Senior Application Security Engineer

Detalles de la oferta

Want to take your career to the next level while having fun and working in a small, agile, and smart team?
Do you like breaking and securing code?
We are hiring at all levels: junior, senior, principal, and architect.
Also, for different projects of different skill-sets.
We have an agile environment and start-up culture backed by a strong enterprise.
We are the product security team, protect multiple Oracle cloud services, and build a secure ecosystem where developers can build secure services.
We work at the intersection of software development and security .
Our team works very close to the code .
We build mechanisms, processes, and automation to eradicate attack classes by default .
Some activities we do are: doing security code reviews, design reviews, grey box reviews, building security libraries, embedding security tools in the CI/CD, triaging findings from sast/dast tools, training developers, etc... We are mostly a Java shop, but we also have many services in Python, JavaScript, TypeScript, and infrastructure as code such as Kubernetes, SlatStack, Docker, etc.. As an application security engineer, you will focus on ensuring the security of multiple services by working directly with our security teams, collaborating with our engineering teams, and promoting good development security practices throughout Oracle.
You will help developers understand security concepts and security practices .
You will help the security team remain a trusted partner of the development organization by being friendly but uncompromising when it comes to getting security right.
Hiring in our offices in Barcelona or Madrid.
Responsibilities : Conduct security code reviews Implement appropriate security protections to solve both individual vulnerabilities and entire vulnerability classes Build and manage tools to help identify issues, both in the IDE and in CI/CD to scale out the team through automation Build libraries that prevent security issues by design Identify areas where our processes can be improved, and where possible implement those improvements Identify, reproduce, and report security issues Collaborate with software engineers to make our software better, helping them balance product and security risk decisions Work together to educate engineers and product teams on the importance of security.
Perform proactive research to stay current on security issues, and share that knowledge ith the rest of the security and engineering teams Collaborate with application security management on program direction, team growth, and on addressing systemic security issues Minimum Qualifications: Programming experience with one or more programming language (Java, JavaScript, Python, HP, Perl, Ruby, Kotlin, Scala, C#, Golang, bash/zsh, C/C++).
We're primarily a Java shop, but we work with multiple programming languages daily.
4+ years in the field of software development or security engineering Existing application security knowledge and/or desire to learn Strong ethics and understanding of ethics in information security Capable of working independently while supporting a team environment Ability to efficiently manage multiple tasks Strong communication skills in English Bonus : B.S.
in Computer Science, Computer Engineering, or related field, or commensurate experience Experience working in an Agile development environment.
Familiarity with application security projects (e.g.
OWASP Top 10), tools (e.g.
ZAP, Burp), and how to build safer software.
Recognized industry certification and/or continuing education programs are a major Experience or familiarity with threat modeling, pen-testing, bug bounties, code review, capture the flag, or other AppSec activities.
Contributions to open-source projects.
We offer more than just a job!
Agile environment – Start-up culture backed by a strong enterprise English-speaking environment and international team Strong professionals around you that will help to accelerate your growth High-impact learning culture: free access to online learning platforms and regular in-house training sessions Flexible working hours Private medical insurance and life insurance Many other benefits depending on the country Oracle NetSuite is an Equal Employment Opportunity Employer.
We ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform crucial job functions, and to receive other benefits of employment.


Salario Nominal: A convenir

Fuente: Talent_Dynamic-Ppc

Requisitos

Desarrollador/A Software (Kong, Apis), 100% En Remoto

Desarrollador/a Software (KONG, APIs) En SEREM estamos comprometidos con diversos proyectos y queremos contar con los mejores profesionales del sector. Nos ...


Serem - Madrid

Publicado 23 days ago

Responsable Cad / Cam, Bizkaia

Responsable CAD / CAM Perfil buscado (Hombre/Mujer) Será el/la encargado/a de Diseñar gestionar sus trabajos y comunicar tanto con cliente interno como ...


Michael Page - Madrid

Publicado 23 days ago

Desarrollador/A Fullstack, 100% En Remoto

Desarrollador/a Fullstack Descripción En Krell Consulting buscamos un/a Desarrollador/a Fullstack para un proyecto innovador. Si tienes experiencia tanto en...


Krell Consulting & Training - Madrid

Publicado 23 days ago

Administrador/A Terraform, Madrid

Administrador/a Terraform Si crees que la ciberseguridad va más allá del pentesting... ¡Tu sitio está con nosotros!Estamos ampliando nuestros equipos en el s...


GMV - Madrid

Publicado 23 days ago

Built at: 2025-01-06T00:55:23.693Z