Security Engineer

Expertsat Diconium
München, Germany
16 days ago
Apply on www.jobfinder.de
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English, German

Tech stack

Java (Programming Language) JavaScript (Programming Language) Agile Methodology Burp Suite Cloud Engineering Code Review Secure Coding SonarQube Web Services Software Security Event Driven Architecture Devsecops
+3 more
Static Application Security Testing Microservices Dynamic Application Security Testing

Job description

assess them, and work with the teams to find suitable countermeasures.You conduct code reviews, threat modeling, and security tests.You audit our projects and support our teams during external audits.You actively contribute to monitoring and continuously improving the security standards of our applications and processes.You administer and further develop our security tool stack.WHAT YOU BRING ALONGSolid knowledge of agile software development and experience with Java, JavaScript, and TypeScript.Familiarity with modern architectural concepts such as microservices, event-driven systems, web services, and cloud-native solutions.Practical experience in application security, especially in DevSecOps, SAST, DAST, and secure coding best practices.Ability to identify security risks and develop appropriate measures.Experience with security standards such as NIST, ISO27001, BSI, NIS2 and their application in projects.Knowledge of tools like OWASP ZAP, SonarQube, Burp Suite or similar.Professional

Requirements

English skills for collaboration in international teams, German skills are a plus.A valid working permission for the EU.WHAT WE HAVE TO OFFER Discover new skills and improve your strengths, adapt your working day to your personal lifestyle, celebrate community, sustainability and diversity. And sweeten your working life with awesome perks and benefits!Professional & Personal Growth: Develop yourself both professionally and personally through training programs, free language courses, competence centers and an active tech community.Flexible Work-Life Balance: Benefit from hybrid work, workation, flexible hours, parental support and sabbaticals.Embrace Diversity & Sustainability: Engage in our Sustainability Hub, diverse communities, Diversity Taskforce and after-work activities.Comprehensive Benefits: Enjoy public transport tickets, job bikes, health offers, supplementary insurances, a pension plan and various discounts.WHAT WE VALUEAt Diconium, we value and recognize the unique

About the company

Join our global team of expertsAt Diconium, we do digital business transformation across various industries. As a team member, you will work on projects that generate value from software, data, and AI by delivering strategies and solutions that challenge conventional industry practices and drive technological progress. Together with over 2,300 fellow experts, you enable Fortune 500 firms, global market leaders, and SMEs to maximize the impact of their digital initiatives and achieve digital excellence. In everything we do, we prioritize people and genuine human connections, ensuring a supportive and inclusive work environment. And we give you maximum flexibility thanks to our hybrid workplace. WHAT YOU CAN EXPECTYou advise agile software development teams in the area of security. This includes the prevention, detection, and remediation of vulnerabilities.You identify risks in applications

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.jobfinder.de
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:47 min

Exploring career opportunities and recruitment open positions

Kurt Eder · LIVE

4:36 min

Exploiting e-commerce basket identifiers with Burp Suite

Anna Bacher · LIVE

1:15 min

Key lessons learned from implementing automated mobile DevSecOps

Moataz Nabil Moataz Nabil · LIVE

3:23 min

Building and installing the compiled custom rule extension

Daniel Strmečki +1 · World Congress 2022

3:31 min

Setting up a penetration testing environment for web apps

Anna Bacher · LIVE

2:09 min

Shifting security left using the DevSecOps approach

Aarno Aukia · LIVE

Videos

See all

Related articles

See all