
Senior Security Engineer – Application Security
Posted Aug 7

Posted Aug 7
This is a fully remote position, open to applicants in Portugal.
• Lead security initiatives throughout all stages of the Software Development Life Cycle (SDLC), encompassing design, threat modeling, implementation, testing, and release.
• Take ownership of moderately complex security projects or features.
• Collaborate with engineering and platform teams to ensure the security of AI-powered and autonomous features.
• Perform security assessments on applications, APIs, internal services, and platform components.
• Create and advocate for secure-by-default patterns, guardrails, and established processes.
• Manage and enhance security tools by optimizing signal quality and minimizing noise.
• Develop or enhance security automation and tooling.
• Convey risks, trade-offs, and recommendations to engineering partners.
• Identify deficiencies and inefficiencies in security processes and propose enhancements.
• Mentor junior engineers and onboard new hires.
• Foster strong relationships with stakeholders within your area of responsibility.
• Implement security enhancements that effectively reduce actual risks and minimize exposure periods.
• Avert recurring vulnerability patterns through improved design or automation techniques.
• Empower engineering teams to accelerate their delivery while encountering fewer security issues.
• Demonstrated experience in executing application security tasks in contemporary, cloud-native environments.
• Strong foundation in secure design principles and threat modeling techniques.
• Experience with vulnerability intake, triage, collaborative assessment, and remediation processes.
• Capability to independently manage and deliver moderately complex security tasks from start to finish.
• Proficiency across application security, cloud security, and platform security domains.
• Ability to read, write, and analyze code effectively.
• Experience in building or enhancing security tools and automation using modern programming languages.
• Proficiency in reviewing, validating, and securing code and workflows generated by AI or low-code tools.
• Hands-on experience with AWS (mandatory), Kubernetes, and microservices architectures.
• Understanding of penetration testing, red teaming, and purple teaming, and the appropriate contexts for each.
• Strong communication skills and ability to collaborate across functions.
• Capacity to mentor junior team members.
• Ability to seek guidance on ambiguous or novel issues while taking ownership of execution and delivery.
• Preferred: Knowledge of AI-enabled and automated systems.
• Preferred: Experience with AI-assisted development tools or agents.
• Preferred: Familiarity with secure-by-default patterns, paved roads, or guardrails.
• Preferred: Exposure to Azure in addition to AWS.
• Preferred: Experience in enhancing the signal quality of security tooling.
• Preferred: Familiarity with developer platforms, low-code platforms, or highly automated systems.
• Professional Development Fund.
• Internal Mobility Program.
• Structured development programs.
• Real growth opportunities.
• Access to mentors and world-class talent.
• Inclusive culture.
• Equal opportunity employment.
Henkel
Pepperl+Fuchs Group
Win Systems
Intel Corporation
Get handpicked remote jobs straight to your inbox weekly.