Security Architect / Senior Security Engineer - Wizeline

Wizeline

Madrid

Híbrido

EUR 90.000 - 130.000

Jornada completa

Hace 3 días
Sé de los primeros/as/es en solicitar esta vacante

Recibe más respuestas de empleadores

Envía un currículum específico para el puesto de trabajo en cuestión de minutos.

Ventajas ofrecidas por este puesto de trabajo

Health benefits
Retirement plans
Global mobility opportunities
Flexible work policy

Descripción de la vacante

Wizeline in Madrid, Spain is seeking a Security Architect / Senior Security Engineer to design and secure complex applications across cloud and on-prem environments.

You will lead offensive and defensive AppSec, drive security tooling, and embed risk-based controls into CI/CD while aligning with OWASP SAMM and regulatory requirements.

Formación

  • Penetration Testing
  • Red Teaming
  • Code Review
  • Threat Modeling
  • OWASP Top 10

Responsabilidades

  • Conduct dynamic and static application security testing (SAST/DAST/SCA), red team exercises, and code reviews on live apps and APIs.
  • Prioritize remediation using CVSS and business context; patch code and config without downtime.
  • Manage security tooling: Wiz, Snyk, Qualys, Burp Suite Pro, OWASP ZAP.
  • Embed security checks in GitHub CI/CD pipelines (shift-left security).
  • Perform threat modeling and architecture reviews per OWASP SAMM; ensure PCI-DSS, HIPAA, GDPR compliance.
  • Secure hybrid/cloud environments across AWS, containers, and on-premises.

Descripción del empleo

Security Architect / Senior Security Engineer - Wizeline Wizeline madrid, Spain

We are:

Wizeline, a global AI-centric technology solutions provider, develops cutting-edge, AI-powered digital products and platforms. We partner with clients to leverage data and AI, accelerating market entry and driving business transformation. As a global community of innovators, we foster a culture of growth, collaboration, and impact.

With the right people and the right ideas, there’s no limit to what we can achieve

Sounds awesome, right? Now, let’s make sure you’re a good fit for the role:

Responsibilities:
  • Application Security & Offensive Testing: Conduct dynamic and static application security testing (SAST/DAST/SCA), red team exercises, penetration testing, and manual code reviews on live applications and APIs to uncover business logic flaws and vulnerabilities beyond automated scanner capabilities.
  • Vulnerability Remediation & Triage: Establish risk-based prioritization criteria (CVSS, exploitability, business context) and directly execute code-level patches and infrastructure configuration fixes across .NET, Java, and React stacks without disrupting operational continuity.
  • AppSec & Security Tooling Management: Manage, configure, and optimize primary scanning tools, focusing on Wiz, Snyk, Qualys, and dynamic analysis tools (Burp Suite Enterprise/Pro, OWASP ZAP).
  • DevSecOps & Pipeline Integration: Embed automated security checks, SAST/SCA scanning, and compliance gates directly into GitHub CI/CD pipelines for continuous verification and shift-left security.
  • Governance & Architecture Alignment: Perform threat modeling and architecture security reviews based on OWASP SAMM principles, ensuring existing solutions meet organizational security baselines and compliance requirements (e.g., PCI-DSS, HIPAA, GDPR).
  • Hybrid & Cloud Security: Secure and harden hybrid architecture spanning primary AWS cloud environments, containerized workloads, and on-premise infrastructure.
Must-have Skills

To be successful in this role, you must have:

  • Offensive & Defensive AppSec: Proven experience in Penetration Testing, Red Teaming, manual code review, and dynamic application analysis using tools like Burp Suite Professional and OWASP ZAP.
  • AppSec Tooling Mastery (SAST / DAST / SCA): Deep hands‑on expertise with Wiz (primary), Snyk, Qualys, SonarQube, and automated DAST tools integrated into active environments.
  • Code & Infrastructure Remediation: Demonstrated ability to refactor vulnerable code, apply security patches, and remediate OWASP Top 10 vulnerabilities across .NET, Java, and React application stacks.
  • DevSecOps & Secret Management: Hands‑on experience securing CI/CD pipelines (GitHub Actions) and implementing dynamic secret management (AWS KMS, HashiCorp Vault, IAM Roles).
  • Security Frameworks: Strong command of OWASP Top 10, OWASP SAMM, threat modeling methodologies, and Software Bill of Materials (SBOM) management.
  • Cloud & Hybrid Infrastructure: Solid experience securing AWS environments, IAM policies, network security controls, and hybrid setups.
What we offer:
  • Health benefits & wellness programs
  • Savings & retirement plans
  • Global mobility opportunities
  • Flexible work policy and remote-friendly approach
  • Happy hours, gaming tournaments, sports activities & more
  • Continuous learning & training programs with WizeAcademy
  • Free certifications in cloud technologies and coding languages

Find out more about our culture here.

Security Architect / Senior Security Engineer - Wizeline madrid, Spain

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Security Architect / Senior Security Engineer - Wizeline
Security Architect / Senior Security Engineer - Wizeline

Wizeline • Valencia

Híbrido
EUR 90.000 - 130.000
Health benefits
Retirement plans
Global mobility opportunities
+3
Security Architect / Senior Security Engineer
Security Architect / Senior Security Engineer

Wizeline • España

Híbrido
EUR 70.000 - 110.000
Health benefits
Retirement plans
Global mobility
+4
Security Architect / Senior Security Engineer
Security Architect / Senior Security Engineer

Wizeline • Lugo

Híbrido
EUR 70.000 - 110.000
Global mobility opportunities
Flexible work policy
Remote-friendly approach
+1
Site Reliability Engineer
Site Reliability Engineer

Wizeline • Barcelona

Híbrido
EUR 70.000 - 100.000
Health benefits
Wellness programs
Global mobility
+3
security engineer for web applications
security engineer for web applications

Enfint • Barcelona

Presencial
EUR 60.000 - 90.000
Commitment to professional development
Flexible and collaborative culture
Global opportunities
+2
Security Engineer - Product
Security Engineer - Product

Wiz • Madrid

Presencial
EUR 70.000 - 100.000
Senior AppSec Architect & Security Engineer
Senior AppSec Architect & Security Engineer

Wizeline • Navarra

Presencial
EUR 60.000 - 90.000
Competitive compensation
Health benefits & wellness programs
Savings & retirement plans
+4
Senior AppSec Architect — Cloud, DevSecOps & Threat Modeling
Senior AppSec Architect — Cloud, DevSecOps & Threat Modeling

Wizeline • Valencia

Híbrido
EUR 90.000 - 130.000
Health benefits
Retirement plans
Global mobility opportunities
+3
Security Architect / Senior AppSec Engineer - Remote-Ready
Security Architect / Senior AppSec Engineer - Remote-Ready

Wizeline • España

Híbrido
EUR 70.000 - 110.000
Health benefits
Retirement plans
Global mobility
+4
.NET Developer
.NET Developer

Wizeline • Barcelona

Híbrido
EUR 40.000 - 60.000
Health benefits & wellness programs
Savings & retirement plans
Global mobility opportunities
+2