Security by Design Engineer

TeamSystem

Milano

Ibrido

EUR 49.000 - 63.000

Tempo pieno

4 giorni fa
Candidati tra i primi

Ricevi più risposte dai datori di lavoro

Invia un CV specifico per questa offerta in pochi minuti.

Vantaggi offerti da questo lavoro

Total compensation
Wellbeing budget
Hybrid model
Growth opportunities
Inclusive environment
Impactful work

Descrizione del lavoro

TeamSystem in Italy is seeking a hands-on Application Security Engineer to join our fast-paced development teams in Milan or Rome. You will translate requirements into secure software, drive security maturity, and implement design principles across SDLC.

You will define KPIs for vulnerability management, lead security initiatives, and collaborate with Product Owners to align security with business priorities. English fluency required.

Competenze

  • Strong knowledge of application security frameworks (SAMM, ASVS, NIST CSF).
  • Understanding of ISO 27000, NIS2, DORA, PCI-DSS and related standards.

Mansioni

  • Drive the continuous improvement of the organization’s application security maturity.
  • Define, measure, and track security KPIs related to vulnerability management.
  • Lead application security initiatives with secure-by-design principles.
  • Collaborate with Product Owners to align security objectives with business priorities.
  • Hands‑on application security role with secure development practices.
  • Collaborate with engineering to implement security best practices across the SDLC.

Conoscenze

Application security
Security architecture
Threat modelling
Secure SDLC
SAST/DAST
English proficiency

Descrizione del lavoro

We are the leading Tech Company in Europe, supporting digital innovation for over 45 years. We are committed to bringing digital technology into every business. How? By putting customers first and becoming the go‑to partner for professionals, small, medium and large companies, offering customised solutions and services to optimise business processes. from HR and customer relations to e‑invoicing and digital payments. The Research and Development team is the beating heart of the Group's innovation. We are constantly committed to researching and developing new technologies and solutions to anticipate market needs and exceed our customers' expectations. We invest significantly in artificial intelligence (AI), exploring its potential to develop innovative solutions and improve our products and services.

Join an agile team where you can enhance your technical skills by participating in challenging and scalable projects in the field of software development.

In a fast‑paced development environment focused on growth and innovation, you will be responsible for translating requirements into code to create, improve and maintain high‑quality software.

In particular, you will:
  • Drive the continuous improvement of the organization’s application security maturity, defining a structured and scalable approach to secure software development across teams and products.
  • Define, measure, and track key security KPIs related to vulnerability management processes (e.g. detection, remediation, exposure time), providing visibility on risk and progress over time.
  • Lead application security initiatives across the organization, implementing security-by-design principles from the early stages of development.
  • Contribute to the definition and evolution of security controls and practices, maintaining alignment with internal standards, regulatory requirements, and industry frameworks.
  • Collaborate with Product Owners and development teams to align security objectives with business priorities and to promote a shared security culture throughout the software development lifecycle.
  • Hands‑on Application Security role (non-GRC) requiring strong expertise in software security, secure architecture, threat modelling, and secure development practices.
  • Collaborate closely with engineering teams to define and implement security best practices across the software development lifecycle.
What skills are we looking for?
  • Good knowledge of application security frameworks such as SAMM, ASVS, NIST CSF, and similar.
  • Understanding of certification standards like ISO 27000, as well as NIS2, DORA, ACN guidelines, PCI-DSS, and their impact on application security.
  • Knowledge of AI-focused risk and security frameworks, including NIST AI RMF, EU AI Act requirements, ISO/IEC 23894, OWASP Top 10 for LLMs, and Google SAIF will be considered a plus.
  • Understanding of AI‑related risks, key facts, and ecosystem dynamics, paired with strong curiosity and continuous awareness of the current and emerging AI technological landscape.
  • Prior experience as a software developer or security engineer, with hands‑on understanding of the software development lifecycle (SDLC) and the ability to read/review code is a plus. Familiarity with application security testing methodologies (SAST, DAST, penetration testing, dependency/vulnerability scanning) is also considered a plus.
  • Strong knowledge of application security design principles, such as input filtering, data encryption (in transit and at rest), authentication/authorization frameworks, and secure‑by‑design best practices.
  • Advanced proficiency in English (C1 level).

