This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Lead the establishment and ongoing evolution of the Secure Software Development Program
Create and implement software security policies and best practices
Provide essential security architecture guidance to development teams
Conduct thorough software security scanning and penetration testing
Educate and mentor developers and testers on secure coding practices
Strengthen the development process by integrating robust security controls
Reduce defects and vulnerabilities in production environments
Partner effectively with development teams to balance security requirements with innovation
Requirements
Prior engineering experience within a Software Security Assurance or Application Security team
Proven ability to partner effectively with development teams to balance security requirements with innovation
Strong analytical skills, including the ability to interpret large volumes of distributed data and translate it into clear, actionable insights
Experience working with a range of application security tools, including Software Composition Analysis (SCA), Static Application Security Testing (SAST), and secrets management solutions
Solid application engineering experience and a strong understanding of common application vulnerabilities, attack vectors, and remediation strategies
Familiarity with secure software design principles and industry best practices for integrating security into the software development lifecycle
Experience with application security testing tools and their integration into agile development environments
Familiarity with recognized industry frameworks and standards such as OWASP, CIS, and NIST
A minimum of two years of experience working with static analysis or threat modeling tools
Experience implementing and scaling enterprise application security tools, services, and controls
Strong understanding of secure coding practices, code review processes, threat modeling, security requirements analysis, and architectural risk assessment