Analista Sênior de AppSec
Core
Senior Application Security Analyst responsible for securing applications and strategic high-impact projects through vulnerability analysis, control implementation, and alignment with security best practices.
Role type
Senior IC Application Security Engineer
Builds
Secure application pipelines, automated security controls, and cloud-native security guardrails
Domain
Financial Services / Application Security
Required skills
Application Security (SDLC), SAST/DAST/SCA/Secret Scanning, OWASP Top 10 & ASVS, Vulnerability Prioritization, Cloud-Native Security (Kubernetes, Serverless), DevOps (GitHub Actions), API Security (RESTful, Webhooks, SDKs)
Preferred skills
AI/LLM Security, Azure Cloud
Technologies
CodeQL, Sonatype, Dependabot, Snyk, Checkmarx, GitHub Actions, Kubernetes, Azure
Responsibilities
Perform security analysis across the SDLC, identify vulnerabilities, recommend and build technical/process controls, interpret and prioritize security risks for dev teams, implement security in cloud-native environments, create automation scripts and security-as-code policies, secure API integrations and webhooks
Seniority
Senior, hands-on IC