Application Security Engineer

hace 2 días


valència, España Neara A tiempo completo

Job type: Full Time · Department: Engineering · Work type: Remote Spain Application Security Engineer Welcome to Maisa - Making AI Accountable Our agentic process automation platform helps enterprises automate complex, decision-heavy processes that traditional automation can’t handle and GenAI can’t be trusted with. We enable organizations to scale operations, resist hallucinations, and bring end-to-end visibility and control to your most complex processes. Powered by a new kind of computing platform, Maisa combines AI-driven problem solving with programmatic execution, so every action is reliable, auditable, and built for enterprise scale. About the role We're looking for a Senior Application Security Engineer to own and scale our Vulnerability Management Program, embed security into CI/CD pipelines, and perform deep code security reviews. This hands‑on role partners with Engineering, SRE, and GRC to measurably reduce application risk across our portfolio. We value engineers who automate first, build guardrails instead of gates, and help teams ship secure software fast. What you’ll do Vulnerability Management (Program Ownership) Define and operate end‑to‑end vulnerability management lifecycle (SCA, SAST, DAST, container, IaC scanning) Establish risk‑based triage using CVSS and exploited vulnerability catalogs Integrate scanners into CI/CD (GitHub Actions ) and container registries Build automated patch/dependency‑update pipelines (e.g., Dependabot automated PRs) Generate and store SBOMs ; implement image signing and provenance (Sigstore, cosign, SLSA) Track MTTR, time‑to‑first‑fix, and executive‑level security metrics Partner with GRC to align with ISO 27001 and SOC 2 frameworks Security in CI/CD (Shift‑Left & Supply Chain) Embed SAST , SCA , secret scanning, and IaC checks into pipelines Enforce branch protections, mandatory code reviews, and artifact signing Champion least‑privilege pipelines, ephemeral runners, and hardened build environments Publish attestations and SBOMs with every release Code Security Reviews (Depth Where It Matters) Perform targeted manual reviews of critical code paths (auth/authz, crypto, multi‑tenant boundaries, PII handling) Write concise, actionable review notes with clear risk statements and remediation guidance Collaborate with developers to land fixes quickly Contribute to secure coding patterns and internal libraries Deliver developer training based on real findings What you’ll bring Strong demonstrable experience in Application Security or Security Engineering Proven ownership of a Vulnerability Management or Secure SDLC program Strong hands‑on skills with at least two programming languages: Go, Python, TypeScript/Node.js, or Java Experience integrating SAST/SCA/DAST/Secrets/IaC tools into Git‑based CI/CD (GitHub Actions preferred) Solid understanding of container and Kubernetes security (image scanning, admission controls, PodSecurity) Deep knowledge of authn/authz, cryptography, SSRF/XSS/Injection classes, and modern web/API architectures Familiarity with ISO 27001 and SOC 2 requirements for software security Excellent communication and stakeholder management skills Fluent Spanish (essential for client interactions) Any familiarity with tools such as: Semgrep, CodeQL, Trivy, Grype, Snyk, Dependabot, Checkov, tfsec, ZAP, Burp, SonarQube would be beneficial. As would any formal certifications such as OSWE, OSCP, GCSA, GWAPT, GWEB, CSSLP. You will be joining one of Europe’s most exciting early‑stage AI start‑ups, where you’ll have the opportunity to work with cutting‑edge Agentic Process Automation that’s reshaping how enterprises approach AI deployment. You will get to directly influence how major multinational organizations transform critical business processes, working on genuinely differentiated technology that solves real enterprise AI challenges. Following our recent $25m Seed Round, backed by leading Venture Capital firms including Creandum, Forgepoint, NFX, and Village Global, we’re scaling quickly and realising significant enterprise traction. This is your opportunity to help solve real AI enterprise challenges, working alongside deep technical and industry experts, where you will be challenged daily and expedite your learning and development. Maisa is committed to Equal Employment Opportunity through attracting and retaining a complementary team of employees and building an inclusive environment for all. #J-18808-Ljbffr



  • valència, España Neara A tiempo completo

    An innovative tech startup is seeking a Senior Application Security Engineer to lead vulnerability management, embed security into CI/CD pipelines, and conduct code security reviews. The ideal candidate will have strong experience in Application Security, knowledge of various programming languages, and fluency in Spanish. This role offers an exciting...

  • Senior Security Engineer

    hace 2 semanas


    valència, España Volkswagen Digital:Hub A tiempo completo

    Direct message the job poster from Volkswagen Digital:Hub Volkswagen Group Services is excited to present a fantastic opportunity to join our Volkswagen Digital:Hub in Spain. As part of the global Software Development Centre network in the Volkswagen Group, we constantly seek talented individuals ready to bring their unique skills to our projects. Our...

  • Senior Security Engineer

    hace 2 semanas


    valència, España Volkswagen Group Services GmbH A tiempo completo

    Select how often (in days) to receive an alert: Volkswagen Group Services is excited to present a fantastic opportunity to join ourVolkswagen Digital:Hub in Spain. As part of the global Software Development Centre network in the Volkswagen Group, we constantly seek talented individuals ready to bring their unique skills to our projects. Our start-up...


  • valència, España Canonical A tiempo completo

    Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is widely used in breakthrough enterprise initiatives such as public cloud, data science, AI, engineering innovation, and IoT. Our customers include the world's leading public cloud and silicon providers, and...


  • valència, España Canonical A tiempo completo

    2 days ago Be among the first 25 applicants We have opened several senior/staff Security Operations Engineer (SOC) positions, creating a new team reporting to the CISO. We are looking for a range of experience in these positions - at the high end we are looking for deep experience defending highly contested critical assets and high‑value cyber targets...


  • valència, España Canonical A tiempo completo

    Linux Cryptography and Security Engineer This is a unique opportunity to use your software engineering and cryptography skills to build and maintain the security foundation that enables Ubuntu and its users to operate securely and remain compliant to international information security standards such as FIPS 140-3 and Common Criteria. You will use your...

  • Linux Crypto

    hace 6 días


    valència, España Canonical A tiempo completo

    A leading software development company in Valencia seeks a Linux Cryptography and Security Engineer. In this role, you will utilize your software engineering and cryptography skills to enhance Ubuntu's security framework. You will work closely with internal teams and external partners to ensure compliance with international security standards. The position...


  • valència, España Worldwiders A tiempo completo

    A telecommunications company is seeking an experienced Application Security Analyst to evaluate software architecture and conduct security testing. The ideal candidate will have a Bachelor's degree in a related field and at least 3 years of experience in application security. Join a dynamic team in sunny Valencia and enhance your skills with diverse training...


  • valència, España BrainRocket Limited A tiempo completo

    Overview BrainRocket is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing. Young, ambitious, and unstoppable, we've already taken Cyprus, Malta, Portugal, Poland, and Serbia by storm. Our BRO team consists of 1,300 bright minds creating innovative ideas and products. We don’t follow formats. We shape...


  • valència, España BrainRocket A tiempo completo

    Overview Join to apply for the Security Program Manager role at BrainRocket . BrainRocket is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing. We offer a full-time job in the office with relocation support as needed. Our team includes 1,300 professionals delivering innovative ideas and products....