Security Engineer

Airapps
Barcelona, Spain
2 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Software System Penetration Testing Microsoft Azure Bash Shell Burp Suite Cloud Computing Security Cyber Security Continuous Integration DevOps Cryptographic Protocols Identity and Access Management
+13 more
Intrusion Detection Systems Python (Programming Language) Network Security Open Web Application Security Windows PowerShell Secure Coding Security Information and Event Management Software Security Cybercrime Nessus Devsecops Qualys Vulnerability Analysis

Job description

The RoleAs a Security Engineer at Air Apps, you will be responsible for safeguarding our applications, infrastructure, and data from threats and vulnerabilities.You will work closely with development, DevOps, and IT teams to implement secure coding practices, vulnerability scanning, and threat modeling to ensure our systems remain resilient against cyber threats.Your expertise will help build and maintain a secure development lifecycle (SDLC), security monitoring frameworks, and proactive risk mitigation strategies.This is a fully onsite position, based at our office in Lisbon, where you will collaborate closely with cross?functional teams in person and contribute to a dynamic and fast?paced environment.We are open to support with relocation efforts.ResponsibilitiesDevelop and implement threat modeling to identify security risks across applications and infrastructure.Conduct vulnerability scanning, penetration testing, and security assessments to detect weaknesses.Define and enforce secure coding practices in collaboration with development teams.Work with DevOps to integrate security into CI/CD pipelines and automate security testing.Monitor and respond to security incidents, conducting root cause analysis and implementing preventative measures.Ensure compliance with security standards and regulations (e.g., ISO **, GDPR, SOC 2).Design and implement identity and access management (IAM) policies, encryption standards, and authentication mechanisms.Collaborate with product teams to conduct security reviews of features, APIs, and third?party integrations.Develop incident response plans, security documentation, and best practices.Stay ahead of emerging threats, vulnerabilities, and security technologies.RequirementsAround 4+ years of experience in cybersecurity, application security, or security engineering.Strong knowledge of secure coding principles, OWASP Top 10, and threat modeling techniques.Experience with vulnerability scanning tools (Nessus, Qualys, Burp Suite) and penetration testing methodologies.Hands?on experience with SIEM, intrusion detection systems (IDS), and security monitoring tools.Proficiency in scripting and automation (Python, Bash, PowerShell) for security tasks.Familiarity with cloud security in AWS, Azure, or GCP, including IAM and workload protection.Knowledge of encryption protocols, network security, and API security best practices.Experience working with DevSecOps, integrating security into CI/CD pipelines.Ability to analyze security logs, detect anomalies, and mitigate potential threats.Excellent problem?solving skills and ability to communicate security concepts to non?technical stakeholders.What benefits are we offering?Apple hardware ecosystem for work.Annual BonusTop?tier Health and Life Insurance for peace of mind.Transportation Budget to support your commute needs.Coverflex benefits package for meal allowances, well?being, and more.Childcare support.Air Conference - an opportunity to meet the team, collaborate, and grow together.Pension Fund to support your long?term financial planning.Urban Sports Club membership to keep you active.Meals 100% free at the hub.Diversity & InclusionAt Air Apps, we are committed to fostering a diverse, inclusive, and equitable workplace.We enthusiastically welcome applicants from all backgrounds, experiences, and perspectives.We celebrate diversity in all its forms and believe that varied voices and experiences make us stronger.#J-**-Ljbffr

Requirements

Around 4+ years of experience in cybersecurity, application security, or security engineering. Strong knowledge of secure coding principles, OWASP Top 10, and threat modeling techniques. Experience with vulnerability scanning tools (Nessus, Qualys, Burp Suite) and penetration testing methodologies. Hands?on experience with SIEM, intrusion detection systems (IDS), and security monitoring tools. Proficiency in scripting and automation (Python, Bash, PowerShell) for security tasks. Familiarity with cloud security in AWS, Azure, or GCP, including IAM and workload protection. Knowledge of encryption protocols, network security, and API security best practices. Experience working with DevSecOps, integrating security into CI/CD pipelines. Ability to analyze security logs, detect anomalies, and mitigate potential threats. Excellent problem?solving skills and ability to communicate security concepts to non?technical stakeholders.

Benefits & conditions

Apple hardware ecosystem for work. Annual Bonus Top?tier Health and Life Insurance for peace of mind. Transportation Budget to support your commute needs. Coverflex benefits package for meal allowances, well?being, and more. Childcare support. Air Conference - an opportunity to meet the team, collaborate, and grow together. Pension Fund to support your long?term financial planning. Urban Sports Club membership to keep you active. Meals 100% free at the hub. Diversity & Inclusion At Air Apps, we are committed to fostering a diverse, inclusive, and equitable workplace. We enthusiastically welcome applicants from all backgrounds, experiences, and perspectives. We celebrate diversity in all its forms and believe that varied voices and experiences make us stronger. #J-*****-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · World Congress 2026 Europe

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:18 min

Scaling global network engineering through DevOps culture

Stuart Clark · LIVE

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

2:30 min

Establishing shared definitions for devops and cloud architectures

Bruno Amaro Almeida · World Congress 2022

Videos

See all

Related articles

See all