SICPA

Software Security Engineer

SICPA  •  Madrid, ES (Onsite)  •  1 month ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

We are looking for an experienced Security Engineer to join our Digital Research & Innovation organization and help embed security from the design phase across SICPA’s digital products worldwide.You will play a global, transversal role, working closely with development and DevOps teams to identify vulnerabilities early, streamline security practices, and integrate security controls into modern cloud‑native environments.

SOFTWARE SECURITY ENGINEER

KEY OBJECTIVES

  • Shift security left by addressing security early in the design and development process
  • Automate and maintain security checks within CI/CD pipelines
  • Reduce vulnerabilities before deployment
  • Ensure compliance with security regulations and standards
  • Promote collaboration between development, security, and operations teams worldwide

KEY RESPONSABILITIES

  • Define and review security requirements and architectural designs across application, infrastructure, and network layers
  • Provide security support during design and development phases of digital products
  • Develop, maintain, and improve security and vulnerability scanning tools integrated into build pipelines
  • Perform security reviews of pull requests, analyze vulnerabilities, and support remediation actions
  • Execute preliminary audits, document findings, and contribute to risk mitigation strategies
  • Identify vulnerabilities in applications and cloud‑native environments, including Kubernetes / OpenShift platforms and public cloud (AWS)
  • Support secure deployment in public cloud environments
  • Monitor industry security trends and assess potential impacts on products
  • Contribute to quarterly planning and long‑term security improvement roadmaps
  • Provide visibility on the security level per product and team
  • Collaborate actively with global security teams across departments and regions
  • Report security incidents and escalate issues when required
  • When relevant, organise security workshops for technical teams

PROFILE

  • University degree in Computer Science, Engineering, or equivalent
  • 5+ years of experience in security engineering, application security, or secure software architecture
  • Experience in application security testing tools (e.g. SonarQube is a plus)
  • Experience in penetration testing or offensive security
  • Software development experience, preferably in Java, JavaScript, and Python
  • Experience with automation and infrastructure‑as‑code tools (Ansible, Terraform) is a plus
  • Knowledge of Kubernetes / OpenShift is a strong advantage
  • Knowledge of AWS security is a strong advantage
  • Security certifications (OSCP, CEH, CISA) are a plus
  • Strong communication and analytical skills in a global, cross‑functional environment
  • Fluent in English; French is an asset

JOIN US!

  • Our success comes from our highly skilled and talented employees
  • Respectful entrepreneurship and a long-term vision are key for success
  • Our people contribute to a more secure world
  • Diversity at all levels of an organisation is a strengths

We offer an exciting and challenging role, with great potential for personal development within a unique organization in a fascinating industry. Your file will be handled with upmost confidentiality and discretion.

SICPA

About SICPA

SICPA is a Swiss technology company that supports the effective governance and long-term prosperity of nations. Our platform of sovereignty enables our customers to authenticate and secure their vital assets, through custom solutions based on a century of combined cutting-edge innovations in material, digital and data science domains. At the center of every SICPA solution is a custom crafted molecule, unique to each nation. Acting as a single source of truth, these unique markers are deployed across the full value chain to generate actionable and trustworthy insights in real time.

Established in 1927 and headquartered in Switzerland, SICPA is best known for safeguarding the majority of the world's banknotes. With operations across five continents, today our platform delivers sovereignty solutions mainly across revenue mobilisation, identity verification, healthcare security, and brand protection.

SICPA’s technological leadership and successful development and implementation of these solutions is the result of the expertise and dedication of our 3,000 employees worldwide from more than 80 nationalities. Our staff includes high-level experts in numerous technical and scientific disciplines, such as chemistry, physics, optics, cryptology, engineering or computer science. With strong innovation capabilities, we hold more than 6,000 patents.

Industry
Chemicals & Materials
Company Size
1,001-5,000 employees
Headquarters
Lausanne, CH
Year Founded
1927
Website
sicpa.com
Social Media