
Application Security Engineer
Hybrid
Full Time
#Engineering
#Information Security
#Application Security
#Secure Coding
#DevSecOps
#Penetration Testing
#Vulnerability Management
#SAST
#SCA
#DAST
#Agile Development
#Security Frameworks
We are looking for a Senior Application Security Engineer to join our growing team in Cyprus. You will play a vital role in protecting our award-winning applications and ensuring our clients remain secure in a dynamic, collaborative environment.
Responsibilities
- Develop and maintain our application security program.
- Partner with development teams to embed security directly into the software development life cycle.
- Provide guidance and training to developers regarding security risks and effective mitigation strategies.
- Improve our security assurance levels by leveraging automation and continuous integration pipelines.
- Establish and distribute secure coding standards across the organization.
- Conduct thorough security architecture and design reviews for our systems.
- Manage vulnerability assessments, penetration testing, and code review processes.
- Identify potential security threats and assist in the remediation of findings.
- Perform routine security audits on our application portfolio.
- Collaborate with product management to ensure all new features meet our security requirements.
Must-haves
- A BSc or MSc degree in information security or a related discipline.
- At least 3 years of professional experience specifically in application security.
- Proven ability to work effectively alongside product and development teams.
- Deep understanding of secure coding practices, maturity models, and frameworks like OWASP SAMM.
- Comprehensive knowledge of DevSecOps methodologies.
- Practical experience with SAST, SCA, and DAST tools, including the Gitlab Application Security suite.
- Technical expertise in securing web and mobile applications, cloud services, containers, Kubernetes, Serverless, and API Gateways.
- Experience with penetration testing and vulnerability management.
- Proficiency in programming languages such as Java, PHP, Angular, Go, or Kotlin.
- Strong background working within an Agile development environment.
- Excellent organizational and communication skills in English.
Nice-to-haves
- Professional certifications in Application Security or DevSecOps, such as CEH, CDP, GWEB, or CSSLP.
Benefits
- Competitive salary package with performance-based rewards.
- Private medical insurance.
- Corporate pension fund.
- Access to continuous professional development and international training.
- Flexible hybrid work arrangements.
Our Hiring Process
- An introductory chat with our Talent Acquisition team.
- A technical deep dive interview with your future team members.
- A final interview to wrap up the process.






