Application Security Specialist (Global CISO Office)
We are hiring an Application Security Specialist to join the Global CISO Office at Randstad, orchestrating and scaling secure development across our global front‑office business applications. This is an architectural, governance, and enablement role focused on "security by design" with developer teams, rather than a hands‑on code development or standard IT support position.
Location & Geographic Details
Primary Location: Hybrid presence required in Portugal. This role requires full availability during Central European Time (CET) business hours.
Core Responsibilities
- Embed Security by Design: Maintain secure development across the entire software development lifecycle (SDLC) and architectural design patterns.
- Enable Developer Squads: Direct project squads and engineering teams with secure design patterns, helping them evaluate the security impacts of design decisions.
- Co‑Design the Global SOC: Partner with security peers to threat‑model, design, and implement the operating model, processes, and governance for Randstad’s global business application Security Operations Center (SOC).
- Stakeholder Alignment: Map out security requirements with cross‑functional internal and external stakeholders (business, marketing, global IT) to embed them directly into product roadmaps and architectures.
- Advocate for Compliance: Champion building a highly secure, compliant ecosystem aligned with organizational policies and Data Privacy legislation.
Qualifications
- Bachelor’s or Master’s degree in Information Technology, Computer Science, or an equivalent technical qualification.
- 5 to 7 years of experience as a Security Specialist or Security Engineer, architecting secure solutions in a complex, global enterprise environment.
- Extensive knowledge of full‑stack architectures, REST APIs, modern web technologies, and security patterns.
- Deep familiarity with CI/CD automated software delivery pipelines and application security testing tools (SAST, DAST, SCA).
- Proven ability to translate complex security and data privacy requirements into scalable technical solutions while managing executive, business, and tech stakeholders.
- Preferred: Hands‑on experience working directly within Salesforce security and configuration.
What This Role Is NOT
This is a Security Architecture, Strategy, and Enablement role. It is not a software engineering role focused on writing feature code, nor is it a baseline network administration job.
Benefits
- Competitive base salary paired with attractive corporate benefits.
- Strong job security with an emphasis on taking care of each other and respecting work‑life balance.
- Comprehensive learning and development opportunities.
- Inclusive environment—47% of the global management team is female.