> Markdown version of [/jobs/ext/2960786-security-engineer](https://www.wearedevelopers.com/jobs/ext/2960786-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - **Company:** Chronos Consulting - **Location:** Barcelona, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Java (Programming Language), JavaScript (Programming Language), Agile Methodology, Artificial Intelligence, Amazon Web Services, Bash Shell, Software as a Service, Cloud Computing, Cloud Computing Security, Code Review, Cyber Security, Continuous Integration, DevOps, Dynamic Program Analysis, Identity and Access Management, Python (Programming Language), Network Security, Systems Development Life Cycle, Ruby, Secure Coding, Software Engineering, Software Security, Containerization, Information Technology, Devsecops, Security Orchestration, Automation & Response, Vulnerability Analysis - **Published:** September 17, 2026 - **Apply:** https://www.adzuna.es/contact-us.html ## About the Role Bachelor's degree in Computer Science, Cybersecurity, or a related technical field. 4+ years in cybersecurity or software engineering, with at least 2 years focused on application or product security. Strong understanding of software development processes and ability to speak the language of engineers. Proficiency in one or more programming and scripting languages (e.g., Ruby, Java, Python, JavaScript, Bash). Hands-on experience with vulnerability scanners and security testing tools. Strong knowledge of threat modeling and security architecture reviews. AI/ML security experience, including risk assessment and prevention guidelines. Advantages Master's degree in a relevant field Prior experience as an application or product security engineer in a SaaS or cloud-native environment Advanced certifications (CISSP, OSCP, GPEN, GCIH, GIAC) Experience with DevSecOps and security automation Network security and encryption standards expertise Incident management and response experience AWS Security Specialty certification or equivalent cloud security certification Expertise in AWS security services (EKS, IAM, KMS, GuardDuty, CloudTrail) Key responsibilities include: Secure SDLC Integration: Embed with engineering teams to ensure security is part of every phase of the development lifecycle, from design to deployment. Threat Modeling & Design Reviews: Conduct early-stage threat modeling and participate in architectural and design reviews to identify and mitigate risks proactively. ## Description Security Enablement: Act as a security champion within product teams by providing training, building security knowledge, and driving adoption of secure coding practices. Code & Pipeline Reviews: Perform code reviews with a security lens and provide guidance on CI/CD pipeline security. Vulnerability Discovery & Triage: Identify and prioritize vulnerabilities using static/dynamic analysis and manual review, and work with developers on remediation strategies. Security Tooling & Automation: Collaborate with the broader ProdSec and DevOps teams to improve tooling and automate security feedback loops. Cross-Functional Collaboration: Partner with Product, SecOps, and Platform teams to align security with product goals and agile workflows. Security Advocacy: Help scale security awareness through documentation, workshops, and informal coaching embedded in daily engineering practice. Security Automation: Design and implement automated security tools and processes to improve detection, response, and compliance efficiency. This role offers the opportunity to secure mission-critical systems deployed globally while working with cutting-edge AI and cloud technologies. If you're looking to make a significant impact on enterprise security, this could be perfect for you. Inscribirse en esta oferta Recibir ofertas similares por correo electrónico Al crear una alerta, aceptas nuestros Términos y condiciones y Política de privacidad, y el uso de cookies. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Coffee with Developers: David Heinemeier Hansson](https://www.wearedevelopers.com/videos/875-coffee-with-developers-david-heinemeier-hansson) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)