Do you recognize yourself in the skills we’re looking for? That’s a great start. We’re looking for people who reflect our values through their growth mindset and their ability to turn challenges into opportunities.

  • ENTREPRENEURSHIP - is the engine that drives us to excel, innovate and challenge ourselves for our own success and that of our company. We are proactive, responsible and customer‑centric, always ready to question the status quo and achieve extraordinary results.
  • INNOVATION - is the guiding light that illuminates our path as we move through an environment full of different experiences, knowledge and perspectives. We are not afraid of making mistakes; we work in an environment that is fertile for the development of innovative solutions.
  • INCLUSION - is the sentiment that guides our relationships amongst individuals, each of whom has a different history and experience. We advocate for an inclusive work environment that values each person's unique characteristics.
What we offer:
  • Total compensation: € 49,000 – € 63,000 Including a variable component linked to performance. Full-time reference.
  • Wellbeing Digital Wallet: from € 3.850 per year. A personal budget to support your wellbeing: travel, medical expenses, parental support, sports, and reimbursements for personal services such as childcare, caregiving, and more.
  • Flexibility: we work in a hybrid model, with autonomy over when to come into the office. For us, being on‑site makes sense when it improves the way we work: you come in when collaboration with colleagues makes a difference, not for presence, but for effectiveness.
  • Growth: we offer tailored learning paths and concrete development opportunities within a continuously evolving international group.
  • Environment: we promote an inclusive workplace built on trust, collaboration, and the value of diverse perspectives.
  • Impact: every day we work to create value for people, businesses, and communities through digital technology.
Location

The position is opened in the Milan or Rome offices.

Ottieni la revisione del curriculum gratis e riservata.
o trascina qui il file.
Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Cyber Security Specialist
Cyber Security Specialist

Volkswagen Group Italia S.p.A. • Verona

Ibrido
EUR 48.000 - 56.000
Remote work up to 8 days/mo
Bonuses based on performance
Cafeteria and meal options
+1
Frontend Developer
Frontend Developer

TeamSystem • Torino

Ibrido
EUR 33.000 - 37.000
Hybrid model
Wellbeing Digital Wallet: from €350
Tailored learning paths
+1
Cyber Security Analyst Senior
Cyber Security Analyst Senior

CRIF • Bologna

In loco
EUR 45.000 - 55.000
Secure Development Champion
Secure Development Champion

ManpowerGroup • Milano

In loco
EUR 50.000 - 70.000
Engineering Manager - Security Standards and Hardening
Engineering Manager - Security Standards and Hardening

Jobgether • Italia

In loco
EUR 90.000 - 120.000
Annual bonus
USD 2,000 learning budget per year
In-person team sprints twice per year
+3
Incident Manager
Incident Manager

TEAMSYSTEM SPA • Milano

Ibrido
EUR 49.000 - 61.000
Hybrid work model
Wellbeing wallet
Personal wellbeing budget
+1
Application Security Engineer
Application Security Engineer

TXT GROUP • Roma

Ibrido
EUR 26.000 - 31.000
Hybrid working model
Application Security Engineer
Application Security Engineer

TXT Group • Italia

Ibrido
EUR 26.000 - 31.000
Hybrid work model
Permanent contract under CCNL Commerc.
Training opportunities
Cybersecurity Solutions Architect
Cybersecurity Solutions Architect

NHOA Group • Torino

Ibrido
EUR 40.000 - 46.000
Permanent full-time contract
Flexible remote working
International, multicultural team
+1
IT – Risk & Governance Specialist
IT – Risk & Governance Specialist

TeamSystem • Milano

Ibrido
EUR 46.000 - 59.000
Retribuzione totale €46.000-€59.000
Wellbeing Digital Wallet €3.850 annui
Flessibilità: modalità ibrida
+5