App Security Engineer - Build Security Capabilities (Equity)

Transak

Österreich

Vor Ort

EUR 90.000 - 130.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Eine komplette Bewerbung in einer Minute — maßgeschneiderter Lebenslauf und Anschreiben, versandbereit.

Schaffe es an den ATS-Filtern vorbei

Benefits dieser Stelle

Equity options
International team
Competitive package
Comprehensive benefits

Zusammenfassung

Transak is seeking its first dedicated application security hire to safeguard our widget, APIs, and user flows in a fast-moving fintech environment. You will own security end-to-end, building a capability from scratch rather than inheriting a mature programme.

Reporting to the CISO, you will embed security into the development lifecycle, run threat modelling, perform testing, and drive remediation across the software supply chain and external engagements.

Qualifikationen

  • 5+ years as a security engineer focusing on application or product security.
  • Strong understanding of web and API security including OWASP Top 10, authentication, authorization and session management.
  • Hands-on experience with security testing tools such as Burp Suite, OWASP ZAP, Snyk and Aikido.
  • Proficient in a modern language, ideally JavaScript/Node.js or Python.
  • Experience integrating security tooling into CI/CD pipelines (GitLab CI, Jenkins, GitHub Actions).
  • Experience with software composition analysis and SBOM concepts and supply chain security.
  • Ability to manage vulnerability registers, ownership, SLAs and remediation processes.
  • Threat modelling applied to real business flows and secure API architectures.
  • Knowledge of cryptography, secrets management, IAM, and secure coding practices.
  • Excellent communication skills to translate security concepts to engineers.
  • Ability to build a capability from scratch rather than inheriting a mature programme.

Aufgaben

  • Partner with engineering teams to embed security into the software development lifecycle from design to deployment.
  • Conduct security code reviews, threat modelling sessions and architecture reviews for flows handling funds and identity data.
  • Select, implement and tune SAST, DAST and SCA tools to identify vulnerabilities early in development.
  • Build and maintain automated security testing in CI/CD with gating based on severity.
  • Own the software supply chain with SBOM per service and provenance standards.
  • Create and maintain a consolidated vulnerability register with triage and remediation tracking.
  • Perform penetration testing and vulnerability assessments of web applications, APIs and mobile apps.
  • Own external penetration testing programmes and scope engagements from threat models.
  • Develop secure coding standards, reusable components and security training for engineers.
  • Create a security champions programme to scale security beyond one person.
  • Manage bug bounty programmes and coordinate with external researchers.
  • Research emerging threats and integrate defensive measures into security architecture.
  • Provide evidence of secure development and vulnerability management for DORA, MiCA, SOC 2 and ISO 27001.

Kenntnisse

Security engineering
Application security
OWASP Top 10
Secure coding
CI/CD integration
SBOM experience
Threat modelling
Cryptography basics
Strong communication

Tools

Burp Suite
OWASP ZAP
Snyk
Aikido

Jobbeschreibung

Transak is seeking its first dedicated application security hire to safeguard our widget, APIs, and user flows in a fast-moving fintech environment. You will own security end-to-end, building a capability from scratch rather than inheriting a mature programme.

Reporting to the CISO, you will embed security into the development lifecycle, run threat modelling, perform testing, and drive remediation across the software supply chain and external engagements.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Founding Application Security Engineer - Equity Options
Founding Application Security Engineer - Equity Options

Transak Inc. • Österreich

Remote
EUR 110.000 - 160.000
Equity options
International team
Application Security Engineer
Application Security Engineer

Transak • Österreich

Vor Ort
EUR 90.000 - 130.000
Equity options
International team
Competitive package
+1
Information Security Officer
Information Security Officer

Transak • Österreich

Vor Ort
EUR 110.000 - 160.000
Equity options
Open culture
Competitive compensation
+1
Product Security Engineer: Secure Coding & Pen Test Lead
Product Security Engineer: Secure Coding & Pen Test Lead

Parking Network BV • Wals-Siezenheim

Hybrid
EUR 26.000 - 31.000
Hybrid Work Model
Meal Allowance
Bike Leasing Program
+5
Product Security Engineer - Lead Secure Access Initiatives
Product Security Engineer - Lead Secure Access Initiatives

Traka (Assa Abloy) • Österreich

Hybrid
EUR 70.000 - 110.000
Meal allowance
Job bike leasing program
Transport subsidy
+4
Remote Security Engineer - AI Platform & Risk Ownership
Remote Security Engineer - AI Platform & Risk Ownership

EverAI Limited • Österreich

Remote
EUR 70.000 - 120.000
Fully remote work environment
4 weeks PTO per year
Learning budget
Senior Information Security Assurance Lead
Senior Information Security Assurance Lead

Transak • Österreich

Vor Ort
EUR 110.000 - 160.000
Equity options
Open culture
Competitive compensation
+1
Strategic Application Security Services Lead
Strategic Application Security Services Lead

Red Bull Gruppe • Österreich

Hybrid
EUR 70.000 - 90.000
Product Security Engineer — Secure Coding & Pentest Lead
Product Security Engineer — Secure Coding & Pentest Lead

Assa Abloy • Österreich

Vor Ort
Meal allowance
Job bike leasing
Transport subsidy
+4
Application Security Service Manager
Application Security Service Manager

Red Bull Gruppe • Österreich

Hybrid
EUR 70.000 - 90.000