Application Security Engineer

hace 1 mes


En remoto, España Scalefast A tiempo completo

Scalefast helps amazing brands develop a successful Direct-to-Consumer online business. Our next-generation technology platform is built to optimize modern eCommerce. Our end-to-end infrastructure includes global merchant-of-record agreements, fulfillment, subscription, loyalty programs, and finance functions to deliver new revenue and delightful brand experiences. Scalefast has proven itself with global brands like L’Oréal, Square-Enix, and Flir.

As a member of our Application Security Engineering team, the Application Security Engineer performs security architecture reviews of new and existing platforms. Partner with business units, departments providing input on security standard methodologies throughout project-lifecycles. They contribute to the Security programs by performing reviews and security audits. Talk confidently about our cybersecurity programs and help integrate our business needs with our Application Security needs.

**_
What _**_do we offer?_**
- Competitive salary and a career path adapted to each person's abilities and experience within a company that is growing continuously
- Hybrid way of working
- A flexible schedule and total conciliation between work and family life including reduced timetable during one month in summer
- Become part of a multi-cultural company where you can contribute with your experience and learn from the experience of others
- Work with amazing brands
- Get the opportunity to influence the future of our services and platform
- Excellent working environment with frequent social activities (hackathons, Spartan races, quarterly whole-team social event)
- Central Madrid office located an 8-minute walk from Atocha train station, with a bus stop and BiciMad station right outside the office
- Kitchen and dining facilities as well as a fully stocked games room with games consoles etc. - great to disconnect from work for a while and have fun with your colleagues
- Discounted parking space in the office building if you’re coming by car, bicycle parking for those worried about their carbon footprint
- Mental Health Wellbeing Program

**Responsibilities**:

- Contributing features to internally developed Cybersecurity tools and integrating those tools into the DevOps pipelines.
- Oversee development lifecycles and analyze security information related.
- Driving continuous improvement to the DevOps pipelines.
- Research appropriate security testing tools.
- Participating in security issue management processes.
- Educate and support teams to perform their safety code reviews.
- Keep updated the SDLC security guidelines.
- Aligns security deliverables with regulatory and contractual requirements that conform with security framework and
- standards such as NIST SP 800-53, OWASP Top 10, CIS Top 20.
- Define, implement, and monitor security measures to protect Scalefast stores and company and client assets

**Requirements**:

- You have a passion for security and open source.
- Proven experience with Web Application Security Testing, Code Reviews, Vulnerability Assessment.
- Knowledge of automated security testing tools like SAST, DAST, SCA, IAST, and fuzz testing tools.
- Linux experience, comfortable between Debian and RHEL based systems.
- Positive and solution-oriented mindset.
- Experience working with Cloud in a security-enabled environment.
- Knowledge of common authentication technologies including OAuth, SAML, CAs, OTP/TOTP.
- Knowledge of browser-based security controls such as CSP, HSTS, XFO.
- Proven ability to work independently, collaboratively as part of a global team and deliver to multiple deployment schedules.
- English written and verbal communication skills.

**Nice-to-haves**
- Experience with AWS.
- Information security professional certifications encouraged (SANS GIAC, CISSP etc.).
- Computer science education or equivalent experience.
- Experience in a peak performance organization, preferably a tech startup.
- Experience working with a remote team.
- Experience working with a global and multicultural team.
- Passionate about/experienced with open source and developer tools



  • En remoto, España Intellias A tiempo completo

    Project Overview: Application Security engineers are working with product teams to help deliver secure products. As shift-left evangelists, we want to focus on pre-code activities in product planning and development. This includes reviewing early-stage designs, developing threat models, preparing security requirements, and scaling impact by curating security...


  • En remoto, España Meta A tiempo completo

    Meta's Application Security team is seeking a passionate hacker who enjoys discovering security vulnerabilities in products and infrastructure and then building tools and frameworks with developers to eliminate entire classes of those vulnerabilities. Your skills will be the foundation of security initiatives that protect the security and privacy of over a...


  • En remoto, España Meta A tiempo completo

    Meta Security is looking for an Incident Response Engineer with experience in the identification, containment and mitigation of security incidents. You will be analyzing different data sources to detect, investigate and respond to internal and external threats. You will also be working with our software and production engineering teams to develop scalable...


  • En remoto, España NexGen Cloud A tiempo completo

    NexGen Cloud is a rapidly growing IaaS company focused on providing innovative cloud solutions and infrastructure services. Our GPU cloud infrastructure solutions accelerate development in industries such as Artificial Intelligence & Machine Learning, VFX & Rendering, Data Science & IoT, and Computer Aided Engineering & MDO. We are dedicated to helping our...

  • Security Sr. Engineer

    hace 5 días


    En remoto, España Solera A tiempo completo

    Job Title/Location Who We Are The Role We're on the hunt for a Security Sr. Engineer for our Security Infrastructure team to join Global IT's team in Spain. You will participate in the design, build, deployment and operation of security - focused infrastructure and provide consultation, architectural review, risk assessment of Solera´s systems and...

  • Security Sr. Engineer

    hace 6 días


    En remoto, España Solera A tiempo completo

    Job Title/Location Who We Are The Role We're on the hunt for a Security Sr. Engineer for our Security Infrastructure team to join Global IT's team in Spain. You will participate in the design, build, deployment and operation of security - focused infrastructure and provide consultation, architectural review, risk assessment of Solera´s systems and...

