Senior Application Security Engineer

Há 1 mês


Lisboa, Lisboa, Portugal Springer Nature Tempo inteiro

About Us
Springer Nature is a leading global research, educational and professional publisher. We have a rich history of providing quality content through innovative products and services. Our imprints, books, journals, and resources reach millions of people worldwide, helping researchers, scientists, students, and professionals achieve their goals and ambitions.

Our Mission
We're looking for an experienced Application Security Engineer to make AppSec capabilities an integral part of our platforms. Our Engineering Enablement department consists of around 60 people, spread over teams that collaborate closely to fulfill our mission. We're a distributed department with main locations in London, Dordrecht, Berlin, Lisbon, and New York.

Our Technology
We've built platforms serving hundreds of developers at scale around the world. We're making more use of Kubernetes as a backend container platform and integrating it into our platform offering. We're leveraging Kubernetes to build a new PaaS that will co-exist with our current Cloud Foundry Platform, as well as managing an internal database platform that runs over 1,200 database servers.

Your Role
You'll work with our EE security architect and two other security engineers to establish streamlined application security capabilities within our platforms. This is a new community of security experts within the department that needs building up and shaping together. You'll work with our central security transformation and security operations teams to ensure company-wide initiatives are represented in and consulted by EE.

Your Responsibilities
Our internal users run around 4,000 applications within our platform, deploying them through our CI/CD systems many times a day. Together with your team, your responsibility is to make sure that the needed security measures are a frictionless and trusted part of those processes. You'll contribute to the evolution of our application security measures through leveraging IaC, maximizing customer self-service, and living the continuous integration mindset. You'll help improve and optimize our existing security landscape and consult our internal customers on improving their application security stance.

Key Tasks
Maintaining and improving the AppSec capabilities of our platform
Running and integrating AppSec tooling into the continuous integration processes of development teams
Supporting the creation of company-wide structures and initiatives that drive improvements in application security
Driving a 'Shift-left' approach to application security accountability and responsibility with a focus on enabling development teams
Working closely with other security-focused teams in the company, shaping our overall security strategy
Consulting teams on best practices related to application security
Selecting and potentially facilitating application security training
Working with the team to document policies, processes, procedures, and technical designs related to application security
Monitoring our overall security stance and using that data to improve our application security capabilities

About You
You're a friendly team member who is modest and humble, open to learning from anyone regardless of age, gender, race, role, or experience. You value social interactions and can self-reflect by asking questions. You have a strong preference for working together, sharing knowledge, and training others.

Desired Skills and Experience
High sensitivity for security-relevant issues
Experience with Infrastructure as Code, for automation and configuration management
Programming experience with Golang or at least one modern language
Experience in operating and maintaining cloud infrastructure
Knowledge of secure coding practices and patterns
Understanding of SDLC (Software Development Life Cycle)
Experience with cloud platforms, ideally GCP

Preferred Skills and Experience
Experience with common CI/CD tools
Experience with containerization
High user and customer orientation
Strong conceptual skills, logical/analytical thinking & problem-solving skills
Experience in contributing to the architecture and design of new and existing systems
Programming experience with languages used by our delivery streams (e.g. Java, Kotlin, .Net)
Proficiency with security tools & technologies (SAST, DAST, IAST, SCA)
Knowledge of common web application security (OWASP Top Ten)
Experience using a maturity model such as BSIMM
Facilitating threat modelling across systems and services



  • Lisboa, Lisboa, Portugal Poatek Tempo inteiro

    Senior Application Security EngineerWe are seeking a highly skilled Senior Application Security Engineer to join our team at Poatek. As a key member of our security team, you will be responsible for designing and implementing secure application architectures, identifying and mitigating security risks, and ensuring compliance with industry standards.Key...


  • Lisboa, Lisboa, Portugal Tbwa ChiatDay Inc Tempo inteiro

    Job Title: Senior Application Security EngineerAbout the Role:LastPass is a leader in password and identity management, making it easier to log into life and work. We welcome new ideas, support your growth, and recognize your value. If you are passionate about complex problem solving and motivated by scale, then this is the role for you.Key...


  • Lisboa, Lisboa, Portugal Fortis Games Tempo inteiro

    About the RoleFortis Games is seeking a highly skilled Senior Application Security Engineer to lead our application cybersecurity efforts. As a key member of our team, you will be responsible for managing all aspects of our application security technology stack and associated processes and procedures.Key Responsibilities Own the Application Security...


  • Lisboa, Lisboa, Portugal Tbwa ChiatDay Inc Tempo inteiro

    About the RoleLastPass is a leader in password and identity management, making it easier to log into life and work. We're looking for a talented Senior Application Security Engineer to join our team and help us ensure the security of our applications.Key ResponsibilitiesCollaborate with software engineers, product owners, and our architecture team to...


  • Lisboa, Lisboa, Portugal Lastpass Tempo inteiro

    Senior Application Security SpecialistLastPass, a leading password management company, is seeking a Senior Application Security Specialist to join our Product Security team. As a pioneer in cloud security technology, we provide award-winning password and identity management solutions that are convenient, easy to manage, and effortless to use. Our team is...


