Application Security Engineer
hace 1 semana
Join to apply for the Application Security Engineer (Web3) role at Institute of Free Technology 1 day ago Be among the first 25 applicants Join to apply for the Application Security Engineer (Web3) role at Institute of Free Technology Direct message the job poster from Institute of Free Technology *Only apply if you have several years of experience in Blockchain/Web3/Crypto* About Vac: Vac builds public good protocols for the decentralised web. We do applied research based on which we build protocols, libraries and publications. Vac’s R&D Service Units are integral to supporting IFT (The Institute of Free Technology) projects by researching and developing base components and secure, unbiased protocols. The Vac Security service unit provides comprehensive support to IFT projects by conducting security audits and helping develop robust security plans. In addition to assisting IFT projects, the security team also supports other IFT services by offering expert guidance on security best practices and risk management strategies. This collaborative approach ensures that all aspects of the IFT ecosystem benefit from enhanced security measures. By identifying potential vulnerabilities, assessing risks, and implementing effective security solutions tailored to specific needs, the Vac Security service unit plays a crucial role in strengthening the overall security posture of IFT. The role: We are looking for an Application Security Engineer to join our security service unit. In this role, you’ll perform in-depth reviews of critical code (with a focus on low-level languages like Rust, Nim, and C++), identify both code-level and protocol-level vulnerabilities, and support incident response efforts. You’ll collaborate closely with development teams to remediate security issues and ensure best practices are followed. You’ll also play a key role in preparing for external security audits—defining audit scope, organising technical documentation, and working directly with auditors to ensure valuable and actionable results. This is a hands-on position for someone passionate about secure software development and proactive risk mitigation. Key responsibilities: Perform in-depth manual and automated reviews of source code (with a focus on low-level languages such as Rust, Nim, and C++) to identify security vulnerabilities and logic flaws. Analyse and review critical code paths for potential weaknesses. Identify and assess both code-level vulnerabilities (e.g., buffer overflows, injection flaws) and protocol-level issues (e.g., insecure cryptographic implementations, protocol misconfigurations). Execute incident response activities, including detection, analysis, containment, and recovery, while documenting findings and lessons learned for continuous improvement. Collaborate with development and product teams to remediate identified vulnerabilities, provide security guidance, and ensure secure coding practices are followed. Define clear audit objectives and scope for external audits, focusing on the most critical components and protocols. Prepare and organise all relevant documentation (architecture diagrams, codebase, threat models, protocol specifications) to facilitate an efficient and valuable external audit process. Engage with external auditors early to clarify expectations and provide necessary context, ensuring the audit delivers actionable results. Address and remediate issues identified in previous audits, and document improvements to demonstrate ongoing security maturity. You ideally will have: Minimum of 5 years of experience in Web3 security engineering, with proven experience securing blockchain protocols, smart contracts, or cryptographic systems. Expertise in secure coding practices, including identification of code/protocol-level vulnerabilities (e.g., buffer overflows, injection attacks) and code analysis/debugging. Experience with manual/automated code review techniques and penetration testing in Web3 ecosystems. Familiarity with cryptographic protocols, secure protocol design, and blockchain/distributed systems security. Incident response capabilities (detection, analysis, containment, recovery). Experience collaborating with development/product teams to remediate vulnerabilities, including SSDLC processes and external audit preparation. Strong documentation and communication skills for technical materials and stakeholder interactions (internal teams, auditors). Deep interest in blockchain technology and decentralisation. Experience with static and dynamic analysis tools (e.g. CodeQL, Valgrind). Knowledge of formal verification methods and tools. Background in penetration testing or red teaming. Ability to educate and train others on security best practices. Contributions to open-source security projects or published security research. Hiring process: Interview with our POps team. Interview with the Vac Security unit lead. Take home assignment + discussion with a team member from the Vac Security unit. Interview with a Vac team lead. Compensation: We are happy to pay in any mix of fiat/crypto. Seniority level Seniority level Mid-Senior level Employment type Employment type Full-time Job function Job function Research Industries Technology, Information and Internet Referrals increase your chances of interviewing at Institute of Free Technology by 2x Sign in to set job alerts for “Application Security Engineer” roles. We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI. #J-18808-Ljbffr
-
Application Security Engineer
hace 2 semanas
Barcelona, España JR Spain A tiempo completoApplication Security Engineer, Barcelona Client: Preply Location: Barcelona, Spain Job Category: Other EU work permit required: Yes Job Reference: Job Views: 2 Posted: Expiry Date: Job Description: At Preply, we are unlocking human potential through learning. We believe learning with a great tutor is life-changing. That's why we match online tutors from...
