Application Security Engineer (w/m/d)
Core
Integrating application security into the software development lifecycle by implementing and operating security testing tools and managing remediation of vulnerabilities.
Role type
Application Security Engineer
Builds
Secure software development processes and vulnerability management workflows
Domain
Financial services / Application Security
Deliverable
production ML models | product features | dashboards & analysis | client delivery | infrastructure
Required skills
SCA, SAST, DAST tool implementation and configuration, CI/CD pipeline security integration, vulnerability risk prioritization, security rule and quality gate definition, metrics and dashboard development, OWASP and ISO/IEC 27001 standards knowledge
Preferred skills
Software development and architecture background, modern application operations experience
Technologies
SCA, SAST, DAST, CI/CD pipelines
Responsibilities
Implement, configure, and operate SCA, SAST, and DAST solutions; define security rules, guidelines, and quality gates; analyze and evaluate identified vulnerabilities; track open findings and ensure remediation; prioritize vulnerabilities based on risk and exploitability; create reports and dashboards for security trends and status; ensure adherence to security standards and best practices; support the continuous improvement of the Secure Software Development Lifecycle