, and ensure security is embedded in product development. - Lead security training, workshops, and 1:1 mentoring to upskill developers and foster a security-first culture. - Integrate SAST/DAST and supply chain security tools into our CI/CD pipelines for continuous, automated protection. - Detect, triage, and respond to application vulnerabilities and incidents, driving remediation and continuous improvement. - Monitor and address emerging risks in AI infrastructure, LLM pipelines, and third-party dependencies. - Secure the last piece of software. OUR TECH STACK - Frontend: React and Typescript - Backend: Golang and Rust - Cloud: Cloudflare, Google Cloud, AWS, Terraform - DevOps & Tooling: CI/CD pipelines, observability, infrastructure-as-code And always exploring what’s next. HOW TO APPLY - Please submit your application in English-our working language at Lovable. - We’re committed to fair and equal treatment for all candidates. If you’re interested, apply via our careers portal

Privacy choices

Analytics and advertising stay off unless you allow them. Private data stays out.

Read the privacy notice