Jobiglo

Sem resultados

Application Security Engineer – Mobility Sector

Devoteam · Lisboa

Novo
🇬🇧 English
Java Spring Boot REST APIs Maven C# .NET Framework .NET Core ASP.NET Angular Linux Shell scripting AWS Azure OWASP Top 10 OWASP ASVS Secure coding Threat modeling OAuth2 OpenID Connect JWT API security TLS Secure hashing Secrets management SonarQube Checkmarx Fortify Veracode Snyk Dependabot OWASP ZAP Burp Suite Trivy

Descrição do cargo

About the role

Join Devoteam Cyber Trust as an Application Security Engineer focused on the Mobility sector. You will ensure that products and applications are built with security from the ground up, guiding development teams through secure design, vulnerability remediation and continuous improvement of security maturity.

Key responsibilities

  • Define and promote Secure SDLC practices and integrate security requirements into the development lifecycle.
  • Conduct architecture reviews, threat‑modeling sessions and support teams with authentication, authorization and data‑protection mechanisms.
  • Analyze results from penetration tests, vulnerability assessments, SAST/DAST, dependency and container scanning, classify and prioritize findings and track remediation against SLAs.
  • Coordinate penetration‑testing scopes with external vendors, validate findings and ensure closure of recommendations.
  • Deliver secure‑coding workshops, promote OWASP Top 10, mentor security champions and produce technical guidelines.
  • Integrate security controls into CI/CD pipelines, automate security checks and define application‑security KPIs.

Required profile

  • Professional background in software development and application architecture who has transitioned to an Application Security role.
  • Proven ability to work with development, architecture, operations and corporate security teams as a technical consultant and advocate.
  • Strong analytical mindset with capacity to understand code, architecture and support vulnerability remediation.

Required skills

  • Java (Spring Boot), REST APIs, Maven
  • C#/.NET (Framework/Core), ASP.NET
  • Angular (JavaScript/TypeScript) – optional
  • Linux, shell scripting and basic system hardening
  • Cloud platforms – AWS and/or Azure (production deployment experience)
  • OWASP Top 10, OWASP ASVS, secure coding best practices
  • Threat modeling, authentication & authorization (OAuth2, OpenID Connect, JWT)
  • API security, TLS, cryptographic key‑lifecycle management, secure hashing
  • Secrets management and rotation
  • Security tooling: SonarQube, Checkmarx, Fortify, Veracode, Snyk, Dependabot, OWASP ZAP, Burp Suite, Trivy

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Devoteam.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.
Source : ats:smartrecruiters

Motivo do reporte

Obrigado! A sua denúncia foi enviada aos administradores.

Explorar mais

Salários, guias e pesquisas em Portugal.

Candidate‑se em 30 segundos

Introduza o seu e‑mail para candidatar‑se. Uma conta será criada automaticamente.

Candidatar-se agora →

Ao continuar, aceita os nossos termos de uso.

Já tem uma conta? Entrar

Uma pergunta sobre esta oferta?

Faça-a aqui: receberá o resumo completo por e-mail, de imediato.

💬 Chat with us on Telegram

Publicado há 15 horas

Expira em 1 mês

5 visualizações · 0 interested

Aumente suas chances

Envie seu CV: vamos sugerir as vagas que combinam com seu perfil.

A analisar o seu CV...

Devoteam

Lisboa