Senior Application Security Engineer

hace 7 días


Madrid, Madrid, España Oracle A tiempo completo
Senior Application Security Engineer - Incident Investigation Focus

Join our team at Oracle NetSuite as a Senior Application Security Engineer with a specialization in Incident Investigation. In this role, you'll collaborate with NetSuite's SOC team and take the lead in deep diving into logs and code during incident investigations to provide crucial context to Incident Responders and define the most effective remediation path for product teams. Your expertise will be pivotal in enhancing the security of multiple cloud services and promoting best security practices across Oracle.

What You'll Do
  • Lead incident investigations, ensuring a smooth coordination between teams for timely event remediation.
  • Enhance existing detections and develop new ones by engaging in threat hunts.
  • Conduct and lead purple team exercises on various applications to bolster our detection and response capabilities.
  • Collaborate with Development and Security teams to devise optimal strategies for active security incident remediation.
  • Implement signature-based detections and mitigations in WAF and RASP solutions to fortify our web applications' security.
  • Develop and manage tools and automation to streamline workflows.
  • Offer Application Security-specific support to NetSuite's SOC.
  • Enhance NetSuite's Incident Detection/Response processes and optimize internal workflows.
  • Engage in cross-training initiatives and continuous learning within and across focus groups.
  • Conduct proactive research to stay updated on the latest attacks and tactics, translating findings into actionable insights for our detection and response mechanisms.
  • Collaborate with Application Security management on program strategy, team development, and addressing overarching security issues.
Your Qualifications & Skills
  • 4+ years of experience in Software Development, Security Engineering, or Incident Response.
  • Proficient in utilizing Logging tools such as OpenSearch or Elastic.
  • Familiar with WAF operation and implementation.
  • Expertise in Application security and/or Software Development.
  • Experience in Incident Response or a strong willingness to learn.
  • Demonstrates strong ethics and a solid grasp of ethical considerations in information security.
  • Ability to work independently while thriving in a team environment.
  • Efficient task management skills and capability to handle multiple tasks effectively.
  • Excellent English communication skills tailored to both technical and executive audiences.
Nice to Have
  • Programming experience in Java, JavaScript, Python, PHP, Perl, Ruby, among others.
  • Background in Computer Science, Computer Engineering, or relevant fields.
  • Project coordination and management skills.
  • Design and implementation expertise in complex workflows.
  • Familiarity with application security projects (e.g., OWASP Top 10), tools (such as ZAP, Burp), and secure software development principles.
  • Industry certifications and continued education programs are a strong asset.
  • Experience or familiarity with various Appsec activities like threat modeling, pen-testing, code reviews, and more.
Why Oracle NetSuite?

Embrace innovation and inclusivity at Oracle NetSuite. We foster a workplace where diversity is celebrated, and every voice is heard and valued. Joining Oracle NetSuite offers a dynamic career path across diverse industries, roles, and cultures, providing opportunities for personal growth and work-life balance. Oracle NetSuite stands out as a leading cloud-based ERP service, unifying financials, supply chain, and omnichannel functionalities on a single platform.

We Offer More Than Just a Job
  • Agile environment with a start-up culture supported by a robust enterprise foundation.
  • Opportunity to work in an English-speaking, international team.
  • Surrounded by seasoned professionals who amplify your growth trajectory.
  • High-impact learning culture with access to online learning platforms and regular training sessions.
  • Flexible working hours for improved work-life balance.
  • Comprehensive private medical and life insurance coverage.
  • Additional benefits tailored to specific countries.
  • Oracle NetSuite upholds Equal Employment Opportunity principles, ensuring equitable access to job application processes, crucial job functions, and other employment benefits for individuals with disabilities.


  • Madrid, Madrid, España Antal International Network A tiempo completo

    Buscamos un Senior Security Application Engineer Responsabilidades:Trabaja con el equipode ingeniería diseñando y revisando soluciones técnicas para abordar debilidades de seguridad. Adéntrate en diversos temas de seguridad, como autenticación, cifrado e integraciones con socios. Revisa y comprende problemas en el código a través del programa de...


  • Madrid Centro, Madrid, España Oracle A tiempo completo

    As a Senior Application Security Engineer with a focus on Incident Investigation, you will be part of the Product Security team and work closely with NetSuite's SOC.You will be the Application Security expert in incident investigations, deep diving through logs and code to provide the best context to Incident Responders and the best remediation path to...


  • Madrid, Madrid, España Antal International A tiempo completo

    Job DescriptionBuscamos un Senior Security Application EngineerResponsabilidades:Trabaja con el equipo de ingeniería diseñando y revisando soluciones técnicas para abordar debilidades de seguridad.Adéntrate en diversos temas de seguridad, como autenticación, cifrado e integraciones con socios.Revisa y comprende problemas en el código a través del...


  • Madrid, Madrid, España Backbase A tiempo completo

    The Job in shortKeep millions of mobile users (and software) safe and secure as they enjoy everything their bank has to offer, wherever they may be.Meet the jobNo day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in hand and with hackers and tech evolving by the day, you'll need to...


