Senior Application Security Engineer

BrainRocket Estonia
Relocation
Apply
AI Summary

Join BrainRocket as a Senior Application Security Engineer to drive innovation and pioneer projects. Collaborate with teams to achieve complex objectives and implement secure by design principles. Develop and validate declarative threat models automation and oversee product security aspects.

Key Highlights
Collaborate with teams to achieve complex objectives
Implement secure by design principles
Develop and validate declarative threat models automation
Key Responsibilities
Demonstrated ability to collaborate with other teams to achieve complex objectives
Responsible for security architecture design from cloud infrastructure to application through the implementation of secure by design principles
Collaborate with product managers, architects, and developers on the implementation of the security controls platform ecosystem and products
Technical Skills Required
Cloud infrastructure Application security CI/CD pipelines Infrastructure-as-a-code models Python Shell scripting Docker Kubernetes Typescript Javascript
Benefits & Perks
Excellent benefits
Learning and development opportunities
Time for proper rest
Competitive remuneration level
Nice to Have
In-depth experience with architecting secure services on Kubernetes
Extensive experience with architecting secure services on AWS or on-prem data centers
Security-related professional certifications e.g., CISSP, CISM, CCSK, CCSP, CEH

Job Description


We’re BrainRocket — an international software development and digital solutions company driven by 1,300 talented professionals across Cyprus, Malta, and Portugal.

Here, everything moves at rocket speed: driving innovation, pioneering projects, and fast-tracking careers.

Together, we turn ideas into action — let’s get started!


We invite a Senior Application Security Engineer to join our team on-site.

This is a 100% office-based role – no remote or hybrid options – at one of our hubs:

  • Belgrade (Serbia),
  • Lisbon (Portugal),
  • Sofia (Bulgaria),
  • Warsaw (Poland),
  • Yerevan (Armenia).

The final location will depend on business needs and the feasibility of relocation from your current spot.

We provide relocation support.


Responsibilities:

✔️ Demonstrated ability to collaborate with other teams to achieve complex objectives.

✔️ Responsible for security architecture design from cloud infrastructure to application through the implementation of "secure by design" principles.

✔️ Collaborate with product managers, architects, and developers on the implementation of the security controls platform ecosystem and products.

✔️ Proof security implementations within infrastructure and application deployment manifests and the CI/CD pipelines.

✔️ Define required policies, controls, and capabilities for the protection of products and environments.

✔️ Build and validate declarative threat models automation.

✔️ Participate in engineering teams’ product planning cycles and committees.

✔️ Oversee the product security aspects for migration of products and services from Data Center to public cloud, e.g., AWS.

✔️ Serve as a trusted cyber security advisor to product and application teams.


Requirements:

✔️ Minimum of 3 years experience as an Application Security Engineer.

✔️ Experience integrating security scanning/tooling into development pipeline.

✔️ Experience in analyzing and securing microservices and applications developed using Javascript and Typescript.

✔️ Experience with CI/CD pipelines (such as Gitlab, Jenkins) and infrastructure-as-a-code models (such as Terraform, Helm, or CloudFormation).

✔️ Hands-on development experience in Python/shell scripting.

✔️ Strong understanding of supply chain security, software integrity, and secure software delivery.

✔️ Experience with docker and mesh technologies (such as ISTIO).

✔️ Experience with architecture and security reviews, threat modeling and applications risk highly desired.

✔️ Experience working with Agile methodologies.

✔️ Knowledge of privacy laws and regulations, such as GDPR desired.

✔️ Familiarity with industry regulations, frameworks, and practices. For example, PCI, ISO 27001, NIST, etc.


PREFERRED QUALIFICATIONS:

✔️ In-depth experience with architecting secure services on Kubernetes.

✔️ Extensive experience with architecting secure services on AWS or on-prem data centers.

✔️ Security-related professional certifications e.g., CISSP, CISM, CCSK, CCSP, CEH is highly desirable.


We offer excellent benefits, including but not limited to:

🧑🏻 💻 Learning and development opportunities and interesting, challenging tasks.

📚 Opportunity to develop language skills, with partial compensation for the cost of English classes.

🏝 Time for proper rest, with 20 working days of annual vacation.

📈 Competitive remuneration level with annual review.

🤝 Teambuilding activities.


Bold moves start here. Make yours. Apply today!


Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Associate

pernini legal llc

United State

ATO Systems Security Engineering Technical Leader

Cyber Security
10h ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

GE Aerospace

United State

Software Engineer - Secure Systems Group

Cyber Security
1d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Qualcomm

Ireland

Subscribe our newsletter

New Things Will Always Update Regularly