Senior Application Security Engineer

Detalles de la oferta

Want to take your career to the next level while having fun and working in a small, agile, and smart team? Do you like breaking and securing code? We are hiring at all levels: junior, senior, principal, and architect. Also, for different projects of different skill-sets. We have an agile environment and start-up culture backed by a strong enterprise. We are the product security team, protect multiple Oracle cloud services, and build a secure ecosystem where developers can build secure services. We work at the intersection of software development and security . Our team works very close to the code . We build mechanisms, processes, and automation to eradicate attack classes by default . Some activities we do are: doing security code reviews, design reviews, grey box reviews, building security libraries, embedding security tools in the CI/CD, triaging findings from sast/dast tools, training developers, etc We are mostly a Java shop, but we also have many services in Python, JavaScript, TypeScript, and infrastructure as code such as Kubernetes, SlatStack, Docker, etc As an application security engineer, you will focus on ensuring the security of multiple services by working directly with our security teams, collaborating with our engineering teams, and promoting good development security practices throughout Oracle. You will help developers understand security concepts and security practices . You will help the security team remain a trusted partner of the development organization by being friendly but uncompromising when it comes to getting security right. Hiring in our offices in Barcelona or Madrid. Responsibilities : Conduct security code reviews Implement appropriate security protections to solve both individual vulnerabilities and entire vulnerability classes Build and manage tools to help identify issues, both in the IDE and in CI/CD to scale out the team through automation Build libraries that prevent security issues by design Identify areas where our processes can be improved, and where possible implement those improvements Identify, reproduce, and report security issues Collaborate with software engineers to make our software better, helping them balance product and security risk decisions Work together to educate engineers and product teams on the importance of security. Perform proactive research to stay current on security issues, and share that knowledge ith the rest of the security and engineering teams Collaborate with application security management on program direction, team growth, and on addressing systemic security issues Minimum Qualifications: Programming experience with one or more programming language (Java, JavaScript, Python, HP, Perl, Ruby, Kotlin, Scala, C#, Golang, bash/zsh, C/C++). We're primarily a Java shop, but we work with multiple programming languages daily. 4 years in the field of software development or security engineering Existing application security knowledge and/or desire to learn Strong ethics and understanding of ethics in information security Capable of working independently while supporting a team environment Ability to efficiently manage multiple tasks Strong communication skills in English Bonus : B.S. in Computer Science, Computer Engineering, or related field, or commensurate experience Experience working in an Agile development environment. Familiarity with application security projects (e.g. OWASP Top 10), tools (e.g. ZAP, Burp), and how to build safer software. Recognized industry certification and/or continuing education programs are a major Experience or familiarity with threat modeling, pen-testing, bug bounties, code review, capture the flag, or other AppSec activities. Contributions to open-source projects. We offer more than just a job Agile environment – Start-up culture backed by a strong enterprise English-speaking environment and international team Strong professionals around you that will help to accelerate your growth High-impact learning culture: free access to online learning platforms and regular in-house training sessions Flexible working hours Private medical insurance and life insurance Many other benefits depending on the country Oracle NetSuite is an Equal Employment Opportunity Employer. We ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits of employment.


Salario Nominal: A convenir

Fuente: Adzuna_Ppc

Requisitos

Oficial De 1ª Lampista

Nos encontramos en búsqueda de lampistas oficial de 1ª y 2ª para nuestra delegación de Barcelona (obras en Barcelona y alrededores). se valora conocimientos ...


Sinophos Group Lloret - Barcelona

Publicado 7 days ago

Operador Central Receptora De Alarmas (Cra)

Necesitamos ampliar nuestra actual plantilla de OPERADORES en la CRA situada en Sant Cugat del Valles. Resumen funciones: - Gestión de señales de alarma de ...


Trablisa - Barcelona

Publicado 7 days ago

Inspectores/As De Gas (Igb + Ampr)

Descripción de la empresa En SGS nuestra misión es aportar valor a la sociedad, proporcionando un entorno sostenible. Con nuestro trabajo garantizamos la se...


Sgs - Barcelona

Publicado 7 days ago

F&B Service Expert

**Número de Empleo** 23039434 **Categoría de Empleo** Food and Beverage & Culinary **Ubicación** Le Méridien Barcelona, La Rambla 111, Barcelona, Barcelona...


Marriott International, Inc - Barcelona

Publicado 7 days ago

Built at: 2025-01-10T18:49:01.451Z