Senior Application Security Engineer

Há 6 dias


Lisboa, Lisboa, Portugal Reltio Tempo inteiro

At Reltio, we believe data should fuel business success. Reltio's AI-powered data unification and management capabilities—encompassing entity resolution, multi-domain master data management (MDM), and data products—transform siloed data from disparate sources into unified, trusted, and interoperable data. Reltio Data Cloud delivers interoperable data where and when it's needed, empowering data and analytics leaders with unparalleled business responsiveness. Leading enterprise brands—across multiple industries around the globe—rely on our award-winning data unification and cloud-native MDM capabilities to improve efficiency, manage risk and drive growth.

At Reltio, our values guide everything we do. With an unyielding commitment to prioritizing our "Customer First", we strive to ensure their success. We embrace our differences and are "Better Together" as One Reltio. We are always looking to "Simplify and Share" our knowledge when we collaborate to remove obstacles for each other. We hold ourselves accountable for our actions and outcomes and strive for excellence. We "Own It". Every day, we innovate and evolve, so that today is "Always Better Than Yesterday". If you share and embody these values, we invite you to join our team at Reltio and contribute to our mission of excellence.

Reltio has earned numerous awards and top rankings for our technology, our culture and our people. Reltio was founded on a distributed workforce and offers flexible work arrangements to help our people manage their personal and professional lives. If you're ready to work on unrivaled technology where your desire to be part of a collaborative team is met with a laser-focused mission to enable digital transformation with connected data, let's talk

Job Summary:

The Sr. Application Security Engineer will play a vital role in building and integrating security practices within our development and release processes. You will work closely with cross-functional teams to ensure that security is a foundational aspect of our software design, development, and deployment, promoting secure coding practices and shift-left development methodologies.

Job Duties and Responsibilities:

  • Secure Development Lifecycle: Collaborate with development teams to integrate security practices throughout the software development lifecycle (SDLC), ensuring security is embedded from design through deployment. Help in the implementation of secure coding standards and best practices across development teams.
  • CI/CD Pipeline Security: Support implementation of security controls within our CI/CD pipelines, enabling automated security testing and vulnerability assessments. Work with release management teams to ensure secure deployment checks and compliance with security policies.
  • Shift-Left Security: Support shift-left development initiatives by providing guidance and remediation support to engineers. Develop and maintain security tools and frameworks that support developers in writing secure code from the outset.
  • Threat Modeling: Conduct threat modeling sessions with development teams to identify potential security risks early in the design process. Align with Engineering processes to include threat modeling into the architecture and design phases to proactively address security concerns.
  • Vulnerability Management: Analyze and support remediation of security vulnerabilities in applications, working with teams to prioritize efforts and validate fixes. Assist development teams in writing code fixes for vulnerabilities and ensure proper validation and testing before release.
  • Security Training: Deliver content around secure coding practices, application security threats, and remediation techniques. Guide developers on secure coding techniques and provide hands-on guidance during code reviews.
  • Collaboration: Partner with DevOps, QA, Engineering, Product, and Release Management teams to ensure security requirements are incorporated into all aspects of software development and delivery.
  • Release Management: Collaborate with release management teams to integrate security checks within the release process, ensuring secure deployment practices and compliance with security standards.
  • Continuous Improvement: Stay current with emerging security threats and best practices, continuously seeking opportunities to improve our security processes and tooling. Evaluate and integrate new security technologies and tools to enhance the security posture of our applications.

Skills You Must Have:

  • 5+ years of experience in application security or software development, with at least 2 years in a cloud-native or SaaS company.
  • Hands-on experience with secure coding practices and application development.
  • Understands cloud well-architected frameworks, application development, and deployment workflows.
  • Experience with release management processes and integrating security into deployment workflows.
  • Understanding of cloud well-architected frameworks, application development, and deployment workflows.
  • Passion for improving quality processes through shift-left, automation, and tools to enable increased efficiency and the highest product quality.
  • Self-starter who likes taking on challenges. Motivated, autonomous, and responsible with a history of shaping and establishing technical vision and architecture within successful companies.
  • Superior communication skills and the ability to communicate clearly with peers, customers, and leadership. Educates and collaborates well and likes to work toward a risk-appropriate consensus within each team.
  • Knowledge and expertise in essential web technologies like Java Spring Boot, Java, JavaScript, , C#, UI frameworks (e.g., , , React, Angular), microservices architectures, cloud technologies, serverless implementations, and emerging technologies. Hands-on experience in developing secure applications using these technologies.
  • Proficient in secure coding standards and best practices, with hands-on experience implementing them.
  • Experience leading secure code reviews and guiding developers on secure coding.
  • Strong understanding of application security vulnerabilities (e.g., OWASP Top Ten) and how to prevent them during development.
  • Experience with some combination of the top 3 IaaS vendors (AWS, GCP, and Azure) and working in their environments.
  • Experience with securing container ecosystems and Kubernetes orchestration.
  • Experience with Jenkins, ArgoCD, or other continuous integration software.
  • Experience operationalizing static analysis, software composition analysis, and dynamic analysis testing tools in the development pipeline.

