30 ago
|
Contentsquare
|
Barcelona
30 ago
Contentsquare
Barcelona
Experteer Overview
Obtenga más información sobre este puesto leyendo los detalles a continuación y luego envíe su solicitud para ser considerado.
In this role you will strengthen the security of Contentsquare’s integral SaaS products. You will partner with product and engineering teams to embed robust security practices across design, development, and deployment. You will lead threat modeling, secure-code reviews, and vulnerability management to prevent and mitigate risks. You will leverage automation and AI to scale security workflows within CI/CD and champion security-as-code. This position offers impact at scale within a security-first culture that values collaboration and continuous improvement.
Compensaciones / Beneficios
• Run continuous automated security audits of global SaaS applications to detect misconfigurations and enforce benchmarks
• Act as security advisor to product and engineering teams, guiding threat modeling and AppSec reviews during design
• Lead in-depth secure coding reviews and mentor developers on secure patterns
• Architect and manage end-to-end vulnerability lifecycle across cloud and app layers with automation
• Implement AI-driven security workflows to automate vulnerability discovery and validation in CI/CD
• Drive shift-left initiatives by adding security checks to the automation stack and creating security-as-code tools
• Oversee private and public bug-bounty programs and coordinate with researchers for high-quality engagement
• Coordinate external penetration testing and customer security assessments as primary technical contact
• Respond to application-layer security incidents with root-cause analysis and defensive improvements
Responsabilidades
• 3+ years in Application Security Operations in a high-growth SaaS or cloud-native environment
• Proficiency with NestJS, Vue.js, and Angular
• Experience with Snyk, Datadog ASM/AppSec (WAF), Google SecOps, and Crowdstrike
• Strong understanding of AWS and Azure, Kubernetes/Docker xqbhyrx security, and Terraform IaC
• Ability to apply AI/LLM tech to automate security tasks
• Scripting experience (Python, Node.js, Shell) for building security tooling
• Knowledge of web protocols, OWASP Top 10, MITRE ATTu0026CK, and NIST CSF
• Experience in ethical hacking, CTFs, or bug bounty
• Excellent cross-functional collaboration and ability to explain risks to non-technical stakeholders
• Fluency in English
Requisitos principales
• Hybrid/remote work policies
• Generous paid time-off
• Stock options
• Lifestyle allowance
• Employee Resource Groups
• Hackathon and virtual onboarding
📌 Application Security Engineer (Barcelona)
🏢 Contentsquare
📍 Barcelona