17 sep
|
Applus+
|
Madrid
Descripción del trabajo Experteer Overview In this role you will advance automated, scalable DevSecOps within a large organization by embedding security into the SDLC. You’ll work in an Application Security and SSDLC team to evolve security controls from early development stages. You’ll automate SAST/SCA in CI/CD, tune rules, and support remediation with developers. The position offers a hands‑on, collaborative environment focused on continuous improvement of security processes and credentials management, with a clear impact on product security. Compensaciones / Ventajas Automate and integrate SAST/SCA controls into CI/CD pipelines Configure, administer, and optimize security tools and onboard applications to DevSecOps Define and maintain Security Gates and scanning strategies Analyze vulnerabilities, manage false positives, and tune detection rules Develop automation and integrations using APIs and scripting Troubleshoot issues across security tools, pipelines,
and integrations Support developers with vulnerability remediation and revalidation Contribute to ongoing improvement of SSDLC controls and secure credential management Responsabilidades Practical experience in Application Security and DevSecOps with SAST/SCA in CI/CD environments Knowledge of CI/CD, Git, and code repositories Understanding of OWASP Top 10, CWE, CVE, and CVSS; vulnerability andfalsepositive analysis Secure development and SSDLC with automated controls and Security Gates APIs and scripting experience (Python, PowerShell, or Bash) Tool and pipeline integration and troubleshooting Secure management of credentials, tokens, and secrets Ability to analyze code and collaborate with development teams Requisitos principales hybrid working model teleworking 8 weeks/year flexible start/finish times career plan development and training national and international mobility relocation package available #J-18808-Ljbffr
📌 Cybersecurity Engineer (Madrid)
🏢 Applus+
📍 Madrid