Application Security Engineer (Hibrido, Lisboa)
Shore
Principais Responsabilidades
- Support and enhance the organization's Application Security and Secure SDLC (S-SDLC) framework.
- Provide technical guidance to development teams on secure coding practices and vulnerability remediation.
- Perform application security assessments, vulnerability analysis, and support remediation activities.
- Integrate and optimize security tools within CI/CD pipelines.
- Deliver security awareness sessions, workshops, and technical documentation.
- Monitor application security metrics and contribute to continuous process improvement.
- Research emerging threats and evaluate new security technologies and solutions.
- Collaborate with cross-functional teams to improve security practices across the development lifecycle.
- Master's degree in Computer Science, Cybersecurity, Engineering, or a related field (preferred).
- Minimum of 3 years of experience in Application Security, Cybersecurity, or DevSecOps.
- Strong knowledge of SAST, SCA, DAST, Container Security, IaC Scanning, and Secrets Detection.
- Experience integrating security controls into CI/CD pipelines.
- Proficiency in one or more programming languages such as Python, C++, or C#.
- Solid understanding of OWASP Top 10, vulnerability management, and secure software development practices.
- Knowledge of cloud security across public, private, hybrid, or regulated environments.
- Experience with technical documentation, developer enablement, and security best practices.
- Fluency in English; French is considered an advantage.
- Strong analytical, communication, and stakeholder management skills.