Назад
Company hidden
6 дней назад

Application Security Trainee (Application Security)

Формат работы
hybrid
Тип работы
fulltime
Грейд
trainee
Английский
b2
Страна
Portugal
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Security Trainee (Application Security): Supporting threat modeling, secure code reviews, penetration testing, and vulnerability analysis across software products with an accent on web application security, OWASP vulnerabilities, and manual and automated testing. Focus on identifying, exploiting, and mitigating application vulnerabilities, analyzing security requirements, and collaborating throughout the software development lifecycle.

Location: Hybrid in Lisbon or Porto, Portugal

Company

hirify.global delivers technology projects and software products through diverse, international teams.

What you will do

  • Analyze and threat-model new and existing products and projects.
  • Review security requirements and collaborate with participants across the software development lifecycle.
  • Perform web application penetration testing.
  • Conduct manual and automated security testing.
  • Support secure code reviews, vulnerability analysis, and implementation of security best practices.

Requirements

  • Less than one year of IT experience; this is an Academy opportunity.
  • Eagerness to learn, logical thinking, flexibility, and attention to detail.
  • Knowledge of HTTP and working knowledge of programming languages.
  • Knowledge of the OWASP Top 10 vulnerabilities, including how to identify, exploit, and fix them.
  • Ability and willingness to work collaboratively and develop in application security.
  • English sufficient to read technical documentation.

Nice to have

  • Knowledge of Linux or Windows operating systems.
  • Scripting and automation skills with PowerShell, Python, or Bash.
  • Experience with SAST, SCA, DAST, Defect Dojo, or security tools such as SonarQube, Fortify, Dependency Check, ZAP, or Burp.
  • Knowledge of Java, PHP, Python, or C.
  • Experience with Jenkins, GitLab CI/CD, Azure DevOps, or other pipelines.

Culture & Benefits

  • Full-time permanent contract.
  • Personalized training and mentoring through hirify.global Academy.
  • Defined career development path with guidance from a senior colleague.
  • Collaborative environment with international projects.
  • Hybrid work model and flexible working hours.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →