Application Security Engineer

emagine

Portugal

Remote

EUR 45,000 - 65,000

Full time

9 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Security certifications encouraged

Job summary

Emagine is seeking an Application Security Engineer to join a collaborative project environment. The role involves penetration testing, security assessments, and embedding security tooling into CI/CD pipelines.

You will plan tests on internal apps, produce detailed risk reports, and support development teams with threat modelling and secure design reviews. Strong English and hands-on security tooling experience are essential.

Qualifications

  • Proven experience performing penetration tests on web applications and APIs.
  • Hands-on with SAST, DAST, and SCA tools and CI/CD integration.
  • Working knowledge of Jenkins and pipeline troubleshooting.
  • Experience with threat modelling and secure design reviews.
  • Strong understanding of OWASP Top 10 and remediation techniques.
  • Excellent written and verbal communication for technical and non-technical audiences.

Responsibilities

  • Plan and conduct penetration tests on internal apps and deliver detailed reports.
  • Produce security assessment reports covering risk, impact, exploit steps, and remediation guidance.
  • Integrate SAST/DAST/SCA into CI/CD pipelines and support developers.
  • Troubleshoot CI/CD security scanning issues and Jenkins configurations.
  • Support threat modelling, security reviews, and pre-release assessments.
  • Promote secure development practices and serve as a security partner to engineering.

Skills

Penetration testing
SAST
DAST
SCA
CI/CD pipelines
Jenkins
Threat modelling
Secure design reviews
Security reporting
English communication

Education

Security certifications (OSCP, GWAPT, CEH, CSSLP)

Tools

Jenkins
SAST tools
DAST tools
SCA tools
Python
Bash

Job description

Emagine is seeking an Application Security Engineer to join a collaborative and dynamic project environment. This is an opportunity for an experienced application security professional to strengthen application security practices through penetration testing, security assessments, and the integration of security tools into CI/CD pipelines.


What You\'ll Be Working On


  • Plan and conduct penetration tests on internal applications and deliver clear, detailed reports.

  • Produce security assessment reports covering risk assessment, vulnerability impact, exploitation steps, and actionable remediation guidance.

  • Integrate SAST, DAST, and SCA scanning into CI/CD pipelines and support developers in using these tools effectively.

  • Troubleshoot and resolve CI/CD issues related to security scanning, including Jenkins configuration, scanner failures, authentication issues, and pipeline execution errors.

  • Support development teams with threat modelling, security reviews, and pre-release security assessments.

  • Help development teams resolve security blockers before application releases.

  • Define and standardise security engagement procedures and promote secure development practices.

  • Act as a trusted security partner to engineering teams, providing practical and constructive security guidance.


What We\'re Looking For


  • Proven experience performing penetration tests on web applications and APIs.

  • Hands-on experience with SAST, DAST, and SCA tools and their integration into CI/CD pipelines.

  • Working knowledge of CI/CD platforms, ideally Jenkins, including troubleshooting pipeline and security scanner integration issues.

  • Experience with threat modelling and secure design reviews.

  • Strong understanding of common vulnerability classes, including OWASP Top 10, and remediation techniques.

  • Excellent written communication skills, with the ability to produce clear and structured security reports for technical and non-technical audiences.

  • Ability to train and collaborate with developers and explain security issues in a practical and constructive way.

  • Strong autonomy and initiative when identifying and addressing security challenges.

  • Professional fluency in English.

  • Short availability to start the project.


Nice to Have


  • Security certifications such as OSCP, GWAPT, CEH, or CSSLP.

  • Experience defining or improving security processes and governance.

  • Scripting or programming skills such as Python or Bash for automation.

  • Familiarity with cloud and containerised environments.


Location & Eligibility


  • Candidates must be based in Portugal.

  • Remote working model with flexible working hours.

  • 8-9 month project

  • Candidates should be available to start ASAP.


About Emagine

At emagine, we value diversity, inclusion, and equal opportunities. We believe that different perspectives drive innovation and create stronger teams, and we are committed to fostering an inclusive environment where everyone can thrive. We work with leading international clients on innovative and high-impact projects, offering opportunities to grow both professionally and personally. If you are interested in this opportunity, we encourage you to apply and become part of a dynamic and forward-thinking environment.


To learn more about us, visit our website: www.emagine-consulting.com

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

emagine • Lisboa

On-site
EUR 55,000 - 75,000
Microsoft Security Specialist
Microsoft Security Specialist

emagine • Lisboa

On-site
EUR 55,000 - 85,000
Application Security Engineer
Application Security Engineer

Intermedia Intelligent Communications • Portugal

On-site
EUR 40,000 - 70,000
Application Security
Application Security

WIRE IT • Porto

On-site
EUR 40,000 - 60,000
Health Insurance
22 days of paid vacation
4 extra days annually (Carnival, Christmas Eve, New Year's Eve, Birthday)
+6
Application Security Engineer Id71662
Application Security Engineer Id71662

Agileengine • Viseu

Hybrid
EUR 79,000 - 114,000
Mentorship & TechTalks
USD-based pay with education, fitness,
Team activity budgets
+1
Application Security Engineer — Secure SDLC & DevSecOps
Application Security Engineer — Secure SDLC & DevSecOps

emagine • Lisboa

Hybrid
EUR 55,000 - 75,000
Remote Application Security Engineer — CI/CD & Pen Tests
Remote Application Security Engineer — CI/CD & Pen Tests

emagine • Portugal

Remote
EUR 45,000 - 65,000
Security certifications encouraged
Application Security
Application Security

WIREIT • Portugal

On-site
EUR 40,000 - 60,000
Health Insurance
22 days of paid vacation
4 extra vacation days
+5
Application Security (AppSec) Engineer
Application Security (AppSec) Engineer

Joom • Lisboa

On-site
EUR 60,000 - 80,000
Remote work option (52 days/year)
22 days annual leave
Health insurance (including dental)
+5
Cyber Security Engineer
Cyber Security Engineer

team.it • Lisboa

On-site
EUR 42,000 - 62,000
Personalized Talent Management
Broad benefits package
Training and career development
+1