-
Application Security Engineer
hace 2 semanas
Barcelona, Barcelona, España Maisa AI A tiempo completoApplication Security EngineerLocation: Valencia / Madrid / Barcelona - Spain Hybrid / Remote.Team: EngineeringWelcome to Maisa - Making AI AccountableOur agentic process automation platform helps enterprises automate complex, decision-heavy processes that traditional automation can't handle and GenAI can't be trusted with. We enable organizations to scale...
-
Application Security Engineer
hace 2 semanas
Barcelona, España JR Spain A tiempo completoApplication Security Engineer, BarcelonaClient: PreplyLocation: Barcelona, SpainJob Category: OtherEU work permit required: YesJob Reference: 518802070055577190432460Job Views: 2Posted: 23.07.2025Expiry Date: 06.09.2025Job Description:At Preply, we are unlocking human potential through learning. We believe learning with a great tutor is life-changing. That's...
-
Application Security Architect
hace 3 semanas
Barcelona, España Itequia A tiempo completoAbout the RoleWe are looking for an experienced and passionate Application Security Architect with a strong background in software development and a deep interest in cybersecurity. You will join the team of one of our most prestigious clients to lead the design and implementation of secure application architectures in a highly regulated and innovation-driven...
-
Mid-level Application Security Engineer
hace 2 semanas
Barcelona, Barcelona, España Cognizant Technology Solutions A tiempo completoWhat makes Cognizant a truly unique place to work?Cognizant offers strong growth, global reach and an innovative environment where tech professionals can deliver meaningful, high‑impact work. Teams collaborate across regions to build and deliver advanced solutions for leading companies, enabling greater agility, innovation and performance.We are looking...
-
Cyber Security Engineer
hace 1 día
Barcelona, Barcelona, España Clarivate A tiempo completoWe are seeking a motivated and skilled Cyber Security Engineer to join Product Security team. This role will primarily focus on managing and enhancing Web Application Firewalls (WAFs) and strengthening Product Security. The ideal candidate will bring hands-on experience with security technologies, a keen understanding of application security challenges, and...
-
Security Engineer
hace 1 semana
Barcelona, España Unobravo International A tiempo completoFrom day one at Unobravo, we’ve been on a mission to make mental health support truly accessible to everyone by normalizing therapy, fostering openness, and breaking down the stigma that still surrounds it. Our success is driven by an exceptional team dedicated to providing high-quality, accessible care, anytime, anywhere. With over 9,000 qualified...
-
Security Cloud Engineer
hace 2 semanas
Barcelona, España Adevinta A tiempo completoJoin to apply for the Cloud Defensive Security Engineer (Elastic) role at Adevinta We're Adevinta , a global leader in digital marketplaces. Our brands – including Marktplaats in the Netherlands, mobile.Global Tech Hubs in Barcelona, Amsterdam, Paris, and Berlin develop common products and innovation platforms that are highly scalable, customisable, and...
-
Application Security Engineer
hace 2 semanas
Barcelona, España Wolters Kluwer A tiempo completo#Bethedifference If making the difference matters to you, then you matter to us. Join us, at Wolters Kluwer, and be part of a dynamic global technology company that makes a difference every day. We’re innovators with impact. We provide expert software & information solutions that the world’s leading professionals rely on, in the moments that matter...
-
WAF Cyber Security Engineer
hace 2 semanas
Barcelona, España Clarivate A tiempo completoJoin to apply for the Cyber Security Engineer role at Clarivate. This position will focus on managing and enhancing Web Application Firewalls (WAFs) and strengthening Product Security. The ideal candidate will bring hands‑on experience with security technologies, a keen understanding of application security challenges, and the ability to collaborate with...