Application Security Engineer

hace 4 semanas


Barcelona, España Yassir.Com A tiempo completo

worldwide / Cairo, Egypt / Bucharest / Barcelona, Spain / Belgrade / Dublin, Ireland / Johannesburg, South Africa / Sofia / Warsaw
As an Application Security Engineer at Yassir, you will play a vital role in ensuring the security of our software applications. You will be responsible for identifying and mitigating security vulnerabilities, implementing security best practices, and working closely with our development teams to integrate security into all phases of the software development lifecycle.
What you'll be doing:Security Analysis & Vulnerability Assessment: Conduct regular security assessments and penetration tests on Company products. Identify vulnerabilities and security gaps in existing applications and propose remediation solutions.Vulnerability Management: Lead the development and implementation of a comprehensive vulnerability management program. This includes continuous monitoring, analysis, and prioritization of vulnerabilities discovered in applications.Security Automation: Implement and maintain security tools and processes to automate the detection of security vulnerabilities. Integrate security tools into the CI/CD pipeline. Security tools to be considered (not limited to): Static code analysis (mainly Python and TypeScript); Dynamic code analysis and scanning for vulnerabilities using Burp Suite and OWASP ZAP; Software composition analysis.Establishing security controls in SDLC: Work with the development team to ensure secure coding practices are implemented. Provide training and guidance on security best practices and emerging threats. Conduct threat modeling, architecture review and consult development teams when making architecture decisions. Develop security requirements at the early stages of the product life cycle.Incident Response: Participate in the response to security incidents, including performing post-mortem analysis and recommending preventive solutions.Compliance and Standards: Ensure applications comply with industry standards and regulations such as OWASP, GDPR, SOC 2 and ISO 27001.Collaboration and Communication: Collaborate with cross-functional teams to promote a culture of security awareness. Communicate effectively with both technical and non-technical stakeholders.About your experienceUnderstanding of architecture and working principles of modern applications.Experience with GCP cloud security.Strong knowledge of security principles, techniques, and protocols (e.g., OWASP Top 10, SSL/TLS, etc.).5+ years of working experience as Application Security Engineer or in a similar position (Penetration testing, Red Team, Bug Bounty etc.).Strong knowledge of at least one scripting language (Python, PowerShell, bash).Excellent problem-solving and communication skills.WHY YOU SHOULD JOIN YASSIRJoin one of the fastest-growing tech companies in North AfricaHave a lasting impact on our company's cultureMake a real impact on the world by helping us bring affordable financial and on-demand services to millions of AfricansWork on some really hard technical challenges from identity infrastructure for Africans, digital payment networks to complex mapping and routing systems across the continent.We are the first Algerian startup to go through Y Combinator program and we're backed by top investors including Unpopular Ventures, Rebel Fund and DainTree.VC Nice-to-Have Skills:Relevant information security certifications: CEH, OSCP, OSCE, LPT, etc.Knowledge of/experience with international information security standards and personal data protection standards: ISO 27XXX, PCI DSS, GDPR, etc.Knowledge of/experience with information security standards and frameworks: OAuth, WS-Security, X.509 , SSL/TLS, etc.Bachelor's degree in Computer Science, Information Security, or related field.Experience in CTF or bug bounty programs.Knowledge of DevSecOps practices and tools.Experience in web or mobile apps development.Experience with Python applications security assessment.#J-18808-Ljbffr



  • Barcelona, España QAD A tiempo completo

    Job Description QAD is seeking an Application Security Engineer . As an Application Security Engineer, you will contribute to ensuring the security and integrity of our organization's applications and software systems. You will assist in identifying security vulnerabilities, conducting risk assessments, and implementing security measures to protect...


  • Barcelona, España QAD A tiempo completo

    Job Description QAD is seeking an Application Security Engineer . As an Application Security Engineer, you will contribute to ensuring the security and integrity of our organization's applications and software systems. You will assist in identifying security vulnerabilities, conducting risk assessments, and implementing security measures to protect...


  • Barcelona, España Cyrex Group A tiempo completo

    Magic Media is a pioneering media, entertainment and tech group powered by creativity and innovation. We have a physical presence in 14 countries and expertise in the areas of art, animation, cybersecurity, game development, software development, VFX and video production amongst others. We work with leading developers and publishers within the games and tech...


  • Barcelona, España Cyrex Group A tiempo completo

    Magic Media is a pioneering media, entertainment and tech group powered by creativity and innovation. We have a physical presence in 14 countries and expertise in the areas of art, animation, cybersecurity, game development, software development, VFX and video production amongst others. We work with leading developers and publishers within the games and tech...


  • Barcelona, España TD SYNNEX A tiempo completo

    **Application Security Engineer** TD SYNNEX Corporation, a $60B global distributor is dedicated to protect the enterprise and our supply chain partners from cyber security risks. That's especially true today as new risks and complexities brought on by regulatory mandates, rapidly evolving technologies, and the digitalization of business operations are...