Reltio is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. Reltio is committed to working with and providing reasonable accommodation to applicants with physical and mental disabilities.



  • Lisboa, Lisboa, Portugal Reltio Tempo inteiro

    At Reltio, we believe data should fuel business success. Reltio's AI-powered data unification and management capabilities—encompassing entity resolution, multi-domain master data management (MDM), and data products—transform siloed data from disparate sources into unified, trusted, and interoperable data. Reltio Data Cloud delivers interoperable data...


  • Lisboa, Lisboa, Portugal Veeam Software Tempo inteiro

    Veeam, the #1 global market leader in data resilience, believes businesses should control all their data whenever and wherever they need it. Veeam provides data resilience through data backup, data recovery, data portability, data security, and data intelligence. Based in Seattle, Veeam protects over 550,000 customers worldwide who trust Veeam to keep their...


  • Lisboa, Lisboa, Portugal Veeam Software Tempo inteiro

    Veeam, the #1 global market leader in data resilience, believes businesses should control all their data whenever and wherever they need it. Veeam provides data resilience through data backup, data recovery, data portability, data security, and data intelligence. Based in Seattle, Veeam protects over 550,000 customers worldwide who trust Veeam to keep their...


  • Lisboa, Lisboa, Portugal First Point Group Tempo inteiro

    Senior Network & Security Engineer (Cisco, Firewalls, L2 L3)Long-Term Contract | Lisbon (Hybrid: 1 day onsite, 4 days remote) - Start date: February 2026We are looking for an experienced Senior Network & Security Engineer to join a highly skilled infrastructure team supporting critical business services. This is a long-term contract role, based in Lisbon,...


  • Lisboa, Lisboa, Portugal Amgen Tempo inteiro

    Job DescriptionJoin our team atAMGEN Capability Center Portugal, the #1 company in Best Workplaces (201–500 employees' category) in Portugal in 2024 by the Great Place to Work Institute. With over 500 talented individuals from more than 40 nationalities, our Lisbon center thrives at the intersection of innovation, excellence, and inspiration. This is your...


  • Lisboa, Lisboa, Portugal Celfocus Tempo inteiro

    Make an impactby working for sectors where technology is the enabler, everything is ground-breaking and there's a constant need to be innovative.Be part of the teamthat combines business knowledge, technological edge and a design experience. Our different backgrounds and know-how are key in developing solutions and experiences for digital clients.Face...

  • Security Engineer

    Há 4 dias


    Lisboa, Lisboa, Portugal Covent IT Tempo inteiro

    About the RoleAs a browser security specialist engineer in Riskified, you'll build and maintain our sophisticated user-authentication and browser fingerprinting JavaScript application. Working in a dynamic, agile environment with cutting-edge technologies, you'll contribute to Riskified's merchant protection solution to authenticate genuine users during...


  • Lisboa, Lisboa, Portugal Cloudflare Tempo inteiro

    About UsAt Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without...


  • Lisboa, Lisboa, Portugal Essity Tempo inteiro

    We are seeking a proactive and technically skilled Security Operations Engineer to join our growing Security Operations team part of Essity's global Information Security team. This is a hands-on technical role ideal for someone passionate about cybersecurity, incident response, and threat detection.Job Description:As a Security Operations Engineer, you will...


  • Lisboa, Lisboa, Portugal Damia Group Tempo inteiro

    Our client is currently hiring a Senior Platform and Application Engineer to join their team   This is an opportunity to be part of the engineering team in Portugal of an AI- and automation-driven financial crime operations company from Iceland. The Company is focused on transforming how financial institutions fight financial crime, building and operating...