Application Security Engineer

Rootedsec — Germany · Posted ~12 hours ago

Mid Full-time

Skills

application security secure coding code review vulnerability assessment Semgrep CodeQL

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

A security-focused technology organization is hiring an application security engineer to embed security practices into software development. The role includes code reviews, security automation, vulnerability prevention, and building developer-friendly safeguards.

Highlights

Work closely with engineering teams to improve software security through practical solutions and automation.

Description

About The Role You work alongside the development teams rather than auditing them from outside. That means reviewing architecture proposals before they are built, reviewing code before it ships, and maintaining the automated security scanning in the build pipeline. A large part of the role is turning recurring problems into checks or libraries so the same class of bug stops reaching production. What you will do Review code and designs for security consequencesOwn the scanning pipeline and keep its noise downTurn each recurring finding into a guardrail What they ask for Reads and writes production code in at least one languageKnows the common vulnerability classes by mechanism, not by nameHas shipped a fix somebody else had to maintain Nice to have Threat modellingSemgrep or CodeQL rulesOpen source contributions