Application Security Engineer (Relocation To Barcelona)

Commit
Madrid, Spain
2 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
4 years minimum
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Artificial Intelligence Software System Penetration Testing Architectural Patterns Burp Suite Cloud Computing Cloud Engineering Fuzz Testing Systems Integration Large Language Models Software Security Backend
+5 more
Kubernetes Metasploit Software Coding Vulnerability Analysis Microservices

Job description

We’re running the software that runs the world - and we want you along for the ride.The company is a special place with a unique combination of brilliance, spirit, and great people.Here, if you’re willing to do more, your career can take off.And since software plays a central role in everyone’s lives, you’ll be part of a critical mission.In this role, you will work with a team of researchers and ethical hackers focused on offensive security testing, automated exploit discovery, and advanced application security research.Your work will directly influence the security posture of the company’s products and help scale secure?by?design principles.This is a hands?on technical role with a strong emphasis on offensive security, code exploitation, automation, and innovation.ResponsibilitiesHelp to reshape JFrog Product SecurityPlan and execute advanced penetration testing campaigns.Develop tools and frameworks for scalable security testing and fuzzing.Lead Security innovation by building and managing penetration testing tools \ AI AgentsAnalyze vulnerabilities, perform root cause analysis, and develop proofs of concept.Identify systemic product weaknesses and help define long?term mitigations.Collaborate with engineering teams to reproduce, triage, and fix vulnerabilities.Contribute to security research publications, CVE submissions, and industry knowledge sharing.Continuously evolve internal testing capabilities using modern tooling and AI?assisted approaches.Requirements4+ year experience in Research and penetration testing.Strong coding skills and deep technical understanding of web, API, cloud-native, and backend technologies.AI and LLM Penetration testing knowldge and ExperienceExperience with penetration testing tools (Burp Suite, Metasploit, etc.) and Custom Security Tools development.Familiarity with modern architectures (e.g., Cloud, microservices, containers, Kubernetes).Familiarity with secure software architecture and typical attack vectors.Demonstrated ability to do security testing engagements and report technical findings effectively.Experience building or integrating automated PT or fuzzing pipelines is a strong advantage.Knowledge and hands?on experience with SSDLC tools and CI/CD pipelines,#J-*****-Ljbffr

Requirements

4+ year experience in Research and penetration testing. Strong coding skills and deep technical understanding of web, API, cloud-native, and backend technologies. AI and LLM Penetration testing knowldge and Experience Experience with penetration testing tools (Burp Suite, Metasploit, etc.) and Custom Security Tools development. Familiarity with modern architectures (e.g., Cloud, microservices, containers, Kubernetes). Familiarity with secure software architecture and typical attack vectors. Demonstrated ability to do security testing engagements and report technical findings effectively. Experience building or integrating automated PT or fuzzing pipelines is a strong advantage. Knowledge and hands?on experience with SSDLC tools and CI/CD pipelines, #J-*****-Ljbffr

About the company

Madrid, España

We’re running the software that runs the world - and we want you along for the ride. The company is a special place with a unique combination of brilliance, spirit, and great people. Here, if you’re willing to do more, your career can take off. And since software plays a central role in everyone’s lives, you’ll be part of a critical mission.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · World Congress 2022

51 sec

Exploring offensive security with red team tooling

Stefania Chaplin · World Congress 2022

1:52 min

Structuring and scaling the backend engineering team

Stefan Lingler Stefan Lingler +1 · Coffee With Developers

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · World Congress 2022

26:47 min

Exploring pathways to application security careers and research workflows

Vandana Verma Sehgal · LIVE

Videos

See all

Related articles

See all