Start Your Search Here

Job Search

Intermedia Intelligent Communications

Portugal / Global

Application Security Engineer

Job Description

Application Security Engineer

Department:

IT Business Systems & Security

Employment Type:

Full Time

Location:

Portugal

Reporting To:

Michela D'Errico

Description

ALL CANDIDATES MUST BE LOCATED IN PORTUGAL

About the Role

Intermedia has a wide portfolio of internally developed application software, ranging from web and desktop apps to lower level PBX solutions. Due to the growing demand for integrating security activities into diverse development processes, Intermedia is looking for an experienced and self‑motivated Application Security Engineer to help us deliver built-in security to our products.

As part of the Global Security team, you will support our company‑wide application security program, helping the company build secure products. You will be the voice of security for all things related to application security to our spectrum of engineering teams, guiding the architecture and execution of our SDLC throughout the enterprise. This position is an individual contributor role, reporting directly to the Manager, Application Security.

What you will be doing:

Perform design and architecture review of new features, suggest security requirements

Collaborate with DevOps and engineering teams, advising on security features and best practices in SDLC

Utilize static security scanning tools, review findings and coordinate remediation actions

Perform ongoing manual security assessments

Review the results of external penetration tests and communicate suggested fixes to development teams

Provide on‑demand support on application security topics

Drive process improvement ideas

Assist with vetting and intake of defects from 3rd party security researchers via our Bug Bounty program

What you will bring to the role:

3 - 5 years of experience in the application security field

Bachelor's or Master Degree in related field of expertise

Knowledge of secure coding best practices and industry standards (such as OWASP) and the ability to apply them to different programming languages

Familiarity with SDLC and DevSecOps concepts and hands‑on experience in implementing them

Knowledge and/or hands‑on experience with identifying A.I. threats in a security landscape

Experience in using static and dynamic security scanning tools (such as BurpSuite, ZAP, and Snyk, or other related technologies)

Experience with programming languages such as Python is preferred

Ability to explain application security threats and mitigation options to both developers and project managers

Good communication skills in written and verbal English

Experience and/or knowledge in securing applications within cloud platforms (AWS, Azure) and containerized environments (Docker, Kubernetes)

Participation in CTF challenges and bug‑bounty programs

Diversity, Inclusion, and Equal Opportunity

We hire, promote, and compensate employees based on their ability to perform their job responsibilities, without regard to race, color, creed, religion, sex, gender, marital status, national origin, ancestry, age, citizenship, physical or mental disability, sexual orientation, or any other basis protected by applicable law (collectively referred to in our Code of Conduct as “Protected Classes”). We do not tolerate employment discrimination in the workplace, and we are committed to making reasonable accommodations for identified disabilities or other limitations as required by all applicable laws. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

#J-18808-Ljbffr

Candidatar-se Now

Similar Opportunities

View all jobs