Application Security Consultant

Propertyvalue
Spain
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
6 years minimum
Working hours
Regular working hours
Job source

Tech stack

Software System Penetration Testing Cloud Computing Security Code Review DevOps Open Web Application Security Systems Development Life Cycle Software Vulnerability Management Enterprise Software Applications Software Security Api Design Devsecops Static Application Security Testing
+1 more
Dynamic Application Security Testing

Requirements

Job Title: Application Security Consultant Role Purpose Ensure enterprise applications meet the organizations security, risk, and compliance standards by embedding security across the SDLC and supporting effective vulnerability management in line with regulatory and internal control requirements. Key Responsibilities - Conduct application security assessments across web, mobile, and API-based applications - Identify security vulnerabilities, assess risk impact, and recommend remediation actions - Support secure SDLC practices, including threat modeling, code reviews, and security testing - Perform and support SAST, DAST, and dependency scanning using industry-standard tools - Collaborate with development, DevOps, risk, and compliance teams to remediate security findings - Ensure alignment with regulatory requirements, internal security controls, and governance frameworks - Support audits, penetration testing, and security assurance activities as required Required Experience & Skills

  • Minimum 6 years experience in application security, cybersecurity, or secure software engineering roles - Strong hands-on experience with OWASP Top 10 and common application security vulnerabilities - Practical experience using SAST and DAST tools for application security testing - Solid understanding of secure SDLC principles and DevSecOps practices - Strong analytical, risk assessment, and problem-solving skills - Effective communication skills with the ability to engage technical and non-technical stakeholders Nice to Have - Experience within banking or financial services environments - Familiarity with regulatory, compliance, and risk frameworks relevant to financial institutions - Exposure to cloud security, DevSecOps tooling, or penetration testing activities

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on es.trabajo.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:10 min

Understanding the core concepts of API design

Alen Pokos · LIVE

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all