Application Security Engineer
Sigma Software
Remote
20.02.2025.
We are an innovative and fast-growing company committed to delivering high-quality and secure solutions. To strengthen our cybersecurity efforts, we are seeking a talented and proactive Application Security Engineer/Pentester to join our team.
Our focus is on helping clients identify and mitigate cybersecurity risks by providing expert consulting services, conducting comprehensive penetration tests, and performing in-depth security assessments. We aim to ensure compliance with industry standards while strengthening application security and securing software development processes.
Working together, we can ensure the security and integrity of our projects. If you are passionate about cybersecurity and enjoy solving challenging security problems, we’d love to hear from you!
Requirements
- Degree in Information Security, Cybersecurity, Computer Science, or other related field
- 3 – 5 years of proven experience in information security, with hands-on experience in penetration testing and application security
- Proficiency in common penetration testing tools and frameworks
- Strong understanding of secure coding practices and vulnerability management
- Familiarity with OWASP, NIST, or similar security standards
- Excellent analytical and problem-solving skills
- At least an Intermediate level of written and spoken English to effectively communicate findings and collaborate with global teams
Responsibilities
- Perform penetration testing and vulnerability assessments for applications and infrastructure using white, black, or grey box methodologies
- Collaborate with teams to identify potential security threats, conduct in-depth code reviews, and perform dynamic security testing
- Prepare detailed reports outlining findings, risks, and actionable recommendations
- Work closely with development teams to integrate secure coding practices throughout the software development lifecycle
- Assist and guide development teams in applying security best practices for applications and infrastructure
- Support the creation and delivery of internal security training programs to improve team awareness and skills
Preporuke se učitavaju...