
Application Security Engineer
Posted 1 hour ago

Posted 1 hour ago
This is a fully remote position, open to applicants in Turkey.
β’ Execute threat modeling, perform security architecture evaluations, and conduct design analyses for web applications and APIs.
β’ Carry out both manual and automated security assessments during the development and pre-release phases.
β’ Create and implement security pipelines (incorporating SAST and DAST) and ensure their integration within the SDLC process.
β’ Establish and oversee SBOM generation and consumption workflows throughout the SDLC.
β’ Work collaboratively with development teams to ensure prompt resolution of detected vulnerabilities.
β’ Uphold security guidelines consistent with OWASP best practices and offer training for development teams.
β’ Remain updated on emerging application security threats, tools, and industry advancements.
β’ 3β5 years of experience in application security, specifically focusing on web applications and API security.
β’ Proficient knowledge of at least one scripting or programming language (such as Python, JavaScript, C#, or Go).
β’ Experience with tools like OWASP ZAP, Burp Suite, Snyk, or similar applications.
β’ Familiarity with secure coding practices, DevSecOps methodologies, and container security principles.
β’ Strong grasp of CVE, CVSS, and vulnerability disclosure processes.
β’ Excellent command of business English.
β’ Understanding of SBOM standards (CycloneDX, SPDX) and experience in integrating SBOM tools into CI/CD pipelines.
β’ Knowledge of software composition analysis (SCA) tools.
β’ π» Choice of work equipment (e.g., laptop, monitor, etc.)
β’ π¬π§ English classes (iTalki β $130 monthly)
β’ β° Flexible schedule (we typically work between 09:00/10:00 and 18:00/19:00 CET or EET)
β’ πΆ Newborn bonus (β¬500 per child)
β’ π§ Patent remuneration
β’ π΄ Paid leave
β’ π§βπ» Remote work options in locations without our offices
β’ Hybrid work arrangement in locations with offices (2 days in-office, 3 days remote)
Constructor Tech
Nethermind
Arrow Components
Get handpicked remote jobs straight to your inbox weekly.