Application Security Engineer

emagine

Lisboa

Híbrido

EUR 65 000 - 95 000

Tempo integral

Há 13 dias

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

Emagine is seeking an Application Security Engineer to join a collaborative project environment in Portugal. The role targets professionals with a strong software development background who transitioned into Application Security to drive Secure SDLC practices and raise security maturity across development teams.

You will work with Software Engineers, Architects, DevOps, and Cybersecurity specialists to embed security across the software lifecycle, perform assessments, coordinate pen tests, and

Qualificações

  • Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
  • Background in software development followed by Application Security responsibilities.
  • Strong knowledge of Secure SDLC methodologies and secure coding practices.
  • Experience with vulnerability assessment tools and secure coding standards.
  • Professional level of English.

Responsabilidades

  • Promote Secure SDLC practices across software development teams.
  • Review architectures and participate in threat modelling activities.
  • Analyse vulnerabilities from SAST, DAST, and pen tests and prioritize fixes.
  • Assist development teams in remediating security issues and promoting secure coding.
  • Coordinate penetration testing with external partners and verify remediation actions.
  • Integrate security controls into CI/CD pipelines and support DevSecOps.
  • Deliver secure coding workshops and create technical guidelines for champions.

Conhecimentos

Secure SDLC
Threat modelling
Vulnerability analysis
CI/CD security
English proficiency

Formação académica

Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or a related field

Ferramentas

OWASP Top 10
OWASP ASVS
Burp Suite
ZAP
SonarQube
Checkmarx
Fortify
Veracode
Snyk
Trivy
Dependabot

Descrição da oferta de emprego

Emagine is seeking an Application Security Engineer to join a collaborative and dynamic project environment in Portugal. This role is ideal for a professional with a strong software development background who has transitioned into Application Security, looking to drive Secure SDLC practices, improve application security maturity, and support development teams in building secure applications by design.

You will work closely with Software Engineers, Architects, DevOps teams, and Cybersecurity specialists to integrate security throughout the software development lifecycle, perform security assessments, coordinate penetration testing activities, and promote secure coding best practices across the organization.

What You'll Be Working On
  • Promote and implement Secure SDLC practices across software development teams.
  • Review application architectures and participate in threat modelling activities.
  • Analyse and prioritize vulnerabilities identified through Pentests, SAST, DAST, dependency scanning, and container scanning.
  • Support development teams in the remediation of security vulnerabilities and implementation of secure coding practices.
  • Coordinate penetration testing activities with external partners and validate remediation actions.
  • Integrate security controls into CI/CD pipelines and contribute to DevSecOps initiatives.
  • Deliver secure coding workshops, create technical guidelines, and help establish Security Champions across development teams.
  • Collaborate with cross-functional teams to continuously improve application security processes and standards.
What We're Looking For
  • Bachelor's degree in Computer Science, Cybersecurity, Software Engineering, or a related field.
  • Previous experience in Software Development followed by Application Security responsibilities.
  • Strong knowledge of Secure SDLC methodologies and secure software development principles.
  • Practical experience with OWASP Top 10, OWASP ASVS, Threat Modelling, and Secure Coding practices.
  • Experience analysing vulnerabilities generated through SAST, DAST, Dependency Scanning, Container Scanning, and Penetration Testing.
  • Knowledge of Authentication and Authorization protocols including OAuth2, OpenID Connect, JWT, and API Security.
  • Experience with Java (Spring Boot) and/or C# (.NET Framework / .NET Core / ASP.NET).
  • Experience working with Linux environments and basic shell scripting.
  • Cloud experience, preferably with AWS and/or Azure.
  • Experience integrating security into CI/CD pipelines and supporting DevSecOps initiatives.
  • Strong analytical, communication, mentoring, and stakeholder management skills.
  • Professional level of English.
Nice to Have
  • Experience with Angular, JavaScript, or TypeScript.
  • Experience using tools such as SonarQube, Checkmarx, Fortify, Veracode, Snyk, OWASP ZAP, Burp Suite, Trivy, or Dependabot.
  • Knowledge of cryptography, TLS, secret management, and secure API design.
  • Experience defining security metrics and application security governance.
Location & Eligibility
  • Candidates must be based in Portugal.
  • Hybrid working model - 2/3x per week, Lisbon.
About Emagine

At emagine, we value diversity, inclusion, and equal opportunities.

We believe that different perspectives drive innovation and create stronger teams, and we are committed to fostering an inclusive environment where everyone can thrive.

We work with leading international clients on innovative and high-impact projects, offering opportunities to grow both professionally and personally.

To learn more about us, visit our website: www.emagine-consulting.com

Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

App Sec Engineer: Secure SDLC & DevSecOps
App Sec Engineer: Secure SDLC & DevSecOps

emagine • Lisboa

Híbrido
EUR 65 000 - 95 000
Application Security Engineer
Application Security Engineer

AdvanceWorks • Lisboa

Híbrido
EUR 70 000 - 95 000
Mentorship program
Formal training
Cutting-edge tools
+1
Application Security Engineer
Application Security Engineer

Intermedia Intelligent Communications • Portugal

Presencial
EUR 40 000 - 70 000
Application Security Engineer | Lisbon | Hybrid
Application Security Engineer | Lisbon | Hybrid

Decskill • Lisboa

Presencial
EUR 90 000 - 130 000
Application Security
Application Security

WIRE IT • Porto

Híbrido
EUR 40 000 - 60 000
Health Insurance
22 days of paid vacation
4 extra days annually (Carnival, Christmas Eve, New Year's Eve, Birthday)
+6
Application Security Engineer
Application Security Engineer

Movilges LDA • Portugal

Híbrido
EUR 45 000 - 65 000
Hybrid work regime
Health insurance
Life insurance
+2
Devoteam Cyber Trust | Application Security Engineer | Mobility Sector
Devoteam Cyber Trust | Application Security Engineer | Mobility Sector

Devoteam | Cyber Trust • Lisboa

Presencial
EUR 45 000 - 65 000
Application Security
Application Security

WIREIT • Portugal

Híbrido
EUR 40 000 - 60 000
Health Insurance
22 days of paid vacation
4 extra vacation days
+5
Devoteam Cyber Trust | Application Security - Lead | Banking Sector
Devoteam Cyber Trust | Application Security - Lead | Banking Sector

Devoteam | Cyber Trust • Lisboa

Presencial
EUR 40 000 - 60 000
Application Security Analyst
Application Security Analyst

PrimeIT • Porto

Híbrido
Health insurance
Extra salary benefits
Training and development plan
+3