TL;DR
Application Security Engineer (Cybersecurity): Responsible for identifying, analyzing, and mitigating software vulnerabilities and implementing best security practices. Focus on building and maintaining ASPM tools, conducting penetration testing, and integrating security throughout the SDLC.
Location: Amsterdam, Netherlands; Berlin, Germany; Prague, Czech Republic; Remote - Europe
Company
hirify.global is a cloud computing company focused on serving the global AI economy with infrastructure and tools.
What you will do
- Build and maintain ASPM tools and their rules.
- Identify, analyze, and remediate application security vulnerabilities.
- Collaborate with development teams to integrate security best practices into the software development lifecycle (SDLC).
- Conduct manual and automated penetration testing of applications.
- Develop and maintain secure coding guidelines for development teams.
- Facilitate threat modeling and risk assessments on new and existing applications.
Requirements
- 4+ years of experience in application security.
- Strong knowledge of common application security risks (e.g. OWASP Top 10) and how to mitigate them.
- Experience with secure coding practices in languages such as Python, Go, Java, or JavaScript.
- Proficiency in a common programming language (such as Go or Python).
- Hands-on experience with security testing tools (Burp Suite, ZAP, Semgrep, etc.).
- Understanding of authentication protocols like SAML or OIDC.
- Experience in conducting threat-modeling sessions.
- Good written and verbal communication skills in English.
Nice to have
- Experience in designing, building, and maintaining security automation.
- Experience in translating compliance and regulation requirements into technical specifications.
- Experience in exploiting vulnerabilities in web applications, Linux kernels, containers, and networks.
- Security certifications such as OSCP or OSWE.
Culture & Benefits
- Competitive salary and comprehensive benefits package.
- Opportunities for professional growth within hirify.global.
- Flexible working arrangements.
- A dynamic and collaborative work environment that values initiative and innovation.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →