Back to search
GMV Linkedin · Posted today

Cybersecurity engineer

Spain

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

If you want to develop your career in cybersecurity and specialize in Application Security and Secure Development, you will have the opportunity to work on a large-scale service, collaborating with development teams to identify and reduce security risks from the early stages of the development lifecycle.

We´ll get to the point; we'll tell you what's not on the web. If you want to know more about de GMV

WHAT CHALLENGE WILL YOU BE TAKING ON?

You will join a team specialized in Application Security and SSDLC, performing source code and dependency security reviews using SAST and SCA.

  • Your main responsibilities will include:
  • Performing and analyzing SAST and SCA reviews, including project and tool configuration.
  • Conducting vulnerability triage, validating findings and false positives.
  • Classifying and contextualizing vulnerabilities and preparing technical reports, evidence and recommendations.
  • Advising developers on vulnerability remediation and verifying fixes.
  • Reviewing vulnerabilities in libraries and dependencies.
  • Applying secure development best practices and collaborating with DevSecOps teams on continuous service improvement.

WHAT DO WE NEED IN OUR TEAM?

We are looking for experts in Application Security and source code analysis with background and interest in SAST and SCA.

You should have:

  • Knowledge of OWASP Top 10, CWE, CVE and CVSS.
  • The ability to analyze code, understand applications and identify and contextualize vulnerabilities.
  • Knowledge of secure development and secure coding best practices.
  • Experience working with Git and code repositories.
  • The ability to prepare technical documentation and explain vulnerabilities and remediation to development teams.

We will also value previous experience, and knowledge in Fortify, Checkmarx or equivalent platforms, as well as knowledge of SCA, dependency analysis and knowledge of manual code review.

WHAT DO WE OFFER?

🕑 Hybrid working model and 8 weeks per year of teleworking outside your usual geographical area.

💻 Flexible start and finish times, and intensive working hours Fridays and in summer.

🚀 Personalized career plan development, training and language learning support.

🌍 National and international mobility. Do you come from another country? We can offer you a relocation package.

💰 Competitive compensation with ongoing reviews, flexible compensation and discount on brands.

💪Wellbeing program: Health, dental and accident insurance; free fruit and coffee, physical, mental and financial health training, and much more!

⚠️ In our recruitment processes you will always have telephone and personal contact, face-to-face or online, with our talent acquisition team. In addition, bank transfers and bank cards will never be requested. If you are contacted through another process, please get in touch with the person responsible for the selection process.

❤️ We promote equal opportunities in recruitment, and we are committed to inclusion and diversity.

WHAT ARE YOU WAITING FOR? JOIN US

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search