Application Security Analyst

Celfocus

Lisboa

Híbrido

EUR 45 000 - 65 000

Tempo integral

Há 8 dias
Gerador de candidaturas

Uma candidatura feita para esta oferta — um currículo e uma carta de apresentação personalizados que vão ao encontro do anúncio.

Ultrapassa os filtros ATS

Vantagens oferecidas por esta oferta de emprego

Hybrid work
International projects
Learning opportunities
AI-driven environment

Resumo da oferta

Celfocus is seeking an Application Security Analyst to perform security assessments throughout the software development lifecycle. You will conduct threat modeling, security analysis, and penetration testing of web applications, collaborating with analysts, architects, developers, DevOps, and stakeholders to mitigate risks.

The role emphasizes hands-on testing, secure development practices, and working in a team that supports international projects with a hybrid work model.

Qualificações

  • Analytical, detail-oriented mindset.
  • Ability to align with Analysts, Designers, Architects, Developers, and DevOps.
  • Knowledge of HTTP and web security fundamentals.
  • Working knowledge of programming languages.
  • Familiarity with OWASP Top 10 vulnerabilities.
  • Experience with web security tools like Burp Suite or similar.
  • Good command of technical English.

Responsabilidades

  • Conduct threat modeling for new and existing Celfocus products/projects.
  • Analyze requirements; interact with participants across the software development process.
  • Penetration testing of web applications.
  • Conduct both manual and automated security testing.
  • Contribute to secure development across product lifecycles.

Conhecimentos

Threat modeling
Penetration testing
HTTP
Programming basics
English technical reading

Ferramentas

Burp Suite
OWASP ZAP
Netsparker

Descrição da oferta de emprego

Make an impact by working in sectors where technology is the enabler and innovation is the key.

At Celfocus, we make data actionable through Next-Gen Intelligence - where data, AI and human creativity come together.

You'll work with multidisciplinary teams and partner with leading companies to turn data into decisions, agility and long-term value.

Explore your way in.

The opportunity:

We are looking for Application Security Analysts to join our Celfocus team. The role involves performing application security assessments throughout the software development lifecycle, including threat modeling, security analysis, and penetration testing of web applications. You will work closely with analysts, architects, developers, DevOps teams, and other stakeholders to identify and mitigate security risks, conduct manual and automated security testing, and contribute to the secure development of Celfocus products and projects.

Your day-to-day:
  • Conducting analysis and threat modeling for new and existing Celfocus products/projects.
  • Analyzing and discussing requirements; interacting with all participants in the software development process.
  • Penetration testing web applications.
  • Conducting both manual and automated testing.
  • Participating in the creation and development of the company's products at all stages of their life cycle.
What you'll bring:
  • A lively and flexible mind, clear logic, a detail-oriented approach.
  • Capability to align with teams from Analysts, Designers, Architects, Developers to DevOps.
  • Knowledge of HTTP.
  • Working knowledge of programming languages.
  • Knowledge of the Top 10 OWASP vulnerabilities: how to find, exploit and fix them.
  • Knowledge of Burp Suite or other popular web scanners like ZAP, Acunetix, Netsparker, etc.
  • The desire and ability to work in a team.
  • The desire to develop yourself in the field of application security.
  • Knowledge of English at least at the level of reading technical documentation.
Additional qualifications:
  • Good knowledge of Linux or Windows operating systems.
  • Skills in scripting and automating your work using Powershell, Python, Bash, etc.
  • Knowledge of the OWASP Application Security Verification Standard (ASVS) , OWASP Testing Guide and experience in whole product or feature planning.
  • An understanding of browser security mechanisms (SOP, cookies, CSP, HSTS, etc.)
  • Familiarity with various protocols and attacks against them (OAuth, JWT, websockets, etc.)
  • Experience with public clouds (Azure, AWS, GCP)
  • Experience with pipeline Orchestrators (Jenkins, Azure DevOps, GitLab CI/CD)
  • Penetration testing experience
Personal Traits:
  • Ability to adapt to different contexts, teams and Clients
  • Teamwork skills but also sense of autonomy
  • Motivation for international projects and ok if travel is included
  • Willingness to collaborate with other players
  • Strong communication skills
What's in it for you:
  • Hybrid way of working with flexibility and balance
  • Opportunity to work on international projects
  • Possibility to explore different roles and career paths
  • Continuous learning and development opportunities
  • A growing AI-driven environment, working with the latest technologies
  • A set of benefits and perks to support your day-to-day
A place for everyone

At Celfocus, we are committed to cultivate a diverse and inclusive workplace. As an equal-opportunity employer, we welcome applicants of all backgrounds, gender identities, and abilities.

If you require any adjustments during the selection process, please inform our Talent Acquisition Team.

Obtém a tua avaliação gratuita e confidencial do currículo.

ou arrasta e larga o ficheiro aqui.

Similar jobs

Ofertas semelhantes que vale a pena comparar

Application Security Analyst
Application Security Analyst

Celfocus • Porto

Híbrido
EUR 42 000 - 62 000
Application Security Intern - Hybrid, Global Impact & Growth
Application Security Intern - Hybrid, Global Impact & Growth

Celfocus • Porto

Presencial
Confidential
Application Security | Curricular Internship
Application Security | Curricular Internship

Celfocus • Lisboa

Presencial
Confidential
Hybrid Application Security Intern: Learn, Protect & Grow
Hybrid Application Security Intern: Learn, Protect & Grow

Celfocus • Lisboa

Presencial
Confidential
Celfocus Academy | Application Security Trainee SH Application Security · Lisbon, Porto
Celfocus Academy | Application Security Trainee SH Application Security · Lisbon, Porto

Celfocus • Lisboa, Porto

Híbrido
EUR 18 000 - 30 000
Full-Time Contract
Training & Mentoring Program
Career Growth Opportunities
+2
Application Security Intern — Hybrid, Global Impact
Application Security Intern — Hybrid, Global Impact

Celfocus • Portugal

Presencial
Confidential
Application Security | Curricular Internship
Application Security | Curricular Internship

Celfocus • Portugal

Presencial
Confidential
Application Security Analyst — Hybrid, Global Projects
Application Security Analyst — Hybrid, Global Projects

Celfocus • Porto

Híbrido
EUR 42 000 - 62 000
Application Security Analyst - Threat Modeling & Pentesting
Application Security Analyst - Threat Modeling & Pentesting

Celfocus • Lisboa

Híbrido
EUR 45 000 - 65 000
Hybrid work
International projects
Learning opportunities
+1
Application Security Trainee: Hybrid & Mentored Growth
Application Security Trainee: Hybrid & Mentored Growth

Celfocus • Lisboa, Porto

Híbrido
EUR 18 000 - 30 000
Full-Time Contract
Training & Mentoring Program
Career Growth Opportunities
+2