Application Security Engineer
Application Security Engineer
Looking for a journey instead of a job? Then let’s talk! We are THE pioneers in banking tech. We see opportunities and take the leap. Having the guts to push limits and break barriers to make things happen. We learn and reinvent ourselves for maximum impact, never giving up. We are creators, with a customer-centric mindset that love what they do and bring fun to any challenge. Together we kick ass, have fun and feel proud when our vision is delivered. Next day - we wake up and raise the bar a little higher. Are you ready?
As an Application Security Engineer you’ll be part of the team of security engineers working to ensure we build, maintain and deploy secure software that is used by millions of users around the globe. If you have a hacker mindset, are passionate about security and always looking to extend your knowledge, then this is the place for you.
What you'll do
No day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in hand and with hackers and tech evolving by the day, you’ll need to stay on your toes and ahead of the game.
Your core responsibility is to analyze the software from a security perspective and to identify and resolve security issues. You help maintain the secure SDLC with its tools and processes. You validate that application security requirements have been met. You have a good understanding of application security and common application security vulnerabilities. You provide guidance to developers and QA engineers on secure coding, security testing and working with security tools.
Who you are
In order to really own this role, we think you’ll need:
- Excellent understanding of application security and common application security vulnerabilities;
- Excellent knowledge of the frontend, backend and mobile security domains;
- Good understanding of DevOps and cloud native technologies;
- Successful track record driving security initiatives;
We’ll be delighted if you bring experience in the following topics but otherwise these would be opportunities for you to grow your knowledge working in the security team:
- Implementing OWASP ASVS/M-ASVS and SKF;
- Implementing SAST, SCA, IAST and RASP tools in the SDLC;
- Assessing and implementing security maturity models;
- Facilitating threat modeling sessions with the development teams;
- Pen testing web and mobile applications;
- Training and guiding developers on application security concepts;
- Relevant regulations such as GDPR and PCI-DSS.
- A background in development and a good understanding of the SDLC;
- English language on a professional level, written and spoken.
Our Perks
Loud and busy sometimes but always friendly, helpful, and super fun. We love to celebrate each other’s achievements, share jokes, and our love for food, movies, traveling, and sports. We’re one big and diverse family working towards the same goal.
Insurance
Multiple options to choose from; you choose the plan that will work best for you and your family members.
Lunch
Free daily healthy lunches, prepared by our in-house chef. Plus plenty fresh fruit, and snacks.
Commute
With MARTA within a few feet away and a security access parking garage attached to our building with 835 covered parking spaces, you choose how you would like to get to the office and we will pay for either option.
Social
Regular happy hours at the office with drinks, snacks and lots of laughter.
Clothing
You can wear clothes you feel comfortable in.
High spec equipment
We provide all employees with high-spec Macs and tech set up.