> Markdown version of [/jobs/ext/2318501-junior-application-security-consultant](https://www.wearedevelopers.com/jobs/ext/2318501-junior-application-security-consultant). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Junior Application Security Consultant - **Company:** NVISO - **Location:** Brussel, Belgium (Remote available) - **Experience:** Starter - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Applications Architecture, Business Logic, Software System Penetration Testing, Authentication Protocols, Microsoft Azure, Cyber Security, Continuous Integration, Information Systems Security Architecture Professional, Apache Maven, Team Foundation Server, OAuth, Open Web Application Security, Software Architecture, Openid Connect, Secure Coding, Software Engineering, Data Streaming, Software Security, Software Coding, Jenkins - **Published:** August 11, 2026 - **Apply:** https://be.indeed.com/viewjob?jk=6230cae71c4c6bdb ## About the Role You have a strong interest in the field of IT security and believe the following to be applicable to you: * You are eligible for NATO clearance (see HERE for more information). * You have a genuine interest in IT security and secure software development. * Basic understanding of application architectures, development frameworks, and authentication mechanisms (e.g. OAuth, OpenID Connect). * Some familiarity with development practices and programming concepts; hands-on coding experience is a plus but not mandatory. * Initial exposure to build and CI/CD tools (e.g. Jenkins, Azure DevOps/TFS, Maven, or similar). * Foundational knowledge of the Secure Development Lifecycle (SDLC) and an interest in how security requirements, design, and testing fit into it. * Awareness of common application security risks and vulnerabilities (e.g. OWASP Top 10). * Interest in application threat modeling, secure architecture, and identifying design or business logic flaws under guidance. * Ability to communicate clearly with technical stakeholders and willingness to develop confidence when interacting with clients. * Positive, team- and mission-oriented attitude. * Strong interpersonal and verbal/written communication skills, enabling effective collaboration in a consulting environment. * Excellent English communication skills, both verbal and written; Dutch and/or French is a plus. * You are ambitious, curious, and motivated to help clients improve their security posture. * You are willing to learn and become a better version of yourself, everyday; * Candidates must recognize and deal appropriately with confidential and sensitive information ## Description As a Junior Application Security Consultant, you will join a team focused on helping clients build and maintain secure applications by integrating security into their development lifecycle. You will work closely with experienced consultants and progressively take ownership of tasks as your skills grow. Your role is strongly oriented towards the defensive side of application security, with a particular focus on threat modeling, secure design, and security maturity improvements. Projects you will contribute to include: * Supporting threat modeling activities by helping analyze architectures, data flows, assets, trust boundaries, and security assumptions together with senior consultants. * Participating and also lead workshops with developers, product owners, and architects to identify and understand how an attacker would carry out malicious actions on one or more systems of any kind (IoT, OT, IT, etc.). * Contributing to application and software architecture security reviews. * Supporting maturity assessments (e.g. OWASP SAMM, DSOMM, CyFun) and helping clients understand their current maturity and improvement priorities. * Assisting in the preparation of technical security tests and penetration tests based on the identified threats, including helping define test scopes, relevant attack paths, and security assumptions to be validated. * Supporting senior consultants during technical testing activities by mapping test results back to identified threats and risk scenarios. * Helping prepare and deliver security awareness or secure coding sessions with other experts., * The use of AI for supportive purposes (e.g. spell-checking, improving wording) is acceptable. * Fully generated application documents created by AI without personal adaptation or review are not permitted. * Under no circumstances may NVISO information, data, or documents be uploaded to or processed by external AI tools. We reserve the right to exclude applications from the selection and interview process that are clearly created primarily or exclusively by AI and show no recognizable personal input. The purpose of this policy is to ensure a fair and transparent recruitment process and to obtain an authentic impression of our applicants. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The Road to MLOps: How Verivox Transitioned to AWS](https://www.wearedevelopers.com/videos/1050-the-road-to-mlops-how-verivox-transitioned-to-aws) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Enterprise-Cloud-Native - Fast-Paced Development & Deployment in a Highly Secure Banking Environment](https://www.wearedevelopers.com/videos/671-enterprise-cloud-native-fast-paced-development-deployment-in-a-highly-secure-banking-environment) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Our GitOps approach for deploying an Identity Provider and an API Gateway in a SaaS company](https://www.wearedevelopers.com/videos/776-our-gitops-approach-for-deploying-an-identity-provider-and-an-api-gateway-in-a-saas-company) ## Related Articles - [How to land a developer job in Amsterdam](https://www.wearedevelopers.com/magazine/36-how-to-land-a-developer-job-in-amsterdam) - [The Netherlands – Europe’s powerhouse for software development?](https://www.wearedevelopers.com/magazine/31-the-netherlands-europe-s-powerhouse-for-software-development) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [How to Find Tech Jobs in Amsterdam](https://www.wearedevelopers.com/magazine/279-how-to-find-tech-jobs-in-amsterdam) - [Best Companies in the Netherlands: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/193-best-companies-in-the-netherlands-top-25-companies-in-2023) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)