  • Barcelona, España Wolters Kluwer Tax and Accounting España, S.L. A tiempo completo

    #Bethedifference If making the difference matters to you, then you matter to us. Join us, at Wolters Kluwer, and be part of a dynamic global technology company that makes a difference every day. We’re innovators with impact. We provide expert software & information solutions that the world’s leading professionals rely on, in the moments that matter...


  • Barcelona, España QAD A tiempo completo

    Job Description QAD is seeking a Senior Application Security Engineer . As an Application Security Engineer, you will play a critical role in ensuring the security and integrity of our organization's applications and software systems. You will be responsible for identifying and mitigating security vulnerabilities, conducting risk assessments, and...


  • Barcelona, España QAD A tiempo completo

    Job Description QAD is seeking a Senior Application Security Engineer . As an Application Security Engineer, you will play a critical role in ensuring the security and integrity of our organization's applications and software systems. You will be responsible for identifying and mitigating security vulnerabilities, conducting risk assessments, and...


  • Barcelona, España Magic Media A tiempo completo

    Magic Media is a pioneering media, entertainment and tech group powered by creativity and innovation. We have a physical presence in 14 countries and expertise in the areas of art, animation, cybersecurity, game development, software development, VFX and video production amongst others. We work with leading developers and publishers within the games and tech...


  • Barcelona, España Magic Media A tiempo completo

    Magic Media is a pioneering media, entertainment and tech group powered by creativity and innovation. We have a physical presence in 14 countries and expertise in the areas of art, animation, cybersecurity, game development, software development, VFX and video production amongst others. We work with leading developers and publishers within the games and tech...


  • Barcelona, España Antal International Network A tiempo completo

    The Role: As a Senior Security Engineer, you will play a pivotal role in establishing and spearheading our company's appsec program, ensuring the security of our products and services. You will be responsible for conducting comprehensive security assessments, identifying and remediating vulnerabilities, and collaborating with our product and tech teams to...


  • Barcelona, España Antal International Network A tiempo completo

    The Role: As a Senior Security Engineer, you will play a pivotal role in establishing and spearheading our company's appsec program, ensuring the security of our products and services. You will be responsible for conducting comprehensive security assessments, identifying and remediating vulnerabilities, and collaborating with our product and tech teams to...


  • Barcelona, España Antal International A tiempo completo

    **_The Role:_** - As a Senior Security Engineer, you will play a pivotal role in establishing and spearheading our company's appsec program, ensuring the security of our products and services. You will be responsible for conducting comprehensive security assessments, identifying and remediating vulnerabilities, and collaborating with our product and tech...


  • Barcelona, España sennder A tiempo completo

    **sennder is Europe's leading digital freight forwarder. In a traditional industry we are moving fast to digitize and automate all road logistics processes. We are a growing team looking for a Staff Application Security Engineer to help us on our journey to revolutionize road freight logistics. You would join our Infrastructure Operations (InfraOps) team in...


  • Barcelona, España sennder A tiempo completo

    sennder is Europe’s leading digital freight forwarder. In a traditional industry we are moving fast to digitize and automate all road logistics processes. We are a growing team looking for a Staff Application Security Engineer to help us on our journey to revolutionize road freight logistics. You would join our Infrastructure Operations (InfraOps) team in...


  • Barcelona, España sennder A tiempo completo

    sennder is Europe’s leading digital freight forwarder. In a traditional industry we are moving fast to digitize and automate all road logistics processes. We are a growing team looking for a Staff Application Security Engineer to help us on our journey to revolutionize road freight logistics. You would join our Platform team in the Berlin, Barcelona or...


  • Barcelona, España Oracle A tiempo completo

    Your role As a Senior Application Security Engineer, you will use data collected from a variety of information security tools and sources (including web application logs, intrusion detection system alerts, firewall and network traffic logs, and host system logs) to analyze events that occur within the enterprise, perform threat analysis, and improve our...


  • Barcelona, España Oracle A tiempo completo

    Your role As a Senior Application Security Engineer, you will use data collected from a variety of information security tools and sources (including web application logs, intrusion detection system alerts, firewall and network traffic logs, and host system logs) to analyze events that occur within the enterprise, perform threat analysis, and improve our...


  • Barcelona, España Preply A tiempo completo

    **At Preply, we are unlocking human potential through learning.**: We believe learning with a great tutor is life-changing. That's why we match online tutors from across the globe with learners and empower them to create live language classes with AI-powered tools and learning materials. This is how we deliver progress, create engagement and keep our global...


  • Barcelona, España Amazon Spain Services, S.L.U. A tiempo completo

    BA/BS in computer science, information security, related discipline, or equivalent work experience. - Several years of hands on experience with at least three of the following: threat modeling experience, secure coding, identity management and authentication, software development, cryptography, penetration testing, cloud security, mobile security, and...