  • Lisboa, Lisboa, Portugal Lastpass Tempo inteiro

    About LastPassLastPass is a leader in password and identity management, making it easier to log into life and work. Trusted by 100,000 businesses and millions of users, LastPass combines advanced security with effortless access for individuals, families, small business owners, and enterprise professionals. With LastPass, important credentials are protected...


  • Lisboa, Lisboa, Portugal WhiteSource Tempo inteiro

    Job SummaryWe are seeking a highly skilled Senior Application Security Specialist to join our team at WhiteSource. As a key member of our security team, you will be responsible for performing security source code analysis, analyzing application vulnerabilities, and providing mitigation strategies.ResponsibilitiesPerforming security source code analysis to...


  • Lisboa, Lisboa, Portugal Springer Nature Group Tempo inteiro

    About UsSpringer Nature Group is a global publisher dedicated to providing the best possible service to the research community. We help authors share their discoveries and enable researchers to find, access, and understand the work of others.Our MissionWe're looking for an experienced Application Security Engineer to make AppSec capabilities an integral and...


  • Lisboa, Lisboa, Portugal Fortis Games Tempo inteiro

    About the RoleAt Fortis Games, we are seeking a highly skilled Senior Application Security Specialist to manage all aspects of our application cybersecurity needs. As part of our team, you will be responsible for owning the Application Security technology stack and associated processes and procedures.Key ResponsibilitiesHelp maintain our build & deployment...


  • Lisboa, Lisboa, Portugal Noesis Tempo inteiro

    Secure Software Development RoleNoesis is seeking a skilled professional to join our team as a Junior Application Security Engineer.This role involves working closely with development teams to integrate security into the development lifecycle. The ideal candidate has a developer mindset and is motivated to learn and apply security best practices within an...


  • Lisboa, Lisboa, Portugal Sword Health Tempo inteiro

    Sword Health is revolutionizing the healthcare industry by harnessing the power of technology to predict, prevent, and treat pain. As a key member of our team, you will play a vital role in ensuring the security of our applications and protecting our users' sensitive information.We are seeking a highly skilled and experienced Principal Application Security...

  • Senior Engineering Manager

    4 semanas atrás


    Lisboa, Lisboa, Portugal Datadog Tempo inteiro

    About the Role: We're looking for an experienced Senior Engineering Manager to lead our Application Security team. The ideal candidate will have a strong technical background, excellent leadership skills, and a passion for security. Main Responsibilities:Manage a team of 3+ Engineers50% hands-on developing in Ruby, Python, or GoContribute to library...


  • Lisboa, Lisboa, Portugal Willowtree Tempo inteiro

    About the RoleWe are seeking a highly skilled Cybersecurity Expert to join our team at WillowTree. As a key member of our Application Security team, you will be responsible for ensuring the security and integrity of our clients' digital products.Key ResponsibilitiesDesign and implement secure application architectures and protocolsConduct thorough security...


  • Lisboa, Lisboa, Portugal Sword Tempo inteiro

    Transforming Healthcare with Secure TechnologySword Health is revolutionizing the way we approach pain management, leveraging cutting-edge technology to predict, prevent, and treat pain. As a Principal Application Security Engineer, you will play a critical role in ensuring the security and integrity of our platform.Your Key Responsibilities:Develop and...


  • Lisboa, Lisboa, Portugal Intapp Tempo inteiro

    About the RoleIntapp is seeking a highly skilled Senior Product Security Engineer to join our application security team. As a key member of our team, you will be responsible for ensuring the security and integrity of our products. Your expertise in Java and Python will be invaluable in this role.Key ResponsibilitiesDefining security requirements for our...


  • Lisboa, Lisboa, Portugal Springer Nature Tempo inteiro

    About the RoleWe are seeking an experienced Application Security Engineer to join our Engineering Enablement department at Springer Nature. As a key member of our team, you will be responsible for establishing and maintaining application security capabilities within our platforms.Our team is responsible for providing managed platforms that enable...


  • Lisboa, Lisboa, Portugal Springer Nature Group Tempo inteiro

    About the RoleWe are seeking an experienced Application Security Engineer to join our Engineering Enablement department at Springer Nature Group. As a key member of our team, you will play a crucial role in establishing streamlined application security capabilities within our platforms.Our company-wide security maturity program aims to build up a global...


  • Lisboa, Lisboa, Portugal Datadog Tempo inteiro

    **Company Overview**Datadog is a leading company in the field of application security, providing real-time monitoring and risk management solutions for web applications, serverless applications, and APIs. About the RoleWe are seeking an experienced Senior Software Engineering Team Lead to join our Application Security team. The successful candidate will...

  • Cybersecurity Engineer

    4 semanas atrás


    Lisboa, Lisboa, Portugal Intapp Tempo inteiro

    About the Role: We're expanding our application security team and are looking for a skilled Cybersecurity Engineer with experience in Java and Python to join our team at Intapp.About You: To be successful in this role, you'll need 8-10 years of experience in a cyber security engineering role, including at least 3+ years in an Application Security role and 5+...


  • Lisboa, Lisboa, Portugal Lastpass Tempo inteiro

    About LastPassLastPass is a leader in password and identity management, making it easier to log into life and work. Trusted by 100,000 businesses and millions of users, LastPass combines advanced security with effortless access for individuals, families, small business owners, and enterprise professionals. With LastPass, important credentials are protected...