Senior/Lead AppSec Engineer

AgileEngine·Argentina, Brazil, Colombia, Mexico, Guatemala, Poland, Portugal, Ukraine, Bulgaria, Romania, Spain, Slovakia, Slovenia, United States

Qué ofrecen

  • Jornada completa

    Según la oferta.

  • Totalmente en remoto

    Según la oferta.

Qué piden

  • Trabajo en inglés

    Se requiere inglés, según la oferta.

  • Tengas 5+ años de experiencia

    Puesto de nivel Senior.

Extraído automáticamente de la oferta — lo que cuenta es el anuncio completo.

Añadida hace 1 mes
Leer la oferta completa

Oferta original

About the role

We are looking for a Senior Application Security Engineer to architect and build automated security layers within the SDLC, engineering AI-enabled secure code scanning, hardened baseline automation, and CI/CD security tooling integration within a large-scale financial services program. You will work primarily in Python to build automated security runbooks, deploy and tune scanning tools, and provide code-level remediation guidance to development teams - operating with full autonomy and no daily supervision. AppSec and DevSecOps experience is strongly preferred; SAST/DAST/SCA and Java expertise are a plus.

What you will do
  • Engineer and deploy AI-enabled secure code scanning capabilities and "Golden Images" to drive secure-from-the-start adoption;
  • Automate the development of secure coding patterns and integrate them with traditional and Agentic SDLC workflows;
  • Architect the integration of continuous security scanning tools (SAST, DAST, SCA) into enterprise CI/CD pipelines, tuning them to eliminate noise;
  • Act as a senior technical SME, reading and reviewing complex application code (Java/Python) to provide software engineers with highly specific, code-level remediation guidance.
Must haves
  • 5+ years of software engineering experience, ideally with a focus on Application Security and DevSecOps;
  • Strong coding and architectural proficiency in Python for security automation and scripting;
  • Fully autonomous execution capability, requiring no daily supervision to map out and build automated security runbooks;
  • Upper-intermediate English level.
Nice to haves
  • Deep, hands-on expertise deploying and tuning modern application security testing tools, including SAST, DAST, and SCA, and integrating them into complex CI/CD orchestration ecosystems;
  • Experience integrating LLMs, AI agents, or automated coding assistants to streamline vulnerability triaging or secure code generation;
  • Advanced application threat modeling experience;
  • Ability to confidently read, review, and secure enterprise source Java code.
Perks
  • Growth without limits: build your skills through mentorship, internal TechTalks, challenging projects, and a dedicated annual learning budget
  • Competitive compensation: get recognition that reflects your skills and impact, with regular performance and compensation reviews
  • Flexibility: work 100% remotely with flexible hours that support focus, autonomy, and a healthy work rhythm
  • Meaningful, modern projects: build impactful products using modern technologies alongside global teams and leading brands
  • Collaborative culture: join a supportive environment with zero micromanagement where ideas are welcomed and contributions are recognized
  • Well-being & support: access local well-being programs and people-focused support tailored to your location

Sobre la empresa

AgileEngine

AgileEngine

Software Engineering

Ver el perfil de la empresa
Empresa internacional
1000 empleados
AgileEngine
AgileEngine
Hace 1 sem.

Product Architect

Argentina, Brazil, Colombia, Mexico, Guatemala, Poland, Portugal, Ukraine, Bulgaria, Romania, Spain, Slovakia, Slovenia
🇬🇧