Arquitecto de Seguridad de Aplicaciones

Itequia

Barcelona

Híbrido

EUR 90.000 - 120.000

Jornada completa

14 días+
Generador de candidaturas

Destaca para este puesto: genera un currículum y una carta de presentación adaptados en cuestión de un minuto.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Flexible hybrid model
Continuous learning opportunities
Low bureaucracy culture

Descripción de la vacante

A global pharmaceutical leader in Barcelona is seeking a highly skilled security team member focused on application security. The role combines defining secure architecture patterns, leading security reviews, and mentoring developers. Candidates should have over 5 years of cybersecurity experience, ideally with a background in software development or penetration testing. The position offers a hybrid work model, access to continuous learning opportunities, and a security-first culture that values true ownership and impact.

Formación

  • 5+ years in cybersecurity with a focus on application security.
  • Background as a software developer or penetration tester.
  • Knowledge of authentication protocols and cryptographic standards.
  • Hands-on security architecture reviews and code analysis experience.
  • Fluency in secure coding standards: OWASP Top 10, CWE, etc.
  • Ability to translate technical risk for non-technical audiences.
  • Advanced English and Spanish proficiency.

Responsabilidades

  • Define and implement secure architecture patterns for applications.
  • Lead threat modeling sessions and security reviews.
  • Champion secure coding practices and mentor developers.
  • Champion secure coding practices and secure CI/CD across teams.
  • Translate risks into business-friendly language for stakeholders.
  • Mentor developers and architects to grow security advocates.
  • Contribute to enterprise security frameworks (IAM, network, APIs).

Conocimientos

Application security focus
Cybersecurity experience
Secure coding practices
Fluent in English and Spanish
SAST/DAST
Secure CI/CD
Risk communication
English
Spanish

Herramientas

Burp Suite
ZAP
SonarQube
Snyk

Descripción del empleo

If you've built software and then became obsessed with breaking it — or if you've spent years finding vulnerabilities and now want to prevent them by design — this role was written for you🚀

You're join the security team of a global pharmaceutical leader to define how applications are built securely from the ground up. This is not a compliance checkbox role. This is about real ownership, real impact, and building a security culture that developers actually embrace.

What you'll do 🙌
  • Define and implement secure architecture patterns for enterprise applications — from design through deployment.
  • Lead threat modeling sessions and security reviews (architecture, code, APIs) across development teams.
  • Be the go-to reference for authentication, certificate management, and cryptographic standards.
  • Champion secure coding practices — OWASP, SAST/DAST, secure CI/CD — and make developers want to follow them.
  • Translate complex security risks into language that resonates with business stakeholders.
  • Mentor developers and software architects; turn security-aware engineers into security advocates.
  • Contribute to enterprise-wide security frameworks covering IAM, network security, and application interfaces.
What we're looking for 🎯
Must-haves:
  • 5+ years in cybersecurity with a clear focus on application security.
  • Background as a software developer or penetration tester — you understand how things break because you've built or broken them.
  • Solid knowledge of authentication protocols, digital certificates, and cryptographic standards.
  • Hands‑on experience with security architecture reviews and code analysis.
  • Fluency in secure coding standards: OWASP Top 10, CWE, and friends.
  • Ability to communicate technical risk clearly to non‑technical audiences.
  • Advanced English and Spanish (working proficiency in both).
Great to have (but not blockers):
  • Experience in regulated environments: MDR, HIPAA, GxP, or similar.
  • Familiarity with pharma or healthcare sector dynamics.
  • Hands‑on with tools like Burp Suite, ZAP, SonarQube, or Snyk.
  • Knowledge of DevSecOps and secure pipeline design.
  • 1+ year in a formal Security Architect or equivalent role.
What we offer 🤝

🏠 Hybrid model: Meaningful flexibility — most of the team commutes from Barcelona without issue.

🎓 Continuous learning: Access to certifications, conferences, and training budget.

🤝 Culture: Security‑first mindset, low bureaucracy in the security team, and a company that genuinely values this function.

We know this profile is rare. We're not looking for someone who checks every single boxwe're looking for someone with the right foundation and the drive to grow into the full scope of this role.

If you came from development and have been shifting toward security, or if you've been doing pentesting and want to move into architecture — let's talk. The 'nice to have' items are genuinely nice to have, not hidden requirements. 🚀

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior Security Architect
Senior Security Architect

Adidas • España

Híbrido
EUR 70.000 - 100.000
Hybrid work setup
Competitive salary
Adidas product discounts
+1
Arquitecto de Seguridad de Apps: Diseña desde Cero
Arquitecto de Seguridad de Apps: Diseña desde Cero

Itequia • Barcelona

Híbrido
EUR 90.000 - 120.000
Flexible hybrid model
Continuous learning opportunities
Low bureaucracy culture
Security Architect (Hybrid role in Barcelona)
Security Architect (Hybrid role in Barcelona)

Michael Page • Barcelona

Presencial
EUR 70.000 - 110.000
Cloud Security Engineer
Cloud Security Engineer

Montash • Barcelona

Híbrido
EUR 70.000 - 95.000
Health insurance
Learning budget
Flexible working
Product Security Engineer
Product Security Engineer

Gomining • España

Híbrido
EUR 65.000 - 90.000
Professional development
Flexible work arrangement
Paid time off
+2
Security Champion - Arquitectura IT
Security Champion - Arquitectura IT

El Corte Inglés • Madrid

Híbrido
EUR 40.000 - 60.000
Retribución flexible
Beneficios sociales exclusivos
Desarrollo profesional y crecimiento interno
Application Security Consultants - Security by Design
Application Security Consultants - Security by Design

Accenture España • Madrid

Presencial
EUR 45.000 - 65.000
Senior Application Security Engineer (Spain Only)
Senior Application Security Engineer (Spain Only)

Tecnosylva • León

Presencial
EUR 90.000 - 130.000
Competitive salary
Private health insurance
Annual bonus
+2
Senior Application Security Engineer
Senior Application Security Engineer

LeoVegas Group • Málaga

Híbrido
EUR 70.000 - 100.000
Hybrid work policy
Workation benefits
Wellness contribution
+7
Engineering
Engineering

Nexthink SA • Madrid

Híbrido
EUR 90.000 - 120.000
Hybrid work model
Private Health Insurance (Sanitas)
Daily meal vouchers 11 EUR
+1