Back to search
Reach IT Linkedin ยท Posted 6d ago

Senior Application Security Analyst

Portugal

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

๐Ÿ”ต Reach IT โ€“ Nearshore Solution!


Our nearshore expertise sets us apart. We specialize in placing high-caliber professionals into complex international technology environments, supporting global organizations developing advanced, business-critical technology products.


We are looking for an App Security Researcher | Code Analysis & Vulnerability Detection ๐Ÿ›ก๏ธ


To join the Security Research Group of a global Application Security product company, contributing directly to the research that powers and improves enterprise Application Security Testing solutions.

This is not a generic Cybersecurity, SOC, GRC or infrastructure security position. We are looking for someone who understands vulnerabilities at source-code level and can reason about how they appear, how they can be detected and how developers can mitigate them.


We are open to experienced Application Security Analysts looking to deepen their path into hands-on security research, as well as established Security Researchers with experience working autonomously on complex technical problems.


You will investigate how vulnerabilities manifest across different programming languages, frameworks and emerging technologies, translating that knowledge into improved detection capabilities across SAST and other Application Security products.


Skills


๐ŸŽฏ 3+ years of professional experience as an Application Security Analyst, Security Researcher, Web Application Penetration Tester, Secure Software Developer or Secure Code Reviewer;

๐ŸŽฏ Secure code review and evaluating findings generated by Application Security tools;

๐ŸŽฏ Security concepts, software vulnerabilities, mitigations and secure coding practices;

๐ŸŽฏ OWASP Top 10 or similar vulnerability classifications;

๐ŸŽฏ Analyze and reason about source code containing different types of vulnerabilities;

๐ŸŽฏ Compiled and interpreted programming languages;

๐ŸŽฏ Python or another scripting/programming language for analysis or automation;

๐ŸŽฏ Software development practices, programming concepts and application architectures;

๐ŸŽฏ Security research, bug bounty or penetration testing;


Your Responsibilities


โœ… Research vulnerabilities across multiple programming languages, frameworks and technologies;

โœ… Perform secure code reviews and evaluate results generated by Application Security Testing solutions;

โœ… Analyze findings, including potential false positives, detection gaps and opportunities to improve security coverage;

โœ… Contribute to designing, refining and validating vulnerability detection logic and rules;

โœ… Propose technically grounded improvements to SAST and other AppSec capabilities;

โœ… Develop scripts and internal tools to support security analysis, research and automation;

โœ… Investigate Application Security, AI Security and emerging technology risks;

โœ… Support developers and internal stakeholders in understanding vulnerabilities and their mitigations;

โœ… Document research findings and communicate conclusions clearly;

โœ… Share technical knowledge and collaborate with other members of the Security Research Group.


#ApplicationSecurity #AppSec #SecurityResearch #SecurityResearcher #ApplicationSecurityAnalyst #VulnerabilityResearch #SecureCodeReview #CodeSecurity #SAST #VulnerabilityDetection #OWASP #SecureCoding #PenetrationTesting #Python #ReachIT

Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search