Application Security Engineer

Billit
Gent, Belgium
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
Dutch, English

Tech stack

Software System Penetration Testing Cyber Security Open Web Application Security Secure Coding Security Software Web Applications Software Security Static Application Security Testing Dynamic Application Security Testing

Job description

You’re responsible for raising the security bar across our web applications and embedding security throughout our entire development process. You work closely with the development squads, the QA team, and the Enterprise Architect. You report to the Head of Development & QA. This isn’t a role where everything is already in place: you actively help build out the scalability of our secure development cycle. That means combining hands-on execution with bringing structure and anticipating what still needs to be built. In practice:

  • You perform technical analyses of incoming vulnerability reports and responsible disclosure submissions.

  • You validate, reproduce, and resolve security vulnerabilities.

  • You develop and implement security improvements across our web applications.

  • You design and implement complex security requirements and secure-by-design solutions.

  • You analyze and remediate findings from SAST, DAST, dependency scanning, and other security tooling.

  • You provide technical support to development teams on secure coding, security architecture, and remediation.

  • You collaborate with external pentesters to clarify and resolve technical findings.

  • You actively contribute to the further development of our Application Security roadmap and tooling.

Requirements

  • You have at least a few years of relevant experience in application security and can independently manage and execute your work on a daily basis.

  • You’re familiar with security concepts such as OWASP, secure coding principles, and penetration testing.

  • You have hands-on experience with automated security tooling such as SAST, DAST, and dependency scanning.

  • You’re familiar with - or ready to quickly get up to speed on - DORA and ISO 27001 as regulatory frameworks.

  • Relevant certifications (OSCP, CEH, CISSP…) are a strong asset but not required.

  • You communicate fluently in English, preferably also in Dutch.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.be

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

1:36 min

Running AI applications with PWAs and background web workers

Maxim Salnikov Maxim Salnikov · WWC 2025

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · WWC 2021

2:47 min

Securing code provenance with digital identity signatures

Marcus Ross Marcus Ross · WWC Europe 2026

Videos

See all

Related articles

See all