Lead Application Security Engineer

hace 2 semanas


madrid, España Cloudlinux A tiempo completo

CloudLinux is a global remote-first company. We are driven by our principles : do the right thing, employees first, we are remote first, and we deliver high-volume, low-cost Linux infrastructure and security products that help companies to increase the efficiency of their operations. Every person on our team supports each other and does what we can to ensure we are all successful. We are truly a great place to work. Check out our website for more information https : / / cloudlinux.com / We are looking for a skilled Lead Application Security Engineer / DevSecOps Engineer who will play a key role in improving the security of our software products and driving best practices across the development lifecycle. Responsibilities Perform a security review of the company's external services. Design and implement recommendations for security hardening. Participate in all steps of SDLC as a security engineer. Design and review new features to implement the Security by Design principle. Call attention to risks and drive actions to address those risks to protect users. Qualifications Good technical knowledge and deep understanding of security, including but not limited to : web applications security(both backend and frontend),penetration testing, and modern security mechanisms. Experience in assessing the security ofWeb applications(at least 3 years) and Binary applications. Deep understanding of modern web technologies (OAuth, JWT, CORS, CSP, SOP, SameSite, etc.) and architectures. Relevant education or a good understanding of information security and information technologies basics. Experience coding / scripting in one or more general-purpose languages. Deep understanding ofLinuxarchitecture and security stack. Experience inbinary vulnerabilities and exploitation. At least an upper-intermediate level of English proficiency. Preferred Qualifications Experience in exploiting vulnerabilities found in the code. Experience with code audits, code audit automation. Experience in architecting, developing, or maintaining secure cloud solutions. Experience in review of Docker / Kubernetes architectures. Successful CTF or Bug Bountyparticipation will be a major plus. Relevant certificates (OSCP, AWAE, CREST, GPEN) will be a major plus. Benefits A focus on professional development. Interesting and challenging projects. Fully remote work with flexible working hours, which allows you to schedule your day and work from any location worldwide. Paid 24 days of vacation per year, 10 days of national holidays, and unlimited sick leaves. Compensation for private medical insurance. Co-working and gym / sports reimbursement. Budget for education. The opportunity to receive a reward for the most innovative idea that the company can patent. By applying for this position, you agree withCloudLinux Privacy Policy ( https : / / cloudlinux.com / legal / privacy-policies-hub / )and give us your consent to maintain and process your personal data with this respect. Please read our Privacy Policy for more information. #J-18808-Ljbffr


  • Remote Lead

    hace 2 semanas


    Madrid, España Cloudlinux A tiempo completo

    A leading global remote-first tech company is seeking a skilled Lead Application Security Engineer to enhance the security of their software products. This role involves performing security reviews, designing hardening recommendations, and participating throughout the SDLC. Ideal candidates should possess strong knowledge of web application security,...


  • Madrid, Madrid, España Liebherr Group A tiempo completo

    The Application Security Engineer is responsible for integrating security into the software development lifecycle (SDLC), conducting security testing, and ensuring applications are resilient to cyber threats. They work closely with development teams to identify, remediate, and prevent security vulnerabilities.We're looking for an Application Security...


  • Madrid, España Cloudlinux A tiempo completo

    CloudLinux is a global remote-first company. We are driven by our principles: do the right thing, employees first, we are remote first, and we deliver high-volume, low-cost Linux infrastructure and security products that help companies to increase the efficiency of their operations. Every person on our team supports each other and does what we can to ensure...


  • Madrid, España Ivanti A tiempo completo

    Staff Application Security Engineer – Ivanti Are you an experienced Staff Security Engineer driven to deliver cutting‑edge security solutions and champion technical excellence? At Ivanti, you will play a pivotal role in shaping the future of secure digital work by designing and enhancing world‑class products used across the globe. Join our dynamic,...


  • Madrid, España BrainRocket A tiempo completo

    BrainRocket is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing. Young, ambitious, and unstoppable, we've already taken Cyprus, Malta, Portugal, Poland, and Serbia by storm. Our BRO team consists of 1,300 bright minds creating innovative ideas and products. We don't follow formats. We shape them. We build...


  • Madrid, España Ivanti A tiempo completo

    Ivanti Madrid, Community of Madrid, Spain Staff Application Security Engineer – Ivanti Are you an experienced Staff Security Engineer driven to deliver cutting‑edge security solutions and champion technical excellence? At Ivanti, you will play a pivotal role in shaping the future of secure digital work by designing and enhancing world‑class products...


  • Madrid, España Backbase A tiempo completo

    The job in short: Keep millions of users and their banking data safe and secure.No day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in hand, and with hackers and tech evolving daily, you'll need to stay on your toes and ahead of the game.Your core responsibility is to guide and...


  • Madrid, España Liebherr Group A tiempo completo

    Overview The Application Security Engineer is responsible for integrating security into the software development lifecycle (SDLC), conducting security testing, and ensuring applications are resilient to cyber threats. They work closely with development teams to identify, remediate, and prevent security vulnerabilities. We’re looking for an Application...


  • Madrid, España Liebherr A tiempo completo

    The Application Security Engineer is responsible for integrating security into the software development lifecycle (SDLC), conducting security testing, and ensuring applications are resilient to cyber threats. They work closely with development teams to identify, remediate, and prevent security vulnerabilities.We're looking for an Application Security...


  • Madrid, España Ivanti A tiempo completo

    Ivanti Madrid, Community of Madrid, SpainStaff Application Security Engineer – IvantiAre you an experienced Staff Security Engineer driven to deliver cutting‑edge security solutions and champion technical excellence? At Ivanti, you will play a pivotal role in shaping the future of secure digital work by designing and enhancing world‑class products used...