Senior Application Security Engineer

Há 2 dias


Lisboa, Lisboa, Portugal Reltio Tempo inteiro

At Reltio, we believe data should fuel business success. Reltio's AI-powered data unification and management capabilities—encompassing entity resolution, multi-domain master data management (MDM), and data products—transform siloed data from disparate sources into unified, trusted, and interoperable data. Reltio Data Cloud delivers interoperable data where and when it's needed, empowering data and analytics leaders with unparalleled business responsiveness. Leading enterprise brands—across multiple industries around the globe—rely on our award-winning data unification and cloud-native MDM capabilities to improve efficiency, manage risk and drive growth.

At Reltio, our values guide everything we do. With an unyielding commitment to prioritizing our "Customer First", we strive to ensure their success. We embrace our differences and are "Better Together" as One Reltio. We are always looking to "Simplify and Share" our knowledge when we collaborate to remove obstacles for each other. We hold ourselves accountable for our actions and outcomes and strive for excellence. We "Own It". Every day, we innovate and evolve, so that today is "Always Better Than Yesterday". If you share and embody these values, we invite you to join our team at Reltio and contribute to our mission of excellence.

Reltio has earned numerous awards and top rankings for our technology, our culture and our people. Reltio was founded on a distributed workforce and offers flexible work arrangements to help our people manage their personal and professional lives. If you're ready to work on unrivaled technology where your desire to be part of a collaborative team is met with a laser-focused mission to enable digital transformation with connected data, let's talk

Job Summary:

The Sr. Application Security Engineer will play a vital role in building and integrating security practices within our development and release processes. You will work closely with cross-functional teams to ensure that security is a foundational aspect of our software design, development, and deployment, promoting secure coding practices and shift-left development methodologies.

Job Duties and Responsibilities:

  • Secure Development Lifecycle: Collaborate with development teams to integrate security practices throughout the software development lifecycle (SDLC), ensuring security is embedded from design through deployment. Help in the implementation of secure coding standards and best practices across development teams.
  • CI/CD Pipeline Security: Support implementation of security controls within our CI/CD pipelines, enabling automated security testing and vulnerability assessments. Work with release management teams to ensure secure deployment checks and compliance with security policies.
  • Shift-Left Security: Support shift-left development initiatives by providing guidance and remediation support to engineers. Develop and maintain security tools and frameworks that support developers in writing secure code from the outset.
  • Threat Modeling: Conduct threat modeling sessions with development teams to identify potential security risks early in the design process. Align with Engineering processes to include threat modeling into the architecture and design phases to proactively address security concerns.
  • Vulnerability Management: Analyze and support remediation of security vulnerabilities in applications, working with teams to prioritize efforts and validate fixes. Assist development teams in writing code fixes for vulnerabilities and ensure proper validation and testing before release.
  • Security Training: Deliver content around secure coding practices, application security threats, and remediation techniques. Guide developers on secure coding techniques and provide hands-on guidance during code reviews.
  • Collaboration: Partner with DevOps, QA, Engineering, Product, and Release Management teams to ensure security requirements are incorporated into all aspects of software development and delivery.
  • Release Management: Collaborate with release management teams to integrate security checks within the release process, ensuring secure deployment practices and compliance with security standards.
  • Continuous Improvement: Stay current with emerging security threats and best practices, continuously seeking opportunities to improve our security processes and tooling. Evaluate and integrate new security technologies and tools to enhance the security posture of our applications.

Skills You Must Have:

  • 5+ years of experience in application security or software development, with at least 2 years in a cloud-native or SaaS company.
  • Hands-on experience with secure coding practices and application development.
  • Understands cloud well-architected frameworks, application development, and deployment workflows.
  • Experience with release management processes and integrating security into deployment workflows.
  • Understanding of cloud well-architected frameworks, application development, and deployment workflows.
  • Passion for improving quality processes through shift-left, automation, and tools to enable increased efficiency and the highest product quality.
  • Self-starter who likes taking on challenges. Motivated, autonomous, and responsible with a history of shaping and establishing technical vision and architecture within successful companies.
  • Superior communication skills and the ability to communicate clearly with peers, customers, and leadership. Educates and collaborates well and likes to work toward a risk-appropriate consensus within each team.
  • Knowledge and expertise in essential web technologies like Java Spring Boot, Java, JavaScript, , C#, UI frameworks (e.g., , , React, Angular), microservices architectures, cloud technologies, serverless implementations, and emerging technologies. Hands-on experience in developing secure applications using these technologies.
  • Proficient in secure coding standards and best practices, with hands-on experience implementing them.
  • Experience leading secure code reviews and guiding developers on secure coding.
  • Strong understanding of application security vulnerabilities (e.g., OWASP Top Ten) and how to prevent them during development.
  • Experience with some combination of the top 3 IaaS vendors (AWS, GCP, and Azure) and working in their environments.
  • Experience with securing container ecosystems and Kubernetes orchestration.
  • Experience with Jenkins, ArgoCD, or other continuous integration software.
  • Experience operationalizing static analysis, software composition analysis, and dynamic analysis testing tools in the development pipeline.

