> Markdown version of [/jobs/ext/2779060-cybersecurity-engineer](https://www.wearedevelopers.com/jobs/ext/2779060-cybersecurity-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - **Company:** Gmv - **Location:** Madrid, Spain (Remote available) - **Contract:** Temporary contract - **Skills:** Code Review, Cyber Security, Open Web Application Security, Fortify (Software), Secure Coding, Working Model 2D, Software Repository, Software Security, Git, Checkmarx, Devsecops, Static Application Security Testing - **Published:** September 7, 2026 - **Apply:** https://www.buscojobs.com.es/cybersecurity-engineer-en-madrid-ID-369859024 ## About the Role This position offers growth in a security-focused team that shapes secure development practices and continuous improvement.Compensaciones / Beneficios - Perform and analyze SAST and SCA reviews, including configuring projects and tools - Triage vulnerabilities, validate findings and false positives - Classify vulnerabilities and prepare technical reports with evidence and recommendations - Advise developers on remediation and verify fixes - Review vulnerabilities in libraries and dependencies - Apply secure development practices and collaborate with DevSecOps for service improvementResponsabilidades - Knowledge of OWASP Top 10, CWE, CVE and CVSS - Ability to analyze code and identify contextual vulnerabilities - Knowledge of secure development and secure coding best practices - Experience with Git and code repositories - Ability to prepare technical documentation and communicate remediation to developers - Experience with Fortify, Checkmarx or equivalent platforms is a plus ## Description Experteer Overview In this role you will specialize in Application Security and SSDLC, collaborating with development teams to reduce security risks from early in the development lifecycle.You will conduct SAST and SCA reviews on large-scale services and help translate findings into actionable remediations.You will triage vulnerabilities, contextualize risk, and support developers with fixes.This position offers growth in a security-focused team that shapes secure development practices and continuous improvement.Compensaciones / Beneficios - Perform and analyze SAST and SCA reviews, including configuring projects and tools - Triage vulnerabilities, validate findings and false positives - Classify vulnerabilities and prepare technical reports with evidence and recommendations - Advise developers on remediation and verify fixes - Review vulnerabilities in libraries and dependencies - Apply secure development practices and collaborate with DevSecOps for service improvementResponsabilidades - Knowledge of OWASP Top 10, CWE, CVE and CVSS - Ability to analyze code and identify contextual vulnerabilities - Knowledge of secure development and secure coding best practices - Experience with Git and code repositories - Ability to prepare technical documentation and communicate remediation to developers - Experience with Fortify, Checkmarx or equivalent platforms is a plus - Knowledge of SCA, dependency analysis and manual code review is valuedRequisitos principales - Hybrid working model - teleworking up to 8 weeks/year - flexible start/finish times - career plan development and training - relocation package - competitive compensation and wellbeing program ## Related Videos - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [ Secure Code Superstars: Empowering Developers and Surpassing Security Challenges Together](https://www.wearedevelopers.com/videos/422-secure-code-superstars-empowering-developers-and-surpassing-security-challenges-together) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline)