FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Application Security Engineer
ROITApplication Security Engineer leading and evolving Application Security & DevSecOps initiatives at ROIT. Collaborating with engineering teams to enhance security maturity in applications, infrastructure, and culture.
Tech Stack
Tools & technologiesAWSAzureCloudGoogle Cloud PlatformKubernetesSDLC
About the role
Key responsibilities & impact- Define and evolve ROIT's Application Security and DevSecOps strategy;
- Implement continuous security practices throughout the software development lifecycle (Secure SDLC);
- Integrate security tools and controls into CI/CD pipelines;
- Implement and evolve practices related to: SAST; DAST; SCA; Secret Scanning; Container Scanning; IaC Scanning;
- Define and disseminate secure standards for: APIs; microservices; Kubernetes; cloud workloads;
- Support engineering teams in identifying, prioritizing and remediating vulnerabilities;
- Participate in threat modeling, architectural reviews and the definition of security controls;
- Support initiatives related to ISO 27001, compliance, risk management and audits;
- Monitor critical vulnerabilities, risks and incidents related to application security;
- Automate security processes and controls whenever possible;
- Promote a security culture across technical teams, acting in a consultative and collaborative manner;
- Contribute to increasing the organization’s technical maturity in modern security practices.
Requirements
What you’ll need- Bachelor's degree in Computer Science, Software Engineering, Information Systems, Information Security or a related field.
- Strong experience in Application Security, DevSecOps or Software Engineering Security;
- Experience in cloud-native environments and distributed architectures;
- Experience with CI/CD pipelines and security automation;
- Knowledge of: web application security; REST APIs and authentication/authorization; Kubernetes and containers; security in AWS, Azure or GCP; OWASP Top 10; Threat Modeling; vulnerability management;
- Experience with tools for: SAST; DAST; SCA; container security; secret detection; IaC security;
- Knowledge of modern engineering and automation practices;
- Familiarity with compliance and security frameworks, especially ISO 27001.
Benefits
Comp & perks- Training
- Salary
- Full-time
- Remote
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Application SecurityDevSecOpsSecure SDLCSASTDASTSCASecret ScanningContainer ScanningIaC Scanningvulnerability management
Soft Skills
consultativecollaborativecommunicationproblem-solvingteam supportprioritizationremediationsecurity culture promotiontechnical maturity contributionthreat modeling participation
Certifications
Bachelor's degree in Computer ScienceBachelor's degree in Software EngineeringBachelor's degree in Information SystemsBachelor's degree in Information Security