Devoteam Cyber Trust | Application Security Engineer | FinTech Sector

Devoteam
Portugal
Workplace: HybridFull timeFunction: CybersecurityExperience: 4+ yearsSkills: ["Analytical thinking","Problem-solving","Communication","Stakeholder management","Collaboration"]

Drive application security initiatives across the SDLC for modern, cloud-native FinTech environments. You’ll identify, assess, prioritize, and remediate application vulnerabilities, partner with engineering teams on secure coding and security-by-design, and integrate security testing into CI/CD. Provide security recommendations via code reviews, support threat modeling, and improve automated AppSec/DevSecOps processes using SAST/DAST/SCA tooling.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Devoteam
Devoteam
9 hours ago

Devoteam Cyber Trust | Application Security Engineer | FinTech Sector

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 5 hours agoStatus: Live

Job Summary

Drive application security initiatives across the SDLC for modern, cloud-native FinTech environments. You’ll identify, assess, prioritize, and remediate application vulnerabilities, partner with engineering teams on secure coding and security-by-design, and integrate security testing into CI/CD. Provide security recommendations via code reviews, support threat modeling, and improve automated AppSec/DevSecOps processes using SAST/DAST/SCA tooling.
Location: Portugal
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Drive application security initiatives across the software development lifecycle (SDLC).
  • •Identify, assess, prioritize, and support remediation of application security vulnerabilities.
  • •Partner with engineering teams to promote secure coding practices and security-by-design principles.
  • •Integrate security testing tools and controls into CI/CD pipelines and review source code to provide security recommendations.
  • •Support secure design reviews, threat modeling, and automation/continuous improvement of AppSec and DevSecOps processes.

Key Requirements

  • •Minimum 4 years of experience in Application Security or a related cybersecurity role.
  • •Strong application security fundamentals including OWASP Top 10, CWE, secure design principles, and web/API vulnerability remediation.
  • •Hands-on experience with AppSec tooling such as SAST, DAST, SCA (including Snyk/Semgrep/Checkmarx/SonarQube/OWASP Dependency-Check/OWASP ZAP/Trivy).
  • •Experience integrating automated security controls into CI/CD pipelines (Jenkins, GitHub Actions, or GitLab CI) and performing vulnerability triage and remediation guidance.
  • •Ability to read and analyze source code (Java, Python, or Go) and working knowledge of cloud security concepts (AWS/Azure/GCP, IAM, VPC, security groups).
Experience:4+ yearsFinTechEnterprise SaaS
Skills:Analytical thinkingProblem-solvingCommunicationStakeholder managementCollaboration
Certifications:SOC 2ISO 27001PCI DSSOSCPEJPT
Languages:English
Tech Stack:OWASP Top 10OWASP ZAPSASTDASTSCASnykSemgrepCheckmarxSonarQubeOWASP Dependency-CheckTrivyJenkinsGitHub ActionsGitLab CIJavaPythonGoAWSAzureGCP

Company Brief

Devoteam
Devoteam is an IT consulting firm specializing in digital transformation, cloud, cybersecurity, and data solutions for enterprise clients across Europe and the Middle East, combining technology partnerships with management consulting services.
Industry: Consulting
Company Size: Enterprise (1,001+ employees)
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Paris, France
Founded: 1995
WebsiteLinkedIn