Senior Application Security Engineer

hace 1 mes


Madrid, Madrid, España Oracle A tiempo completo
Job Title: Senior Application Security Engineer

As a Senior Application Security Engineer, you will be part of the Product Security team and work closely with NetSuite's SOC. Your primary focus will be on incident investigations, where you will dive deep into logs and code to provide context to Incident Responders and the best remediation path to product teams.

Key Responsibilities:
  • Lead incident investigations, coordinating different teams and ensuring a steady pace to the remediation of events.
  • Find new and strengthen existing detections by participating in and leading threat hunts.
  • Participate in and lead purple team exercises on various applications to strengthen our detection and response capabilities.
  • Determine the best strategy to remediate active security incidents in collaboration with Development and Security teams.
  • Implement signature-based detections and mitigations within WAF and RASP solutions to secure our web applications.
  • Build and manage tools/automation to improve our current workflows.
  • Provide support to NetSuite's SOC with Application Security specific knowledge.
  • Improve NetSuite's Incident Detection/Response mechanisms and streamline our internal processes.
  • Cross-train and learn within and across focus groups.
  • Perform proactive research to keep-up with the latest attacks and TTPs, and translate this into actionable input for our detection and response mechanisms.
  • Collaborate with Application Security management on program direction, team growth, and addressing systemic security issues.
Requirements:
  • 4+ years in the field of Software Development, Security Engineering or Incident Response.
  • Experience using Logging tools like OpenSearch or Elastic.
  • Knowledge on how to operate/implement a WAF.
  • Application security and/or Software Development expertise.
  • Incident Response expertise or desire to learn.
  • Strong ethics and understanding of ethics in information security.
  • Capable of working independently while supporting a team environment.
  • Ability to efficiently manage multiple tasks.
  • Strong communication skills in English both to technical and executive audiences.
Nice to Have:
  • Programming experience with one or more programming languages (Java, JavaScript, Python, PHP, Perl, Ruby, Kotlin, Scala, C#, Golang, bash/zsh, C/C++). We're primarily a Java shop, but we work with multiple programming languages daily.
  • Project coordination/project management skills.
  • Capable of designing, improving and implementing complex workflows.
  • Familiarity with application security projects (OWASP Top 10), tools (ZAP, Burp), and how to build safer software.
  • Recognized industry certification and/or continuing education programs are a major plus.
  • Experience or familiarity with other Appsec activities: threat modeling, pen-testing, bug bounty, code reviews, capture the flag (CTF)...
  • Contributions to open-source projects.
About Oracle NetSuite:

Innovation starts with inclusion at Oracle NetSuite. We are committed to creating a workplace where all kinds of people can be themselves and do their best work. It's when everyone's voice is heard and valued that we are inspired to go beyond what's been done before. An Oracle NetSuite career can span industries, roles, countries and cultures, giving you the opportunity to tackle new roles and challenges, while blending work and life.

Oracle NetSuite is the world's best cloud-based, multi-tenant ERP (Enterprise Resource Planning) service with unified financials, supply chain, order management, omnichannel in one platform

We Offer More Than Just a Job:
  • Agile environment – Start-up culture backed by a strong enterprise
  • English-speaking environment and international team
  • Strong professionals around you that will help to accelerate your growth
  • High-impact learning culture: free access to online learning platforms and regular in-house training sessions
  • Flexible working hours
  • Private medical insurance and life insurance
  • Many other benefits depending on the country
  • Oracle NetSuite is an Equal Employment Opportunity Employer. We ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits of employment.


  • Madrid, Madrid, España Oracle A tiempo completo

    About the RoleWe are seeking a highly skilled Senior Application Security Engineer to join our team at Oracle NetSuite. As a key member of our security team, you will be responsible for analyzing and mitigating cyber security threats to our enterprise environment.Key ResponsibilitiesAnalyze data from various security tools and sources to identify potential...


  • Madrid, Madrid, España Pleo A tiempo completo

    About PleoPleo is a leading FinTech company that handles money for its customers. We're committed to protecting our customers' financial data and ensuring the security of our application.Job OverviewWe're seeking an experienced Associate Application Security Engineer to join our team. This role focuses on the application security side, with responsibilities...


  • Madrid, Madrid, España Jll Europe Middle East A tiempo completo

    Security Engineer Role at JLLJLL empowers individuals to shape a brighter future for the company and its clients. As part of JLL Technologies, our team is dedicated to creating innovative solutions for the real estate industry. We are committed to hiring talented professionals and providing them with the tools and resources needed to thrive in their...


  • Madrid, Madrid, España Ebury A tiempo completo

    About the RoleEbury is a leading FinTech firm that offers a range of products, including FX risk management, trade finance, currency accounts, international payments, and API integration. We are seeking a skilled Senior Fullstack Security Engineer to join our security engineering team and help with security feature implementations across our entire product...


  • Madrid, Madrid, España Oracle A tiempo completo

    Job SummaryAs a Senior Application Security Specialist at Oracle, you will be part of the Product Security team and work closely with NetSuite's SOC. Your primary focus will be on Incident Investigation, where you will be the Application Security expert, deep diving through logs and code to provide the best context to Incident Responders and the best...


