
Application Security Engineer
Liebherr Group
full-time
Posted on:
Location Type: Hybrid
Location: Kirchdorf • Germany
Visit company websiteExplore more
About the role
- Implementing security controls and tools for application security testing (SAST, DAST, IAST)
- Conducting vulnerability assessments and penetration tests for applications
- Collaborating with developers to remediate security issues and enforce secure coding practices
- Automating security testing within CI/CD pipelines
- Monitoring and responding to application security threats and incidents
- Maintaining security documentation, policies, and compliance requirements
- Assisting with the integration of new applications and technologies, including secure configuration
- Contributing to the development of security awareness programs for development teams
Requirements
- Bachelor’s/Master’s degree in Cybersecurity, Computer Science, or a related field
- 3+ years of experience in cybersecurity, preferably in the role of Application Security Engineer
- Preferred certifications: CISSP, OSCP, and cloud certifications (AWS, Azure, or GCP)
- English required; German and French are a plus
- Understanding of cybersecurity frameworks and standards (ISO 27001, NIST)
- Deep understanding of application security concepts and principles
- Familiarity with application security tools and techniques (e.g., vulnerability scanners, code analysis tools)
- Expertise in secure coding practices and methodologies — knowledge of the OWASP framework and defensible architectures
Benefits
- Attractive compensation and benefits
- Flexible and hybrid working arrangements
- Room for creative work
- Company pension plan
- Stable, crisis-resistant job
- Individual development and training opportunities
- Employee discounts and perks
- Bike leasing via salary sacrifice
- Healthy, local meals in the company cafeteria
- Corporate health management program
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
application security testingvulnerability assessmentspenetration testingsecure coding practicesCI/CD automationsecurity documentationcompliance requirementssecurity awareness programsOWASP frameworkdefensible architectures
Soft Skills
collaborationcommunication
Certifications
CISSPOSCP