syffer

Application Security Engineer

syffer  •  Porto, PT (Hybrid)  •  4 days ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Syffer is an all-inclusive consulting company focused on talent, tech and innovation. We exist to elevate companies and humans all around the world, making change, from the inside to the outside.

We believe that technology + human kindness positively impacts every community around the world. Our approach is simple, we see a world without borders, and believe in equal opportunities. We are guided by our core principles of spreading positivity, good energy and promote equality and care for others.

Our hiring process is unique! People are selected by their value, education, talent and personality. We dont present ethnicity, religion, national origin, age, gender, sexual orientation or identity.

Its time to burst the bubble, and we will do it together!

What You'll do:

- Define and standardize Secure Software Development Life Cycle (S-SDLC) across multiple development teams;

- Integrate and manage security testing tools (SAST, DAST, SCA) in CI/CD pipelines;

- Lead vulnerability management initiatives in cloud environments and Kubernetes clusters;

- Maintain and automate infrastructure security controls, including WAFs and network policies;

- Guide development and DevOps teams on security best practices, ensuring compliance with frameworks such as DORA, CIS Benchmarks, and OWASP;

- Hybrid work model;


Who You Are:

- Bachelor's degree in Computer Science, Cybersecurity, or equivalent practical experience;

- Solid professional experience as a Security Engineer, with strong focus on Application Security and DevSecOps methodologies;

- Hands-on experience with containerization and orchestration tools;

- Strong programming and scripting skills (e.g., Python, Bash, Java, or Go);

- Knowledge of industry security standards, including OWASP Top 10 and ISO 27001;

- Fluent in English to communicate effectively with technical and executive stakeholders;

Nice-to-have:

- Intent to obtain or completion of industry certifications such as CKA (Certified Kubernetes Administrator) or CKS (Certified Kubernetes Security Specialist);

- Strong analytical skills for threat detection and analysis;

- Excellent communication skills to convey technical concepts;

- Proactive approach to aligning security requirements with technological modernization and business goals;



What you'll get:

- Wage according to candidate's professional experience;

- Remote Work whenever possible;

- Delivery of work equipment adjusted to the performance of functions;

- Benefits plan;

- And others.

Work together with expert teams on projects of large magnitude and intensity, long term together with our clients, all leaders in their industries.

Are you ready to step into a diverse and inclusive world with us?

Together we will promote uniquess!

syffer

About syffer

We are a consultancy focused on talent, tech and innovation, with global impact more and more everyday. We believe that innovation, technology + human kindness positively impacts every community around the world.

And we are here to make it happen!

Industry
IT & Software
Company Size
11-50 employees
Headquarters
Lisbon, PT
Year Founded
Unknown
Social Media