  • Madrid, Madrid, España Celonis A tiempo completo

    We are seeking a seasoned Senior Security Automation Engineer to join our team at Celonis. As a trusted member of our Global information security organization, you will be responsible for security and trust. We think about security-offensively and defensively, continuously monitoring our global security posture and adapting to the ever-changing threat...


  • Madrid, Madrid, España Jll Europe Middle East A tiempo completo

    Secure the Future of Real EstateJLL empowers you to shape a brighter way. Our people at JLL and JLL Technologies are shaping the future of real estate for a better world by combining world-class services, advisory, and technology for our clients. We are committed to hiring the best, most talented people and empowering them to thrive, grow meaningful careers,...


  • Madrid, Madrid, España Empresa Reconocida A tiempo completo

    About the RoleEbury, a leading FinTech firm, is looking for a skilled Senior Fullstack Security Engineer to join its team. In this role, you will work closely with application, platform, and product teams to embed security best practices in every deliverable. Your expertise in security features and controls will be essential in helping us develop and drive...


  • Madrid, Madrid, España Cognizant Technology Solutions A tiempo completo

    Secure the Future with CognizantWe are seeking an exceptional Application Security Specialist to join our team at Cognizant Technology Solutions. As a key member of our mobile security team, you will be responsible for analyzing and reversing Android applications to identify potential security threats.Key Responsibilities:Reverse engineer and analyze Android...


  • Madrid, Madrid, España Western Union A tiempo completo

    Job SummaryWe are seeking a highly skilled Senior L2 Application Support Engineer to join our Digital Banking Application Support team in Madrid. As a key member of our team, you will be responsible for establishing core digital banking and wallet solutions globally, while also overseeing the integration of infrastructure, networks, and real-time payment...


  • Madrid, Madrid, España Celonis A tiempo completo

    We're looking for a talented Senior Security Automation Engineer to join our Security Engineering Org at Celonis. As a key member of our team, you will work directly with our cloud platform to help engineer the next generation platform infrastructure stack.The Role:You will be responsible for improving and shaping the security posture of Celonis's Platform...


  • Madrid, Madrid, España Engineeringuk A tiempo completo

    At Engineeringuk, we're pushing the boundaries of innovation in consumer electronics. As a Senior Embedded Linux Engineer, you'll be part of a dynamic team that designs and engineers groundbreaking devices.The Senior Embedded Linux Engineer will provide technical leadership and contribute to the definition, development, integration, test, documentation, and...


  • Madrid, Madrid, España Atradius N.V. (Italy) A tiempo completo

    Atradius N.V. (Italy) is seeking a highly skilled Senior Java Application Engineer to join our team in developing and maintaining our credit insurance solutions. The ideal candidate will have a strong background in Java development, experience with Spring Boot, Microservices, and DevOps practices.

  • Security Engineer

    hace 1 mes


    Madrid, Madrid, España Amazon Data Services Spain, S.L. - C94 A tiempo completo

    About the RoleWe are seeking a highly skilled Penetration Testing Engineer to join our team at Amazon Data Services Spain, S.L. - C94. As a key member of our security team, you will be responsible for delivering continuous assessments and identifying complex technology problems. Your strong passion for security-at-scale will enable you to build tools to...


  • Madrid, Madrid, España Amazon A tiempo completo

    About the RoleWe are seeking a talented Senior Cloud Security Engineer to join our AWS Identity and Access Management team. As a Senior Cloud Security Engineer, you will be responsible for designing, implementing, and maintaining highly scalable and secure distributed systems that are used by all AWS customers and internal service teams alike.Key...


  • Madrid, Madrid, España Coatue Management L.L.C. A tiempo completo

    About PleoPleo is a FinTech company that handles money for its customers. To ensure the security of our customers' funds, we are looking for an experienced Application Security Specialist to join our team.


  • Madrid, Madrid, España Western Union A tiempo completo

    Role OverviewAs a Senior L2 Application Support Engineer at Western Union, you will play a critical role in establishing and developing the digital banking infrastructure in the assigned region. This position requires a strong resource in the regional Application Support team, supporting maintenance, enhancements, and security.Key ResponsibilitiesHelp...


  • Madrid, Madrid, España Empresa Reconocida A tiempo completo

    About the RoleEbury is a leading FinTech firm investing in the expansion of its security engineering team to implement security features across its entire product portfolio.This role involves working closely with application, platform, and product teams to embed security best practices in every deliverable.You will join a team of experienced security...


  • Madrid, Madrid, España Glia A tiempo completo

    Security Engineer Role at GliaGlia is a leading provider of digital customer service solutions, and we're looking for a skilled Security Engineer to join our team. As a Security Engineer at Glia, you will play a critical role in ensuring the security and integrity of our platform and applications.Key Responsibilities:Take ownership of the platform and...


  • Madrid, Madrid, España Semrush A tiempo completo

    Application Security Pentester RoleWe are Semrush, a global IT company developing our own product - a platform for digital marketers. Our team is renowned for its cutting-edge approach to application security. As an Application Security Pentester, you will play a crucial role in enhancing our team's capacity to conduct security audits efficiently during the...