A major international organization is looking for a Medior Application Security Engineer to strengthen its Application Security & Vulnerability Management team. The role exists to improve secure software development practices across IT teams and support the adoption of secure development and DevSecOps methodologies in a fast-evolving distributed development environment.ResponsibilitiesManage requests from development squads regarding application security tooling setupPerform secure code reviews using SAST toolsReview third-party libraries and dependencies using SCA toolingSupport development teams in secure development and DevSecOps adoptionPrepare and deliver training sessions on application security topicsCoach teams on the usage of security toolsMaintain infrastructure supporting automated code reviews and open-source evaluationsMaintain and update security and compliance policiesMonitor and report security evaluation resultsKeep development security guidelines up to dateReview vulnerabilities and security defectsCreate and maintain vulnerability reporting dashboardsContribute as an application security expert in security-related projects and changesSupport developers in mitigating security risks and incidentsProvide input for new security controls and detection mechanismsMust haveExperience in software application developmentStrong interest in application securityGood understanding of Agile, DevOps, and SDLC practicesKnowledge of security checks throughout the software development lifecycleFamiliarity with tools and platforms such as Jenkins, GitLab, Maven, and DockerGood understanding of network security conceptsInterest or first experience in penetration testingVery good English communication skillsStrong communication and analytical skillsAbility to work autonomously in a multicultural environmentShould haveKnowledge of secure development practicesUnderstanding of mobile application development and testing challengesExperience supporting or coaching technical teamsExperience with vulnerability management processesKnowledge of SAST and SCA toolingDutch or French language skillsNice to haveExperience in highly regulated industries such as banking, pharma, aviation, military, or nuclear sectorsExperience creating technical training contentBasic scripting or automation experiencePrevious exposure to security operations or incident handling
#J-18808-Ljbffr