¡Activa las notificaciones laborales por email!

Senior Application Security Engineer

Backbase

Madrid

Presencial

EUR 70.000 - 90.000

Jornada completa

Hace 30+ días

Descripción de la vacante

Join a pioneering company in banking technology as a Senior Application Security Engineer, where you will play a crucial role in ensuring the security of software used by millions globally. This position offers the opportunity to work closely with development teams, guiding them in secure coding practices and security testing. With a focus on continuous learning and innovation, you will be part of a dynamic team that thrives on pushing limits and delivering impactful solutions. If you have a hacker mindset and a passion for security, this is the perfect opportunity to grow your skills and make a difference in the industry.

Formación

  • Strong understanding of application security and vulnerabilities.
  • Expertise in frontend, backend, or mobile security domains.
  • Experience in identifying and resolving security issues.

Responsabilidades

  • Guide and support developer teams in secure banking solutions.
  • Analyze software from a security perspective.
  • Perform security code reviews and mentor new team members.

Conocimientos

Application Security
Frontend Security
Backend Security
Mobile Security
DevOps
Cloud Native Technologies
Security Vulnerabilities
Security Code Reviews
English (Professional Level)

Educación

Background in Development

Herramientas

OWASP ASVS/M-ASVS
SAST
SCA
IAST
RASP
Descripción del empleo

The job in short: keep millions of users and their banking data safe and secure.

No day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in hand and with hackers and tech evolving by the day, you’ll need to stay on your toes and ahead of the game.

Your core responsibility is to guide and support the developer teams in delivering and deploying secure banking solutions. You will analyze the software from a security perspective and identify and resolve security issues. You provide guidance and workshops to developers and QA engineers on secure coding, security testing and working with security tools. Your input helps to improve security in the SDLC with its tools and processes. You validate that application security requirements have been met. You perform security code reviews and suggest improvements to development teams. You will work closely with the customer-facing development teams and operations teams. You mentor new team members and act as the go-to person for security in your area.

What you’ll do

Looking for a journey instead of a job? Then let’s talk! We are THE pioneers in banking tech. We see opportunities and take the leap. Having the guts to push limits and break barriers to make things happen. We learn and reinvent ourselves for maximum impact, never giving up. We are creators, with a customer-centric mindset that love what they do and bring fun to any challenge. Together we kick ass, have fun and feel proud when our vision is delivered. Next day - we wake up and raise the bar a little higher. Are you ready?

As a Senior Application Security Engineer you’ll be part of the team of security engineers working to ensure we build, maintain and deploy secure software that is used by millions of users around the globe. If you have a hacker mindset, are passionate about security and always looking to extend your knowledge, then this is the place for you.

Who you are

In order to really own this role, we think you’ll need:

  • Good understanding of application security and common application security vulnerabilities;
  • Good understanding of frontend, backend and mobile security domains and you’re an expert in one of them;
  • Good understanding of DevOps and cloud native technologies;
  • Successful track record in identifying, triaging and resolving application security issues;
  • A background in development and a good understanding of the SDLC;
  • English language on a professional level, written and spoken.

We’ll be delighted if you bring experience in the following topics but otherwise these would be opportunities for you to grow your knowledge working in the security team:

  • Implementing OWASP ASVS/M-ASVS and SKF;
  • Implementing SAST, SCA, IAST and RASP tools in the SDLC;
  • Facilitating threat modeling sessions with the development teams;
  • Pen testing web and mobile applications;
  • Training and guiding developers on application security concepts;
  • Relevant regulations such as GDPR and PCI-DSS.
Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra un archivo en formato PDF, DOC, DOCX, ODT o PAGES de hasta 5 MB.