AppSec Engineer - AI-Driven Security for SaaS

Medium

Barcelona

Híbrido

EUR 60.000 - 95.000

Jornada completa

14 días+
Generador de candidaturas

Destaca en este puesto — crea un currículum adaptado y una carta de presentación en aproximadamente un minuto.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Stock options
Hybrid work policy
Generous PTO

Descripción de la vacante

Contentsquare is seeking an Application Security Engineer to join our Barcelona team and safeguard our SaaS platform. You will collaborate with product managers and developers, plus external researchers, to maintain high security standards across global applications.

You’ll lead automated audits, mentor engineers on secure coding, and drive vulnerability lifecycle automation while advancing AI-driven security workflows in CI/CD pipelines.

Formación

  • 3+ years of professional experience in Application Security Operations within a high-growth SaaS or cloud-native environment.
  • Advanced proficiency in securing modern technical stacks, with specific expertise in NestJS, Vue.js, and Angular frameworks.
  • Hands-on experience with enterprise security tooling, including Snyk, Datadog ASM/AppSec (WAF), Google SecOps, and Crowdstrike.
  • Deep architectural understanding of AWS and Azure environments, including Kubernetes/Docker container security and Infrastructure as Code (Terraform).
  • Demonstrated ability to apply AI and LLM technologies to automate security tasks, such as automated vulnerability validation or code analysis at scale.
  • Expertise in scripting and development (Python, Node.js, Shell) to build custom security tooling and integrations.
  • Comprehensive knowledge of web protocols, OWASP Top 10, and advanced threat frameworks (MITRE ATT&CK, NIST CSF).
  • Proven track record in ethical hacking, CTF competitions, or bug bounty hunting, showcasing a high level of technical tenacity and analytical rigor.
  • Exceptional cross-functional collaboration skills, with the ability to articulate complex security risks to both technical and non-technical stakeholders.
  • Fluency in English is mandatory

Responsabilidades

  • Conduct continuous, automated security audits of our global SaaS applications to identify misconfigurations and ensure strict adherence to industry-standard security benchmarks and internal best practices.
  • Serve as a strategic security consultant to product and engineering teams, facilitating complex threat modeling sessions and AppSec reviews during the design phase to proactively mitigate risks.
  • Perform deep-dive, security-focused code reviews and mentor developers on secure coding patterns to minimize the introduction of high-impact vulnerabilities.
  • Architect and manage the end-to-end vulnerability lifecycle, developing sophisticated automation for the triage, reporting, and remediation tracking of security flaws across cloud infrastructure and application layers.
  • Orchestrate and optimize AI-driven security workflows, leveraging LLMs and autonomous agents to conduct scalable, proactive vulnerability discovery and validation within our CI/CD pipelines.
  • Lead "Shift-Left" initiatives by integrating security checkpoints into the automation stack, developing custom security-as-code tools that empower developers to own security outcomes.
  • Oversee the strategic direction of our private and public bug-bounty programs, ensuring high-quality engagement with the researcher community and rapid internal response to critical findings.
  • Coordinate specialized external penetration testing engagements and customer-driven security assessments, acting as the primary technical point of contact for complex security inquiries.
  • Drive the technical response to application-level security incidents, conducting root-cause analysis to prevent recurrence and enhance our defensive posture.

Conocimientos

Application Security Operations
NestJS
Vue.js
Angular
AI/LLM for security
Python
Node.js
Shell
Security tooling
Threat modeling
Communication across teams
Secure coding practices
English fluency

Herramientas

Snyk
Datadog ASM/AppSec
Google SecOps
Crowdstrike
AWS
Azure
Kubernetes
Docker
Terraform

Descripción del empleo

Contentsquare is seeking an Application Security Engineer to join our Barcelona team and safeguard our SaaS platform. You will collaborate with product managers and developers, plus external researchers, to maintain high security standards across global applications.

You’ll lead automated audits, mentor engineers on secure coding, and drive vulnerability lifecycle automation while advancing AI-driven security workflows in CI/CD pipelines.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

AI-Driven AppSec Engineer (Hybrid/Remote)
AI-Driven AppSec Engineer (Hybrid/Remote)

Contentsquare • Bellprat

Presencial
EUR 60.000 - 90.000
Virtual onboarding
Hackathon
Work flexibility: hybrid and remote
+5
Remote AppSec Engineer - SaaS Security & Bug Bounty
Remote AppSec Engineer - SaaS Security & Bug Bounty

Contentsquare • Barcelona

Híbrido
EUR 65.000 - 95.000
Stock options
Hybrid/Remote work policy
Career development
+2
Application Security Engineer
Application Security Engineer

Medium • Barcelona

Presencial
EUR 60.000 - 95.000
Stock options
Hybrid work policy
Generous PTO
Application Security Engineer
Application Security Engineer

Contentsquare • Bellprat

Presencial
EUR 60.000 - 90.000
Virtual onboarding
Hackathon
Work flexibility: hybrid and remote
+5
Application Security Engineer
Application Security Engineer

Contentsquare • Barcelona

Presencial
EUR 65.000 - 95.000
Stock options
Hybrid/Remote work policy
Career development
+2
Offensive Security Engineer - App Security & AI Tools
Offensive Security Engineer - App Security & AI Tools

Commit • Barcelona

Presencial
EUR 65.000 - 100.000
Application Security Engineer — Proactive Pen Testing
Application Security Engineer — Proactive Pen Testing

Factorial • Barcelona

Híbrido
EUR 40.000 - 55.000
Private health insurance
Wellhub gym access
Office breakfast
Senior Product Security Engineer — AI/SDLC Leader (Remote)
Senior Product Security Engineer — AI/SDLC Leader (Remote)

N26 • Barcelona

Híbrido
EUR 90.000 - 130.000
Work from home budget
Fitness & wellness discounts
Language apps
+2
Hybrid App Security Engineer | Proactive Pentesting
Hybrid App Security Engineer | Proactive Pentesting

Factorial HR • Barcelona

Híbrido
EUR 40.000 - 55.000
Health insurance
Gym access
Cobee benefits
+5
AI Security DevSecOps Engineer - Governance & Compliance
AI Security DevSecOps Engineer - Governance & Compliance

MediaMarktSaturn Plattform Services GmbH • Barcelona

Híbrido
EUR 70.000 - 100.000
MediaMarkt discount
Flexible Pay
Flexible working hours
+6