Lead Application Security Engineer (Madrid)

Lead Application Security Engineer (Madrid)

30 ago
|
Remofirst
|
Madrid

30 ago

Remofirst

Madrid

We're an affordable, AI-native Employer of Record that combines intelligent agents with a team of human experts to support global hiring, payroll, and HR, while ensuring compliance in 185+ countries. We partner with some of the world's most innovative startups and Fortune 500 companies to support all their general hiring needs.
Raised $39M+, backed by Octopus Ventures, QED Investors, Mouro Capital, and Counterpart Ventures
A few amazing customers include HubSpot, PandaDoc, Mastercard, Microsoft
Named a Leader in the NelsonHall NEAT Evaluation for Global EOR Services
Offensive security

Run regular internal penetration tests and vulnerability scans against our Python/Django, FastAPI and Java/Spring Boot services.
Find the multi-tenancy and authorisation bugs that matter in a platform where one customer's data must never surface in another's account.
Work directly with engineers on code review and threat modelling, and own the ongoing life of our internal security library.
Secure the layers our services run on: PostgreSQL and MongoDB persistence, Kafka and RabbitMQ streams.




A secure SDLC engineers route around is a failed one, so the goal is guardrails they reach for rather than a gate they resent.
Cloud security

Enforce least privilege across our AWS ecosystem: IAM policies, Service Control Policies, and the EKS, RDS and S3 estate underneath.
Harden our container and Kubernetes workloads, and make secrets handling boring.
Own the architecture and security of our Auth0 implementation for client-facing applications.
Own API security: authorisation logic, token handling, and the failure modes that show up in multi-tenant systems.
AI security

Define the guardrails for our AI initiatives — what data can reach an LLM prompt, what can't, and how we enforce it.
This is young for us, so you'd be shaping it rather than inheriting it.
Deep hands-on application security in a real engineering organisation: code review, threat modelling, and offensive testing against services you

📌 Lead Application Security Engineer (Madrid)
🏢 Remofirst
📍 Madrid

Postulate a este anuncio

Muestra tus habilidades a la empresa, rellenar el formulario y deja un toque personal en la carta, ayudará el reclutador en la elección del candidato.

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: lead application security engineer (madrid) / madrid

Suscribete a esta alerta:

Recibe por email las nuevas ofertas de trabajo para: lead application security engineer (madrid) / madrid