Reltio is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements. Reltio is committed to working with and providing reasonable accommodation to applicants with physical and mental disabilities.



  • Lisboa, Lisboa, Portugal Reltio Tempo inteiro

    At Reltio, we believe data should fuel business success. Reltio's AI-powered data unification and management capabilities—encompassing entity resolution, multi-domain master data management (MDM), and data products—transform siloed data from disparate sources into unified, trusted, and interoperable data. Reltio Data Cloud delivers interoperable data...


  • Lisboa, Lisboa, Portugal Inetum Tempo inteiro

    Company DescriptionInetum is a global leader in IT services, dedicated to providing innovative solutions to our clients. We are committed to fostering a dynamic, inclusive workplace that values diversity, where creativity and collaboration thrive. We operate in 19 countries with more than 28,000 employees worldwide. If you are looking for a dynamic,...


  • Lisboa, Lisboa, Portugal OutSystems Tempo inteiro

    There are NO limits to your career: come shape the future and be part of a truly unique global culture at OutSystemsAbout the roleAs a Security Engineer, Application Security at OutSystems, you will be the goalkeeper, preventing insecure design flaws and sneaky bugs from ever reaching production. You'll conduct threat modeling exercises with developers...

  • Security Engineer

    2 semanas atrás


    Lisboa, Lisboa, Portugal Logicalis Tempo inteiro

    Acerca da LogicalisA Logicalis é um Global IT Solutions & Digital Services Provider que acelera a transformação digital dos seus clientes em todo o mundo, através de uma rede internacional dotada de centros de especialização, equipas líderes do sector e parcerias estratégicas (que incluem Cisco, Microsoft, Dell Technologies, Palo Alto, Citrix, entre...


  • Lisboa, Lisboa, Portugal Damia Group Tempo inteiro

    Our client is currently hiring a Backend Platform and Application Engineer to join their team   This is an opportunity to be part of the engineering team in Portugal of an AI- and automation-driven financial crime operations company from Iceland. The Company is focused on transforming how financial institutions fight financial crime, building and operating...


  • Lisboa, Lisboa, Portugal 1GLOBAL Tempo inteiro

    1GLOBAL is a technology-driven global mobile communications leader, built to help enterprises unlock the full potential of mobile connectivity at scale. Powered by a best-in-class telecom platform – including our own owned and operated global mobile core network, a full end-to-end eSIM technology stack, and an extensive portfolio of telecom licenses...


  • Lisboa, Lisboa, Portugal Amadeus Tempo inteiro

    Job Title Principal Security SpecialistSummary: We are looking for a Principal Security Specialist to lead security design, risk alignment, and governance for a large-scale Self-Service application ecosystem. In this role, you´ll shape secure architectures across cloud and on-prem environments, ensuring alignment with business strategy, risk...


  • Lisboa, Lisboa, Portugal Egor Tempo inteiro

    No âmbito do reforço das nossas equipas, procuramos um(a) Security Lab Support Engineer para apoiar a gestão e melhoria contínua de laboratórios técnicos, incluindo o acompanhamento da resolução de bugs em GitHub, execução de laboratórios em contexto de aprendizagem, documentação de issues técnicos e atualização de conteúdos formativos.A...

  • Network Engineer Senior

    2 semanas atrás


    Lisboa, Lisboa, Portugal Elevus Tempo inteiro

    Estamos a contratar: Network Engineer Senior Localização: LisboaRegime: 100% Presencial Estás pronto para fazer crescer a tua carreira num ambiente dinâmico e colaborativo? Estamos à procura de um(a) Network Engineer Senior com forte experiência em infraestruturas de rede Cisco, para atuar em contexto crítico nas instalações do cliente. Se és...


  • Lisboa, Lisboa, Portugal Elevus Tempo inteiro

    Estamos a contratar: Senior QA GenAI Engineer Localização: Lisboa Regime de trabalho: Híbrido Nível: Sénior Estás pronto para fazer crescer a tua carreira num ambiente dinâmico e colaborativo? Estamos à procura de um(a) Senior QA GenAI Engineer com forte foco em qualidade, automação e Inteligência Artificial Generativa, para integrar projetos...