  • Madrid, Madrid, España Okta A tiempo completo

    Get to know OktaOkta is The World's Identity Company. We free everyone to safely use any technology-anywhere, on any device or app. Our Workforce and Customer Identity Clouds enable secure yet flexible access, authentication, and automation that transforms how people move through the digital world, putting Identity at the heart of business security and...


  • Madrid, Madrid, España Oracle A tiempo completo

    Job DescriptionYour roleAs a Senior Application Security Engineer, you will use data collected from a variety of information security tools and sources (including web application logs, intrusion detection system alerts, firewall and network traffic logs, and host system logs) to analyze events that occur within the enterprise, perform threat analysis, and...


  • Madrid, Madrid, España Oracle A tiempo completo

    Job DescriptionYour roleAs a Senior Application Security Engineer, you will use data collected from a variety of information security tools and sources (including web application logs, intrusion detection system alerts, firewall and network traffic logs, and host system logs) to analyze events that occur within the enterprise, perform threat analysis, and...


  • Madrid, Madrid, España Oracle A tiempo completo

    Job DescriptionYour roleAs a Senior Application Security Engineer, you will use data collected from a variety of information security tools and sources (including web application logs, intrusion detection system alerts, firewall and network traffic logs, and host system logs) to analyze events that occur within the enterprise, perform threat analysis, and...


  • Madrid, Madrid, España Mangopay A tiempo completo

    Job DescriptionAs a Senior Security Operations Engineer, you will be at the forefront of securing our AWS infrastructure and applications through hands-on technical work, with a specific focus on Kubernetes-based environments. Your role will involve architecting, implementing, and managing security controls, conducting penetration tests to uncover...


  • Madrid, Madrid, España Antal International A tiempo completo

    Job DescriptionBuscamos un Senior Security Application EngineerResponsabilidades:Trabaja con el equipo de ingeniería diseñando y revisando soluciones técnicas para abordar debilidades de seguridad.Adéntrate en diversos temas de seguridad, como autenticación, cifrado e integraciones con socios.Revisa y comprende problemas en el código a través del...


  • Madrid, Madrid, España Mangopay A tiempo completo

    Job DescriptionAs a Senior Security Operations Engineer, you will be at the forefront of securing our AWS infrastructure and applications through hands-on technical work, with a specific focus on Kubernetes-based environments. Your role will involve architecting, implementing, and managing security controls, conducting penetration tests to uncover...

  • Security Engineer

    hace 7 días


    Madrid, Madrid, España Celonis A tiempo completo

    We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join us.We're Celonis, the global leading Process Mining software company and one of...


  • Madrid, Madrid, España Bit2Me A tiempo completo

    Volver a la página principalApplication Security Engineer:Castelló de la Plana - Publicada el 24 de abril de 2024Descripción¿Eres un experto en integrar la seguridad en el día a día del desarrollo de software? ¿Tienes experiência en implementar prácticas DevSecOps innovadoras? ¿Quieres sumarte a nuestra misión de acercar las criptomonedas a la...


  • Madrid, Madrid, España Next Ventures A tiempo completo

    Ref: #57470 Practice Cloud & Infrastructure Technologies Cyber Security Location Madrid, Spain Type Contract Application Security Specialist Responsibilities: Conduct security assessments, including code analysis and penetration testing. Collaborate with development teams to promote secure coding practices. Manage and prioritize vulnerabilities, participate...


  • Madrid, Madrid, España Next Ventures A tiempo completo

    Ref: #57470 Practice Cloud & Infrastructure Technologies Cyber Security Location Madrid, Spain Type Contract Application Security Specialist Responsibilities: Conduct security assessments, including code analysis and penetration testing. Collaborate with development teams to promote secure coding practices. Manage and prioritize vulnerabilities, participate...


  • Madrid, Madrid, España Celonis A tiempo completo

    We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a massive opportunity to unlock productivity by placing data and intelligence at the core of business processes - and for that, we need you to join us.The Team: Our Global information security organization is responsible for...


  • Madrid, Madrid, España Next Ventures A tiempo completo

    Ref: #57470PracticeCloud & InfrastructureTechnologiesCyber SecurityLocationMadrid, SpainTypeContractApplication Security SpecialistResponsibilities:Conduct security assessments, including code analysis and penetration testing.Collaborate with development teams to promote secure coding practices.Manage and prioritize vulnerabilities, participate in incident...


  • Madrid, Madrid, España Acronis A tiempo completo

    Acronis is a world leader in cyber protection—empowering people by providing them with cutting-edge technology that enables them to monitor, control, and protect the data that their businesses and lives depend on. We are in an exciting phase of rapid-growth and expansion and looking for someone who is ready to join us in creating a #CyberFit future and...


  • Madrid, Madrid, España Next Ventures A tiempo completo

    Ref: #57470PracticeCloud & InfrastructureTechnologiesCyber SecurityLocationMadrid, SpainTypeContractApplication Security SpecialistResponsibilities:Conduct security assessments, including code analysis and penetration testing.Collaborate with development teams to promote secure coding practices.Manage and prioritize vulnerabilities, participate in incident...


  • Madrid, Madrid, España CyberProof A tiempo completo

    CyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter - and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively.CyberProof is part of the UST family. Some of the...