Назад
Company hidden
3 часа назад

Application Security Engineer

50 000 - 75 000
Формат работы
onsite
Тип работы
fulltime
Английский
b2
Страна
UK/Singapore/US +2 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Security Engineer (Fintech): Protecting cloud-native banking and payments products through application security design, threat modeling, vulnerability assessments, and security testing with an accent on DevSecOps, data privacy, and distributed systems at scale. Focus on building bespoke security tooling, automating security controls, reviewing designs and code, and enabling engineering teams to address complex product security risks.

Location: Lisbon, Portugal; on-site, with four days per week in the Lisbon office

Salary: €50K–€75K per year

Company

hirify.global develops cloud-native core banking and payments technology designed to replace legacy banking systems.

What you will do

  • Improve product security through strategic planning and collaboration with development and infrastructure teams.
  • Design production-grade application security for web-scale systems.
  • Review data privacy and financial regulatory designs.
  • Conduct security design reviews, threat modeling, vulnerability assessments, penetration testing, and code reviews.
  • Provide security and privacy expertise throughout the software development lifecycle.
  • Partner with development teams on design reviews, code reviews, education, security strategy, and tooling.

Requirements

  • Expertise in a programming language such as Python, Go, or Java.
  • Experience with security in DevOps environments and distributed systems at scale.
  • Experience in web application penetration testing and security tooling.
  • Experience automating and integrating security tools and creating security tools.
  • Knowledge of cloud and container technologies such as AWS, GCP, Kubernetes, and Docker.
  • Experience with security design reviews, threat modeling, risk assessments, and application security issues.

Nice to have

  • Professional security qualifications such as CISSP, Offensive Security, or SANS Institute certifications.
  • Contributions to the security community through research, blogging, or presentations.
  • Awareness of the Data Protection Act, ISO 27001, and PCI-DSS.

Culture & Benefits

  • Permanent full-time employment with a voluntary pension plan matching contributions up to 5%.
  • Private healthcare and comprehensive life insurance.
  • 25 days of holiday plus public holidays and two charity days per year.
  • Daily meal allowance, subsidised sports and hobby clubs, and workplace refreshments.
  • Access to learning materials, courses, and the latest technology.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →