Senior Application Security Engineer

hace 4 días


Madrid, España Oracle A tiempo completo

Want to take your career to the next level while having fun and working in a small, agile, and smart team? Do you like breaking and securing code?


We are hiring at all levels: junior, senior, principal, and architect. Also, for different projects of different skill-sets.


We have an agile environment and start-up culture backed by a strong enterprise. We are the product security team, protect multiple Oracle cloud services, and build a secure ecosystem where developers can build secure services.


We work at the intersection of software development and security. Our team works very close to the code. We build mechanisms, processes, and automation to eradicate attack classes by default. Some activities we do are: doing security code reviews, design reviews, grey box reviews, building security libraries, embedding security tools in the CI/CD, triaging findings from sast/dast tools, training developers, etc...


We are mostly a Java shop, but we also have many services in Python, JavaScript, TypeScript, and infrastructure as code such as Kubernetes, SlatStack, Docker, etc..


As an application security engineer, you will focus on ensuring the security of multiple services by working directly with our security teams, collaborating with our engineering teams, and promoting good development security practices throughout Oracle.


You will help developers understand security concepts and security practices. You will help the security team remain a trusted partner of the development organization by being friendly but uncompromising when it comes to getting security right.


Hiring in our offices in Barcelona or Madrid.



Responsibilities:

  • Conduct security code reviews
  • Implement appropriate security protections to solve both individual vulnerabilities and entire vulnerability classes
  • Build and manage tools to help identify issues, both in the IDE and in CI/CD to scale out the team through automation
  • Build libraries that prevent security issues by design
  • Identify areas where our processes can be improved, and where possible implement those improvements
  • Identify, reproduce, and report security issues
  • Collaborate with software engineers to make our software better, helping them balance product and security risk decisions
  • Work together to educate engineers and product teams on the importance of security.
  • Perform proactive research to stay current on security issues, and share that knowledge ith the rest of the security and engineering teams
  • Collaborate with application security management on program direction, team growth, and on addressing systemic security issues



Minimum Qualifications:

  • Programming experience with one or more programming language (Java, JavaScript, Python, HP, Perl, Ruby, Kotlin, Scala, C#, Golang, bash/zsh, C/C++). We're primarily a Java shop, but we work with multiple programming languages daily.
  • 4+ years in the field of software development or security engineering
  • Existing application security knowledge and/or desire to learn
  • Strong ethics and understanding of ethics in information security
  • Capable of working independently while supporting a team environment
  • Ability to efficiently manage multiple tasks
  • Strong communication skills in English


Bonus:

  • B.S. in Computer Science, Computer Engineering, or related field, or commensurate experience
  • Experience working in an Agile development environment.
  • Familiarity with application security projects (e.g. OWASP Top 10), tools (e.g. ZAP, Burp), and how to build safer software.
  • Recognized industry certification and/or continuing education programs are a major
  • Experience or familiarity with threat modeling, pen-testing, bug bounties, code review, capture the flag, or other AppSec activities.
  • Contributions to open-source projects.



We offer more than just a job

  • Agile environment – Start-up culture backed by a strong enterprise
  • English-speaking environment and international team
  • Strong professionals around you that will help to accelerate your growth
  • High-impact learning culture: free access to online learning platforms and regular in-house training sessions
  • Flexible working hours
  • Private medical insurance and life insurance
  • Many other benefits depending on the country
  • Oracle NetSuite is an Equal Employment Opportunity Employer. We ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits of employment.



  • Madrid, España Oracle A tiempo completo

    .Job DescriptionAs a Senior Application Security Engineer with a focus on Incident Investigation, you will be part of the Product Security team and work closely with NetSuite's SOC. You will be the Application Security expert in incident investigations, deep diving through logs and code to provide the best context to Incident Responders and the best...


  • Madrid, España Fortis Games A tiempo completo

    .Who we areAt Fortis Games we aspire to make great games that bring people together while redefining how game companies work. We believe in building a sense of belonging through our games, their communities, and how we operate and treat each other. Through our game communities, we will create powerful connections and lasting memories. We will foster a...


  • Madrid, España Jordan martorell s.l. A tiempo completo

    Senior Application Security EngineerMadrid, Community of Madrid, ESWant to take your career to the next level while having fun and working in a small, agile, and smart team? Do you like breaking and securing code?We are hiring at all levels: junior, senior, principal, and architect. Also, for different projects of different skill-sets.We have an agile...


  • Madrid, España Oracle A tiempo completo

    .Want to take your career to the next level while having fun and working in a small, agile, and smart team?Do you like breaking and securing code?We are hiring at all levels: junior, senior, principal, and architect.Also, for different projects of different skill-sets.We have an agile environment and start-up culture backed by a strong enterprise.We are the...


  • Madrid, España Oracle A tiempo completo

    Want to take your career to the next level while having fun and working in a small, agile, and smart team?Do you like breaking and securing code?We are hiring at all levels: junior, senior, principal, and architect.Also, for different projects of different skill-sets.We have an agile environment and start-up culture backed by a strong enterprise.We are the...


  • Madrid, España Oracle A tiempo completo

    Job DescriptionAs a Senior Application Security Engineer with a focus on Incident Investigation, you will be part of the Product Security team and work closely with NetSuite's SOC. You will be the Application Security expert in incident investigations, deep diving through logs and code to provide the best context to Incident Responders and the best...


  • Madrid, España Oracle A tiempo completo

    Want to take your career to the next level while having fun and working in a small, agile, and smart team? Do you like breaking and securing code?We are hiring at all levels: junior, senior, principal, and architect. Also, for different projects of different skill-sets.We have an agile environment and start-up culture backed by a strong enterprise. We are...

  • Security Engineer

    hace 1 mes


    Madrid, España Allianz A tiempo completo

    .At Allianz Technology, our Information Security Operations team is the driving force behind our cybersecurity strategy, developing global solutions to protect Allianz from evolving threats. As part of this mission, Allianz Vulnerability Management (AVM) plays a key role in detecting, analyzing, and reporting vulnerabilities across business and technological...


  • Madrid, Madrid, España Pleo A tiempo completo

    At Pleo, we're scaling our customer onboarding at breakneck speed. As a result, cyber threats are becoming increasingly enticing for malicious actors. Given our position in the FinTech industry, handling money for customers demands robust application security measures. This role is focused solely on application security and internal dev practices to enhance...


  • Madrid, España Fortis Games A tiempo completo

    .Who we areAt Fortis Games we aspire to make great games that bring people together while redefining how game companies work. We believe in building a sense of belonging through our games, their communities, and how we operate and treat each other. Through our game communities, we will create powerful connections and lasting memories. We will foster a...


  • Madrid, España Sportradar A tiempo completo

    .Sportradar Sportradar is the world's leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and technology to boost their business.Job Description Senior Cloud Application Security...


  • Madrid, España Adp A tiempo completo

    .Senior Application Security Architect - EMEA (UK, SP, other)ADP is hiring a Senior Application Security ArchitectAre you empathetic to client needs and inspired by transformation and impacting the lives of millions of people every day?Are you looking to join a dynamic, inclusive team environment with a culture of collaboration and belonging?Well, this may...

  • Security Engineer

    hace 1 mes


    Madrid, España Allianz A tiempo completo

    At Allianz Technology, our Information Security Operations team is the driving force behind our cybersecurity strategy, developing global solutions to protect Allianz from evolving threats. As part of this mission, Allianz Vulnerability Management (AVM) plays a key role in detecting, analyzing, and reporting vulnerabilities across business and technological...


  • Madrid, España Amazon A tiempo completo

    .In Amazon Stores, we ship some of the widest arrays of technology found at any company. From amazon.Com to world-class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the boundaries of technology in every direction using the globe's largest AWS deployment.As an AppSec engineer, you will collaborate with...


  • Madrid, España Sportradar A tiempo completo

    Sportradar Sportradar is the world's leading sports technology company, at the intersection between sports, media, and betting. More than 1,700 sports federations, media outlets, betting operators, and consumer platforms across 120 countries rely on our know-how and technology to boost their business.Job Description Senior Cloud Application Security...


  • Madrid, España Coatue Management L.L.C. A tiempo completo

    Here at Pleo, we're onboarding new customers with Sonic.gif speed, which is amazing don't get me wrong, but the larger we become, the bigger the temptation from cyber criminals. As you may already know, we are in the FinTech business, and we handle money for our customers. So this is not just about protecting a company from a password leak that allows...


  • Madrid, España Amazon A tiempo completo

    In Amazon Stores, we ship some of the widest arrays of technology found at any company. From amazon.com to world-class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the boundaries of technology in every direction using the globe's largest AWS deployment.As an AppSec engineer, you will collaborate with...


  • Madrid, Madrid, España Fortis Games A tiempo completo

    About UsAt Fortis Games, we strive to create engaging games that foster a sense of community and redefine the way game development companies operate. Our goal is to build a culture of diversity, equity, and belonging where our diverse skills, experiences, and backgrounds shape the games we create. As an early but ambitious organization with a leadership team...


  • Madrid, Madrid, España Adp A tiempo completo

    About ADPADP is a leading global technology company that provides innovative human capital management solutions to businesses of all sizes. With a presence in over 140 countries, ADP empowers its clients to achieve their goals by providing them with the tools and expertise they need to succeed.About the RoleWe are seeking a highly skilled Senior Application...

  • Security Engineer

    hace 3 meses


    Madrid, España Celonis A tiempo completo

    .Celonis The Celonis Process Intelligence Platform — powered by process mining — lets you reveal and realize the value opportunities hiding in your business processes - fast. Get started quickly and scale infinitely.We're Celonis, the global leader in Process Mining technology and one of the world's fastest-growing SaaS firms. We believe there is a...