Application Security Engineer

Contentsquare
Barcelona
Workplace: HybridFull timeFunction: CybersecurityExperience: 3+ yearsSkills: ["Cross-functional collaboration","Secure coding mentorship","Technical communication","Analytical rigor","Strategic problem-solving"]

Own application security for a globally used SaaS platform by running continuous security audits, performing deep-dive AppSec code reviews, and leading threat modeling and security-by-design reviews. Build and manage the vulnerability lifecycle with automation across cloud and application layers, integrating security checkpoints into CI/CD. Optimize AI-driven security workflows, oversee private and public bug bounty programs, coordinate penetration testing, and lead incident response and root-cause analysis.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Contentsquare
Contentsquare
2 days ago

Application Security Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 3 hours agoStatus: Live

Job Summary

Own application security for a globally used SaaS platform by running continuous security audits, performing deep-dive AppSec code reviews, and leading threat modeling and security-by-design reviews. Build and manage the vulnerability lifecycle with automation across cloud and application layers, integrating security checkpoints into CI/CD. Optimize AI-driven security workflows, oversee private and public bug bounty programs, coordinate penetration testing, and lead incident response and root-cause analysis.
Location: Barcelona
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Conduct continuous automated security audits to detect misconfigurations and adherence to security benchmarks and internal best practices.
  • •Serve as a strategic AppSec consultant to product and engineering teams, facilitating threat modeling and AppSec reviews during design.
  • •Perform security-focused code reviews and mentor developers on secure coding patterns.
  • •Architect and manage the end-to-end vulnerability lifecycle, including automation for triage, reporting, and remediation tracking across cloud and application layers.
  • •Lead Shift-Left initiatives by integrating security checkpoints into automation stacks and developing security-as-code tools.
  • •Oversee bug bounty programs and coordinate penetration testing engagements.
  • •Drive technical response to application-level security incidents including root-cause analysis and remediation.

Pay and Benefits

Perks:EquityPaid Time-offLifestyle Allowance

Key Requirements

  • •3+ years of professional experience in Application Security Operations in a high-growth SaaS or cloud-native environment.
  • •Advanced expertise securing modern technical stacks, including NestJS, Vue.js, and Angular frameworks.
  • •Hands-on experience with enterprise security tooling including Snyk, Datadog ASM/AppSec (WAF), Google SecOps, and Crowdstrike.
  • •Deep architectural understanding of AWS and Azure, including Kubernetes/Docker container security and Infrastructure as Code (Terraform).
  • •Fluency in English (mandatory).
Experience:3+ yearsSaaSCloud-native
Skills:Cross-functional collaborationSecure coding mentorshipTechnical communicationAnalytical rigorStrategic problem-solving
Languages:English
Tech Stack:NestJSVue.jsAngularSnykDatadogASMWAFGoogle SecOpsCrowdstrikeAWSAzureKubernetesDockerInfrastructure as CodeTerraformLLMsAutonomous agentsCI/CDPythonNode.js

Company Brief

Contentsquare
Provides a digital experience analytics platform that helps companies understand user behavior across websites and apps, optimize customer journeys, and improve conversion and engagement through AI-driven insights.
Industry: Data Infrastructure
Company Size: Enterprise (1,001+ employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series E+
Headquarters: Paris, France
Founded: 2012
WebsiteLinkedIn