Application Security Engineer

hace 2 semanas


En remoto, España Scalefast A tiempo completo

Scalefast helps amazing brands develop a successful Direct-to-Consumer online business. Our next-generation technology platform is built to optimize modern eCommerce. Our end-to-end infrastructure includes global merchant-of-record agreements, fulfillment, subscription, loyalty programs, and finance functions to deliver new revenue and delightful brand experiences. Scalefast has proven itself with global brands like L’Oréal, Square-Enix, and Flir.

As a member of our Application Security Engineering team, the Application Security Engineer performs security architecture reviews of new and existing platforms. Partner with business units, departments providing input on security standard methodologies throughout project-lifecycles. They contribute to the Security programs by performing reviews and security audits. Talk confidently about our cybersecurity programs and help integrate our business needs with our Application Security needs.

**_
What _**_do we offer?_**
- Competitive salary and a career path adapted to each person's abilities and experience within a company that is growing continuously
- Hybrid way of working
- A flexible schedule and total conciliation between work and family life including reduced timetable during one month in summer
- Become part of a multi-cultural company where you can contribute with your experience and learn from the experience of others
- Work with amazing brands
- Get the opportunity to influence the future of our services and platform
- Excellent working environment with frequent social activities (hackathons, Spartan races, quarterly whole-team social event)
- Central Madrid office located an 8-minute walk from Atocha train station, with a bus stop and BiciMad station right outside the office
- Kitchen and dining facilities as well as a fully stocked games room with games consoles etc. - great to disconnect from work for a while and have fun with your colleagues
- Discounted parking space in the office building if you’re coming by car, bicycle parking for those worried about their carbon footprint
- Mental Health Wellbeing Program

**Responsibilities**:

- Contributing features to internally developed Cybersecurity tools and integrating those tools into the DevOps pipelines.
- Oversee development lifecycles and analyze security information related.
- Driving continuous improvement to the DevOps pipelines.
- Research appropriate security testing tools.
- Participating in security issue management processes.
- Educate and support teams to perform their safety code reviews.
- Keep updated the SDLC security guidelines.
- Aligns security deliverables with regulatory and contractual requirements that conform with security framework and
- standards such as NIST SP 800-53, OWASP Top 10, CIS Top 20.
- Define, implement, and monitor security measures to protect Scalefast stores and company and client assets

**Requirements**:

- You have a passion for security and open source.
- Proven experience with Web Application Security Testing, Code Reviews, Vulnerability Assessment.
- Knowledge of automated security testing tools like SAST, DAST, SCA, IAST, and fuzz testing tools.
- Linux experience, comfortable between Debian and RHEL based systems.
- Positive and solution-oriented mindset.
- Experience working with Cloud in a security-enabled environment.
- Knowledge of common authentication technologies including OAuth, SAML, CAs, OTP/TOTP.
- Knowledge of browser-based security controls such as CSP, HSTS, XFO.
- Proven ability to work independently, collaboratively as part of a global team and deliver to multiple deployment schedules.
- English written and verbal communication skills.

**Nice-to-haves**
- Experience with AWS.
- Information security professional certifications encouraged (SANS GIAC, CISSP etc.).
- Computer science education or equivalent experience.
- Experience in a peak performance organization, preferably a tech startup.
- Experience working with a remote team.
- Experience working with a global and multicultural team.
- Passionate about/experienced with open source and developer tools



  • remoto, España Cimpress A tiempo completo

    A leading design and marketing company in Spain is seeking an Application Security Engineer. This role involves developing automation tools, managing security assessments, and ensuring compliance with security standards. This position is perfect for candidates with over 5 years of experience in application security and cloud platforms like AWS, GCP, or...


  • remoto, España Cloudlinux A tiempo completo

    CloudLinux is a global remote-first company. We are driven by our principles: do the right thing, employees first, we are remote first, and we deliver high-volume, low-cost Linux infrastructure and security products that help companies to increase the efficiency of their operations. Every person on our team supports each other and does what we can to ensure...


  • En remoto, España mLabs A tiempo completo

    Principal Security Engineer - Blockchain Wallet InfrastructureLocation: Remote - Location: US or EU (remote-first, office optional). Must be in the US, not Canada or in the European Union. France or Paris or as close as possible, always preferredCompensation: $220K - $300KJoin a stellar team of leaders and experts in blockchain technology, cryptography, and...

  • Security Engineer

    hace 1 día


    En remoto, España EDpuzzle A tiempo completo

    About usEdpuzzle is a leading edtech company with offices in San Francisco and Barcelona and over 12 years of history helping teachers find and create exciting, interactive learning experiences. We're a software company built by teachers, for teachers, committed to empowering educators with intuitive software to engage students all in one place, from video...

  • Security Engineer

    hace 1 semana


    En remoto, España EIS Group A tiempo completo

    Department508 Production OperationsEmployment TypeFull TimeLocationRemote, SpainWorkplace typeFully remoteCompensation€2,700 - €3,000 / monthWe are looking for a Junior Security Engineer with a strong interest in application security and penetration testing to grow with our team. In this role, you will support the safeguarding of our SaaS platform and...


  • remoto, España Vistaprint A tiempo completo

    Lead Application Security Engineer, Vista Technology - Spain Remote Location: ES Company: Vista Our Team Vista Security is a global team that ensures that security risks are identified and managed, and that customer trust is maintained by creating a culture of security in which engineers are empowered via standards, tools, processes, and training to...


  • En remoto, España Meta A tiempo completo

    Meta Security is looking for an Incident Response Engineer with experience in the identification, containment and mitigation of security incidents. You will be analyzing different data sources to detect, investigate and respond to internal and external threats. You will also be working with our software and production engineering teams to develop scalable...


  • En remoto, España Databricks A tiempo completo

    RDQ125R33 The Databricks Security Assurance Team enables Databricks to achieve third party certifications and to manage vendor security risk, in order to help secure Databricks and provide confidence to customers. As a Staff Security Assurance Engineer with a focus on vendor security risk, you will be responsible for performing vendor security reviews, as...


  • En remoto, España Aver Information Europe BV A tiempo completo

    Spanning 4 separate continents with 15 international offices serving over 100 countries through 700 employees worldwide, our far-reaching international presence and extensive network of reliable distribution channels continue to empower us to serve our customers on a global scale with unsurpassed service and dedicated support. We are looking for an SAE...


  • En remoto, España Ciklum A tiempo completo

    **Description**: **Ciklum** is looking for an** Expert Network Security Engineer **to join our team full-time in Spain. We are a leading global product engineering and digital services company that unites 4000+ seasoned professionals globally on various projects in healthcare, fintech, travel, sportswear, entertainment, and security. Ciklum delivers...