  • Security Engineer

    hace 2 meses


    En remoto, España Stuart A tiempo completo

    Stuart (DPD Group) is a sustainable last-mile logistics company that connects retailers and e-merchants to a fleet of geolocalised couriers across several countries in Europe. Our Mission - We are an impact-driven company that aims to build the future of logistics for a more sustainable world: shared, efficient and reliable. We are committed to creating a...


  • En remoto, España Grafana Labs A tiempo completo

    **Senior Security Engineer - Platform Security**: **About our Platform (at Grafana Labs)**: Grafana Cloud moves millions of metrics, log lines, and traces per second from our customers' environments into a highly available, low-latency stack that processes and stores these data, and serves them to dashboards and alerting tools. We aim to grow this to...

  • Data Security Engineer

    hace 2 meses


    En remoto, España Parser Limited A tiempo completo

    As a Data Security Engineer at Parser, you will be part of our team and work on engineering projects, help improve our processes and tooling with an automation first approach wherever possible. You will also help maintain our existing security engineering tools and automation while looking at how we can continuously improve these, whether that be built in...


  • En remoto, España Grupo Sothis A tiempo completo

    Contrato**Contrato Indefinido** **Jornada completa** - Localización**Remoto** **INSCRIBIRME** Descripción - En **Nunsys Group **estamos creciendo a pasos agigantados y tenemos una gran oportunidad para ti. ¡Abrimos vacante para incorporar un/a **Senior - SOAR Engineer (Security Orchestration, Automation and Response).** **¿A qué nos...

  • Security Analyst

    hace 2 días


    En remoto, España Semrush A tiempo completo

    Hi there! We are Semrush, a global IT company developing our own product—a platform for digital marketers. New stars are born here, so don’t miss your chance. This is our **Security Analyst **role for those who strive to implement functional processes and drive them to full completion. **Tasks in the role**: - Responding to security incidents,...


  • En remoto, España Grupo Sothis A tiempo completo

    Contrato**Contrato Indefinido** **Jornada completa** - Localización**Remoto** **INSCRIBIRME** Descripción - En - **Sothis **estamos creciendo a pasos agigantados y tenemos una gran oportunidad para ti. ¡Abrimos vacante para incorporar a un/a - **Senior - SOAR Engineer (Security Orchestration, Automation and Response)**.**¿A qué nos...


  • En remoto, España Red Hat Software A tiempo completo

    About the job: The Red Hat Application Platforms and Services engineering team is looking for a Senior Frontend Engineer to work remotely in Italy, Spain, or Portugal. In this role, you will be part of a global team of engineers developing and maintaining Red Hat strategic managed cloud services. What you will do: - Design and develop enhancements for new...

  • Security Analyst

    hace 2 días


    En remoto, España Semrush A tiempo completo

    Job Description Hi there! We are Semrush, a global IT company developing our own product—a platform for digital marketers. New stars are born here, so don’t miss your chance. This is our Security Analyst role for those who strive to implement functional processes and drive them to full completion. Tasks in the role - Responding to security incidents,...

  • Security Engineer

    hace 1 semana


    En remoto, España Birdie A tiempo completo

    **Who are we? What are we building?**: We are Birdie, we are innovators that serve the social care space through our software products. In 2023 we enabled a remarkable 30 million care visits, we expanded into a new market and our product is now available in the UK and Germany, we also grew by adding 97 amazing new hires. This year we have joined TechNation's...


  • En remoto, España Ekkiden A tiempo completo

    **Responsibilities**: - Lead complex or high severity troubleshooting and incident problem resolutions with other infrastructure teams, including AD operations, storage, messaging, server and network - Analyze, engineer, and implement highly complex, enterprise level Active Directory solutions - Translate business needs into workable technology solutions...


  • En remoto, España The Cornerstone Talent A tiempo completo

    **The Cornerstone Talent** is looking for the best talent to join to our client team. They are an entrepreneurial team passionate about building innovative software (SaaS) solutions for **hospitality & retail sectors** is looking for a **Cloud Engineer** to join their team and help us design, implement and maintain cloud-based solutions using Azure,...

  • Sales Engineer

    hace 5 días


    En remoto, España XM Cyber A tiempo completo

    XM Cyber is a pre-ipo cyber security vendor that continuously and safely helps the world’s most secure organisations understand cyber-attack paths that attackers can exploit. Until now it has not been possible to provide a continuous adversarial view of the enterprise allowing organisations to understand how they can be attacked, what they can do about it,...


  • En remoto, España CyberProof A tiempo completo

    CyberProof is a cyber security services and platform company whose mission is to help our customers react faster and smarter - and stay ahead of security threats, by creating secure digital ecosystems. CyberProof automates processes to detect and prioritize threats early and respond rapidly and decisively. CyberProof is part of the UST family. Some of the...

  • Civil Engineer

    hace 1 día


    En remoto, España Loyda Blanco A tiempo completo

    **Description** Functions: - Calculation of structures in civil works. - Preparation of reports and technical documentation. - Calculation of foundations and metal and concrete structures. - Support tasks and management of the different projects; such as the control of hours and resources, economic control, document management, etc. - Assistance with...