Application Security Engineer

Agileengine — Poland · Posted ~5 hours ago

Mid Full-time

Skills

Python CI/CD SAST DAST SCA Application security Security scanning Secure coding DevSecOps

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Summary ✨ AI‑Generated

Work as a mid-level Application Security Engineer within a DevSecOps environment, developing Python automation to integrate security checks into CI/CD pipelines. You will tune security scanners, reduce false positives, establish hardened baselines, and guide development teams on secure coding and remediation.

Highlights

Hands-on security engineering role with significant autonomy, focused on DevSecOps automation, security tooling, hardened baselines, and practical remediation guidance.

Description

About the Role We are looking for a Middle Application Security Engineer to contribute hands-on to a follow-the-sun DevSecOps pod, writing Python scripts to integrate SAST, DAST, and SCA security gates into CI/CD pipelines and tuning scanning tools to reduce false positives. You will deploy automated hardened baselines and provide code-level remediation guidance to development teams, operating with minimal supervision on complex scripting and integration tasks. The role requires 3–5 years of software engineering experience with strong Python proficiency and CI/CD familiarity. What you will do Write and maintain the scripts necessary to integrate security gates (SAST, DAST, SCA) seamlessly into the CI/CD pipeline;Continuously tune and configure existing security scanning tools to eliminate false positives and deliver high-confidence alerts;Assist in coding and deploying automated hardened baselines and secure coding patterns;Work directly with product development teams to provide actionable, code-level remediation guidance in Java and Python. Must haves 3–5 years of commercial experience in software engineering;Solid coding proficiency in Python for automation and scripting;Working knowledge of modern CI/CD orchestration tools and practical experience interacting with vulnerability scoring frameworks;Ability to operate with minimal supervision on day-to-day execution, reliably completing complex scripting and integration tasks;Upper-intermediate English level. Nice to haves Experience in DevSecOps or Application Security;Ability to comfortably read and navigate Java source code;Hands-on experience with CNAPP or ASPM platforms such as Wiz;Basic understanding of application threat modeling. Perks and Benefits Professional growthAccelerate your professional journey with mentorship, TechTalks, and personalized growth roadmaps Competitive compensationWe match your ever-growing skills, talent, and contributions with competitive USD-based compensation and budgets for education, fitness, and team activities A selection of exciting projectsJoin projects with modern solutions development and top-tier clients that include Fortune 500 enterprises and leading product brands FlextimeTailor your schedule for an optimal work-life balance, by having the options of working from home and going to the office – whatever makes you the happiest and most productive.