Haystack
← Back to Jobs
Full time
Technology
RF

Freelance API Security Engineer (ZZP)

Randstad FreelanceAmstelveen, Noord-Holland🇳🇱NetherlandsPosted 8 Sept 2026

Why This Role Stands Out

This hybrid role offers you the chance to significantly enhance digital resilience by securing critical APIs within a respected financial institution, allowing you to leverage your expertise in API security and cloud architecture. You'll thrive here if you possess a strong understanding of cybersecurity principles, API frameworks like OWASP, and authentication mechanisms, and enjoy translating complex requirements into actionable policies and automation. Apply now to contribute to a secure digital future and develop your skills in a dynamic environment.

Quick Overview

Seniority
Mid Senior
Employment type
Full Time
Work mode
Hybrid
Location
Amstelveen, Noord-Holland, Netherlands
OAuthOWASPJWT

Job Description

Job description


As an API Security Engineer on a central platform you will play a key role in strengthening our digital resilience by securing the APIs that power our customer and partner ecosystems.

You will join our API Security team at ABN AMRO. The team drives the API security strategy, standards, and governance across the bank, ensuring that APIs are secure and comply with internal security requirements.



Your job


As an API Security Engineer, it's your job to safeguard the security of our API landscape by translating security standards, controls, and best practices into platform policies and automation of business logic. You will work closely with engineers, architects, and security specialists to ensure APIs are secure, compliant with security requirements, and resilient against evolving threats.



Your profile


You are a security specialist who combines technical expertise with a pragmatic mindset. You bring:

  • Strong understanding of cybersecurity principles and architectures included cloud security, and application security architecture

  • Deep expertise in API and application security with a strong understanding of frameworks such as OWASP top10, Mitre and CVE

  • Advanced knowledge of authentication and authorization mechanisms such as Oauth, JWT, session management, mTLS, Object-level authorization and attribute-level authorization

  • An analytical mindset to accurately assess the severity and criticality of API Security findings, translate these findings into improvements for policies and business rules

  • The ability to translate complex security requirements into practical and actionable platform policies and automated guardrails

  • Exceptional communication skills, combined with a highly proactive mindset and a proven ability to take ownership



Nice to have


  • Proven experience with managing API Security products such as Akamai Noname, Salt or Cequence

  • Proven experience with Akamai Noname, Salt or Cequence is a nice to have, aim is to find a senior API Security engineer who can learn using API Security tools based on their knowledge and experience.


Similar jobs