> Markdown version of [/jobs/ext/2665406-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/2665406-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity engineer - **Company:** Gmv Tres Cantos - **Location:** Tres Cantos, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Microsoft Azure, Cloud Computing, Cyber Security, Continuous Integration, Open Web Application Security, Fortify (Software), Secure Coding, SonarQube, Systems Integration, Software Vulnerability Management, Software Security, Git, Gitlab-ci, Checkmarx, Devsecops, Jenkins, Static Application Security Testing - **Published:** September 2, 2026 - **Apply:** https://www.recruit.net/job/cybersecurity-engineer-jobs/5EABA88832FE5A68 ## About the Role We are looking for aprofessional with solid experience in ApplicationSecurity, SSDLC and DevSecOps, combining technical expertise withexperience in service or team coordination. You should haveknowledge of: * SAST/SCA, vulnerability management and CI/CD security. * OWASP, CWE, CVE, CVSS and Secure Coding. * Git, pipelines and Security Gates. * SLA, KPI, demand, capacity and risk management. * APIs, scripting and automation. * Customer interaction and technical/executive reporting. * AI governance and risk management, including traceability and human oversight. We will also value previous experience with Checkmarx, Fortify, SonarQube and CI/CDplatforms such as Azure DevOps, Jenkins, GitHubActions or GitLab CI/CD will be valued, as well as knowledge of Cloud, containers, IaC and software supply chainsecurity. Knowledge of NIST SSDF, OWASP ASVS/SAMM, SBOM, SARIF and securityautomation will also be valued, as well as experience applying AI to AppSec/DevSecOps and relevant training orcertifications. ## Description Gain full access to exclusive job listings from leading companies worldwide. * Verified, High-Quality Jobs Only No ads, scams, or junk-just genuine opportunities. * Focus on Real Opportunities Explore thousands of open positions tailored to your lifestyle, including flexible remote jobs. * Exclusive Resume Review Receive expert feedback with personalized suggestions to enhance your resume. Cybersecurity engineer If you want to takethe next step in your cybersecurity career,combining technical service management with a hands-on role in Application Security andDevSecOps, this opportunity will allow you to contribute to theevolution of a corporate security service within a large organization. We´ll get to the point; we'll tell you what's not on the web.If you want to know more about de GMV WHAT CHALLENGE WILL YOU BE TAKING ON? You will combine twokey responsibilities: acting as the technicalreference and customer point of contact, while also contributinghands-on to the implementation and evolution of ApplicationSecurity, SSDLC and DevSecOps capabilities. Your mainresponsibilities will include: * Technically coordinating the service, managing demand, planning, priorities, capacity, SLAs and KPIs. * Integrating, configuring and optimizing SAST/SCA controls in CI/CD pipelines. * Coordinating application onboarding and defining Security Gates. * Contributing to vulnerability triage, prioritization, remediation and revalidation. * Acting as the technical point of contact for the customer, providing reporting and service follow-up. * Driving automation and industrialization through APIs and scripting. * Managing risks, incidents, deviations and escalations. * Advising development teams and coordinating with different technical areas. * Driving the evolution of the SSDLC/DevSecOps model, including the safe and supervised adoption of AI. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [The Road to MLOps: How Verivox Transitioned to AWS](https://www.wearedevelopers.com/videos/1050-the-road-to-mlops-how-verivox-transitioned-to-aws) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers)