Application Security Engineer

Itequia
1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English, Spanish
Experience level
Junior

Job location

Tech stack

User Authentication
Burp Suite
Code Review
Computer Security
Dynamic Program Analysis
Identity and Access Management
Open Web Application Security
Secure Coding
Software Engineering
SonarQube
Software Security
Devsecops
GXP
Static Application Security Testing
Dynamic Application Security Testing

Job description

We are looking for an experienced and passionate Application Security Architect with a strong background in software development and a deep interest in cybersecurity. You will join the team of one of our most prestigious clients to lead the design and implementation of secure application architectures in a highly regulated and innovation-driven environment., * Lead security architecture and code reviews (threat modeling, static/dynamic analysis, etc.).

  • Advise development teams on secure coding practices (OWASP, SAST/DAST, etc.).
  • Define and promote standards for authentication, certificate management, and cryptography.
  • Translate complex technical security concepts into actionable insights for non-technical stakeholders.
  • Act as a technical reference for application security within development and architecture teams.
  • Contribute to enterprise security frameworks (IAM, network, interfaces).
  • Train and mentor developers and software architects on security best practices.

Requirements

Do you have experience in Software development?, * 5+ years of experience in cybersecurity, with a strong focus on application security.

  • 1+ year of experience as a security architect or similar role.
  • Previous experience as a software developer or penetration tester.
  • Deep knowledge of authentication, digital certificates, and cryptographic standards.
  • Experience in security analysis of architectures and code.
  • Familiarity with secure coding guidelines (e.g., OWASP Top 10, CWE).
  • Ability to communicate technical risks to non-technical audiences.
  • Experience mentoring or training technical teams.
  • Advanced level of English and Spanish., * Experience in regulated environments (e.g., MDR, HIPAA, GxP).
  • Background in the pharmaceutical or healthcare sector.
  • Familiarity with tools like Burp Suite, ZAP, SonarQube, Snyk, etc.
  • Knowledge of DevSecOps and secure CI/CD pipelines.

Apply for this position