> Markdown version of [/jobs/ext/2667040-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/2667040-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity engineer - **Company:** Gmv Tres Cantos - **Location:** Tres Cantos, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Application Programming Interfaces (APIs), Microsoft Azure, Bash Shell, Cyber Security, System Configuration, Continuous Integration, Github, Python (Programming Language), Open Web Application Security, Windows PowerShell, Fortify (Software), Secure Coding, Software Engineering, SonarQube, Systems Integration, Software Vulnerability Management, Software Repository, Scripting, Software Security, Git, Gitlab-ci, Kubernetes, Enterprise Integration, Checkmarx, Devsecops, Docker, Jenkins, Static Application Security Testing - **Published:** September 2, 2026 - **Apply:** https://www.recruit.net/job/cybersecurity-engineer-jobs/76B5B36EB2754AE8 ## About the Role We are looking for aprofessional with practical experience in ApplicationSecurity and DevSecOps, particularly integrating SAST/SCA into CI/CD environments. You should haveknowledge of: * CI/CD, Git and code repositories. * OWASP Top 10, CWE, CVE and CVSS, as well as vulnerability and false-positive analysis. * Secure development and SSDLC, including automated controls and Security Gates. * APIs and scripting, particularly Python, PowerShell or Bash. * Tool and pipeline integration and troubleshooting. * Secure management of credentials, tokens and secrets. * The ability to analyze code and collaborate effectively with development teams. We will also value previous experience, and knowledge in Checkmarx/Checkmarx One, Fortify, SonarQube andCI/CD platforms such as Azure DevOps, Jenkins,GitHub Actions or GitLab CI/CD will be valued. Knowledge of SBOM, software supply chain security, Docker,Kubernetes, IaC and container security, as well as SARIF, APIs and automation, will also bevalued. Training or certifications in DevSecOps,Application Security or Secure Coding will be a plus. ## Description Gain full access to exclusive job listings from leading companies worldwide. * Verified, High-Quality Jobs Only No ads, scams, or junk-just genuine opportunities. * Focus on Real Opportunities Explore thousands of open positions tailored to your lifestyle, including flexible remote jobs. * Exclusive Resume Review Receive expert feedback with personalized suggestions to enhance your resume. Cybersecurity engineer If you want todevelop your career in cybersecurity andwork on integrating security into the software development lifecycle, thisopportunity will allow you to drive an automated,scalable and continuous DevSecOps model within a large organization. We´ll get to the point; we'll tell you what's not on the web.If you want to know more about de GMV WHAT CHALLENGE WILL YOU BE TAKING ON? You will join an Application Security and SSDLC service, helpingimplement and evolve the DevSecOps modeland integrate security controls from the early stages of development. Your mainresponsibilities will include: * Integrating and automating SAST/SCA controls into CI/CD pipelines. * Configuring, administering and optimizing security tools and onboarding applications into the DevSecOps model. * Defining and maintaining Security Gates and scanning strategies. * Analyzing vulnerabilities, managing false positives and performing rule tuning. * Developing automation and integrations using APIs and scripting. * Troubleshooting issues across security tools, pipelines and integrations. * Supporting developers with vulnerability remediation and revalidation. * Contributing to the continuous improvement of SSDLC controls and the secure management of credentials and secrets. * You will work in atechnical and collaborative environment, helping integrate security intodevelopment processes in an automated andcontinuous way. ## Related Videos - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Docker Compose: Rediscovered](https://www.wearedevelopers.com/videos/1978-docker-compose-rediscovered) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) ## Related Articles - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)