Senior Application Security Engineer

SoftCo

Dublin

Hybrid

EUR 120,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Performance bonus
Health insurance
Pension
Life assurance
Hybrid work model
On-site gym
Long service awards
Employee referral programme
Learning & development

Job summary

SoftCo, a Dublin-based AI-native P2P and AP automation company, seeks a Senior Application Security Engineer to drive AppSec strategy, embed secure practices across the SDLC, and partner with Development, Product and DevOps teams.

You will mentor engineers, design scalable security automation in AWS/Azure, lead threat modeling and security reviews, and help scale our security program across the organisation.

Qualifications

  • 5+ years in Application Security, Secure Development or DevSecOps.
  • Proven hands-on experience with SAST/DAST/ SCA and secure design reviews.
  • Strong cloud security knowledge across AWS/Azure/GCP and SDLC integration.

Responsibilities

  • Embed security across the SDLC with engineering and product teams.
  • Design, implement and maintain scalable security automation in cloud environments.
  • Lead threat modeling, secure design reviews and risk assessments.
  • Define secure coding standards and enforce them across teams.
  • Coordinate penetration testing and remediation workflows.
  • Mentor engineers and build an AppSec champions program.

Skills

SAST
DAST
SCA
Cloud security
SSDLC
DevSecOps
Secure coding
Threat modeling
Penetration testing
Incident response
Security automation
AI/ML security

Education

OSCP
OSWE
CSSLP
GWEB
CISSP

Tools

AWS
Azure
GCP

Job description

About SoftCo

SoftCo is an AI‑native Procure-to-Pay (P2P) and Accounts Payable (AP) automation company built for complex organisations. In a market full of rigid templates and “plug-and-play” promises, our approach is different. We tailor automation around the organisation, not the organisation around the software.

For over 35 years, we’ve helped finance teams move from reactive, manual processes to controlled, scalable and strategic P2P operations. Our AI‑native platform strengthens accuracy, visibility and insight, but it’s our delivery expertise that ensures it works in the real world.

Our Success At a Glance

  • 1M+ users worldwide
  • Trusted by organisations including Volkswagen, Patagonia, Primark, Logitech and all 80 departments of the Finnish Government
  • Global reach with offices in the US, Finland, UK, Kosovo and Ireland
  • A reputation for owning where precision engineering meets long‑term partnership

Join us as Senior Application Security Engineer and play a key role in strengthening application security across our engineering practices, helping ensure our platform remains secure, resilient, and trusted as we continue to scale globally.

Senior Application Security Engineer – Your role

In this role you will champion security across our engineering culture. You will define and drive our AppSec strategy, embed secure practices throughout the SDLC, and serve as a trusted partner for Development, Product, and DevOps teams.

You will mentor engineers on security, champion secure coding practices, and instill a security‑first mindset across development teams. If you thrive at the intersection of engineering and security and excel at identifying and mitigating vulnerabilities at scale, this is the opportunity for you.

Your Responsibilities
  • Partner with engineering and product teams to embed security across the SDLC.
  • Design, implement, and maintain scalable security automation in cloud environments (AWS and Azure), including SAST, DAST, SCA, and Infrastructure‑as‑Code scanning.
  • Define and manage penetration testing scope in collaboration with external vendors, ensuring coverage of high‑risk applications, services, and cloud components, and integrating findings into remediation workflows.
  • Lead and design threat modeling, secure design/code reviews, application‑level and AI‑system risk assessments.
  • Define and enforce secure coding standards, guidelines, and reusable patterns.
  • Harden CI/CD pipelines and embedded continuous security testing protocols.
  • Automate workflows and streamline detection, remediation, and reporting.
  • Lead vulnerability assessments, triage findings, and oversee remediation efforts.
  • Troubleshoot and resolve application, cloud, and AI‑related security incidents.
  • Support incident responses for application‑layer security issues and lead root cause analysis.
  • Coordinate with engineering teams to ensure timely closure of identified risks.
  • Manage role‑based access controls and permissions to safeguard sensitive data.
  • Act as a hands‑on advisor to developers on secure coding and architecture.
  • Build and lead an Application Security Champions Program to scale awareness.
  • Deliver targeted training to increase adoption of secure practices.
  • Mentor and guide new junior AppSec engineers to foster growth.
  • Represent AppSec in cross‑functional engineering/security forums.
  • Align security roadmap priorities with broader engineering and business goals.
  • Ensure all implementation tasks and remediation activities related to security are translated into user stories / tickets and tracked on teams’ Agile boards for visibility and accountability.
Your profile
  • BS/MS in Computer Science, Information Security, or related field (or equivalent experience).
  • 5+ years in Application Security, Secure Development, DevSecOps, or related security roles.
  • Proven hands‑on experience mitigating application vulnerabilities using manual & automated approaches such as: SAST, DAST, SCA, dynamic analysis.
  • Solid understanding of cloud security (AWS, Azure, or GCP).
  • Strong understanding of SSDLC with proven ability to embed security in Agile/DevOps environments.
  • Strong understanding of ML/AI architecture components (data pipelines, training workflows, model serving, inference endpoints) and associated security risks.
  • Able to take ownership while effectively partnering across distributed teams.
  • Strong investigative mindset with a focus on root cause and proactive problem‑solving.
  • Demonstrated ability to design, implement, and maintain security tools and processes.
  • Preferred certifications: OSCP, OSWE, CSSLP, GWEB, CISSP.
What We Offer
  • Competitive remuneration and performance‑based bonus
  • Company‑paid health insurance, pension and life assurance
  • Hybrid Working Model (3 days per week in office following onboarding period)
  • On‑site gym with company‑funded fitness classes (Dublin office)
  • Long service incentive awards and employee referral programme
  • Structured learning and development investment
Our Culture

SoftCo is built on the values that shape how we work together and deliver for our customers.

Initiative, accountability, and collaboration are central to how we operate. Our teams work across disciplines and locations to solve complex problems and deliver meaningful outcomes.

We encourage clear thinking, ownership and continuous learning. Expertise is respected and people are trusted to take responsibility for the work they lead.

Different perspectives strengthen our teams and improve the systems we build. We are committed to creating an inclusive environment where everyone can contribute and grow.

SoftCo is proud to be an equal opportunities employer and welcomes applications from all backgrounds. Learn more at softco.com/about-us.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer
Senior Application Security Engineer

Uniting Holding • Dublin

Hybrid
EUR 75,000 - 95,000
Competitive remuneration
Company-paid health insurance
Hybrid Working Model
+2
Business Consultant
Business Consultant

Uniting Holding • Dublin

Hybrid
EUR 60,000 - 90,000
Competitive pay
Health insurance & pension
Hybrid working
+3
Senior AppSec Engineer: Scale Security Across Cloud & AI
Senior AppSec Engineer: Scale Security Across Cloud & AI

SoftCo • Dublin

Hybrid
EUR 120,000 - 180,000
Performance bonus
Health insurance
Pension
+6
Staff Engineer (IT Automation & AI-native Transformation)
Staff Engineer (IT Automation & AI-native Transformation)

SoSafe • Ireland

On-site
EUR 70,000 - 90,000
Flexible hours
33 vacation days
Access to corporate discounts
+2
Senior Cloud Security Engineer
Senior Cloud Security Engineer

Davy • Ireland

On-site
EUR 85,000 - 120,000
Health and wellness benefits
Flexible working options
Professional development opportunities
Application Security Testing Lead – DAST
Application Security Testing Lead – DAST

Methodius IT Recruitment • Ulster

Hybrid
EUR 95,000 - 135,000
Annual bonus
Pension
Medical Insurance
+6
Application Security Lead – DAST
Application Security Lead – DAST

Methodius Ltd • Roscommon

Hybrid
EUR 90,000 - 120,000
Annual Bonus Scheme
Contributory Pension
Private Medical Insurance
+5
Product Security Engineer, Senior - Vulnerability Management Research and Automation - Cork, Ireland
Product Security Engineer, Senior - Vulnerability Management Research and Automation - Cork, Ireland

Qualcomm • Ireland

On-site
EUR 70,000 - 90,000
Salary, stock, and performance-related bonus
Maternity/Paternity Leave
Employee stock purchase scheme
+3
Senior Information Security Engineer - Application Security
Senior Information Security Engineer - Application Security

Camunda • Connacht

Remote
EUR 90,000 - 140,000
Flexible remote work
Health and wellbeing support
Professional development budget
Senior Security Engineer
Senior Security Engineer

Cubic³ • Dublin

On-site
EUR 80,000 - 100,000