TL;DR
Application Security Engineer: Supporting the development and roll out of the application security roadmap with an accent on integrating security tooling and processes in CI/CD pipelines. Focus on providing security guidance early in the software development lifecycle to help identify threats and mitigate potential risks.
Location: Essen, Hannover, Berlin, Hamburg, Germany. Hybrid work with flexible combination of office and home office. Workation for up to 20 days per year within Europe is possible.
Company
E.ON Digital Technology plays a key role in shaping the energy transition by leading E.ON's digital transformation across Europe.
What you will do
- Support the development and roll out of the application security roadmap.
- Work closely with development and operations teams to support and enforce security practices.
- Provide security guidance early in the software development lifecycle to help identify threats and mitigate potential risks.
- Collaborate with Technology Platform teams to integrate security tooling and processes in CI/CD pipelines.
- Guide developers on secure coding practices and help fix identified vulnerabilities.
- Execute application security training and awareness programs for developers.
Requirements
- Proven track record in application security or software development.
- Good experience with scripting languages.
- Knowledge of common application security risks (e.g. OWASP Top 10) and how to mitigate them.
- Understanding of application security activities e.g. secure coding, threat modeling, vulnerability management.
- Solid experience with application security tools like SCA, SAST, or DAST.
- Fluency in German and English is mandatory.
Culture & Benefits
- Advance your development through learning on the job, exchanging with others, or taking part in individual training.
- Recharge your battery with 30 days of paid vacation per year plus Christmas and New Year's Eve off.
- Enjoy flexibility by combining coming to the office and working from home.
- Elevate your mobility with car and bike leasing offers to a subsidised Deutschland-Ticket.
- Think ahead with company pension scheme and a great insurance package.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →