Software Security Engineer

SICPA HOLDING SA
Málaga, Spain
7 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
5 years minimum
Working hours
Regular working hours
Languages
English, French

Tech stack

Java (Programming Language) JavaScript (Programming Language) Amazon Web Services Software System Penetration Testing Continuous Integration DevOps Python (Programming Language) Network Layer OpenShift Ansible Security Support Provider Interface Software Engineering
+8 more
SonarQube Delivery Pipeline Software Security Kubernetes Information Technology Software Coding Terraform Vulnerability Analysis

Job description

We are looking for an experienced Security Engineer to join our Digital Research & Innovation organization and help embed security from the design phase across SICPA’s digital products worldwide.You will play a global, transversal role, working closely with development and DevOps teams to identify vulnerabilities early, streamline security practices, and integrate security controls into modern cloud?native environments.SOFTWARE SECURITY ENGINEERKEY OBJECTIVESShift security left by addressing security early in the design and development processAutomate and maintain security checks within CI/CD pipelinesReduce vulnerabilities before deploymentEnsure compliance with security regulations and standardsPromote collaboration between development, security, and operations teams worldwideKEY RESPONSABILITIESDefine and review security requirements and architectural designs across application, infrastructure, and network layersProvide security support during design and development phases of digital productsDevelop, maintain, and improve security and vulnerability scanning tools integrated into build pipelinesPerform security reviews of pull requests, analyze vulnerabilities, and support remediation actionsExecute preliminary audits, document findings, and contribute to risk mitigation strategiesIdentify vulnerabilities in applications and cloud?native environments, including Kubernetes / OpenShift platforms and public cloud (AWS)Support secure deployment in public cloud environmentsMonitor industry security trends and assess potential impacts on productsContribute to quarterly planning and long?term security improvement roadmapsProvide visibility on the security level per product and teamCollaborate actively with global security teams across departments and regionsReport security incidents and escalate issues when requiredWhen relevant, organise security workshops for technical teamsPROFILEUniversity degree in Computer Science, Engineering, or equivalent5+ years of experience in security engineering, application security, or secure software architectureExperience in application security testing tools (e.g. SonarQube is a plus)Experience in penetration testing or offensive securitySoftware development experience, preferably in Java, JavaScript, and PythonExperience with automation and infrastructure?as?code tools (Ansible, Terraform) is a plusKnowledge of Kubernetes / OpenShift is a strong advantageKnowledge of AWS security is a strong advantageSecurity certifications (OSCP, CEH, CISA) are a plusStrong communication and analytical skills in a global, cross?functional environmentFluent in English; French is an assetJOIN US!Our success comes from our highly skilled and talented employeesRespectful entrepreneurship and a long-term vision are key for successOur people contribute to a more secure worldDiversity at all levels of an organisation is a strengthsWe offer an exciting and challenging role, with great potential for personal development within a unique organization in a fascinating industry. Your file will be handled with upmost confidentiality and discretion.

Requirements

University degree in Computer Science, Engineering, or equivalent 5+ years of experience in security engineering, application security, or secure software architecture Experience in application security testing tools (e.g. SonarQube is a plus) Experience in penetration testing or offensive security Software development experience, preferably in Java, JavaScript, and Python Experience with automation and infrastructure?as?code tools (Ansible, Terraform) is a plus Knowledge of Kubernetes / OpenShift is a strong advantage Knowledge of AWS security is a strong advantage Security certifications (OSCP, CEH, CISA) are a plus Strong communication and analytical skills in a global, cross?functional environment Fluent in English; French is an asset

Benefits & conditions

Respectful entrepreneurship and a long-term vision are key for success Our people contribute to a more secure world Diversity at all levels of an organisation is a strengths We offer an exciting and challenging role, with great potential for personal development within a unique organization in a fascinating industry. Your file will be handled with upmost confidentiality and discretion.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

1:42 min

Automating Skupper deployments using Ansible

Alex Soto Alex Soto · WWC 2024

1:34 min

Essential commands for running and testing Terraform configurations

Hennie Francis · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all