Application Security Engineer (remote In Bulgaria, Germany, Italy, Serbia, Turkey)

Constructorcampus

Turkey
Not specified; not specified; benefits include equ...
Hybrid (2 days in-office, 3 days remote)
Web application security design
Secure development practices
Vulnerability testing experience
Constructorcampus is looking for an Application Security Engineer proficient in web application and API security, as well as software supply chain management, to join their team remotely in several countries including Turkey. The role involves conducting security assessments, implementing secure development practices, and collaborating with development teams to address vulnerabilities

Job Summary

  • The company's mission is to enable educational organizations to provide high-quality digital education with increased efficiency.
  • This role requires performing threat modeling, security architecture reviews, and managing Software Bill of Materials processes across the SDLC.
  • Candidates will receive benefits including a choice of work equipment, English classes, flexible schedules, and paid leave.

Matching Summary

Match Score: 85

Constructorcampus is looking for an Application Security Engineer proficient in web application and API security, as well as software supply chain management, to join their team remotely in several countries including Turkey. The role involves conducting security assessments, implementing secure development practices, and collaborating with development teams to address vulnerabilities.

Salary

Not specified; Not specified; Benefits include equipment choice, English classes ($130/month), newborn bonus (€500), patent remuneration, and paid leave

Skills & Requirements

Must-have

  • Web application security design
  • Secure development practices
  • Vulnerability testing experience
  • SAST and DAST pipeline integration
  • OWASP best practices knowledge

Nice-to-have

  • SBOM generation and consumption
  • CycloneDX and SPDX standards
  • Software composition analysis tools
  • Container security concepts
  • DevSecOps implementation experience

Key Requirements

  • 3–5 years of application security experience
  • Proficiency in Python, JavaScript, C#, or Go
  • Experience with OWASP ZAP, Burp Suite, or Snyk
  • Excellent command of business English

Work Rights

Not specified

Tailored Resume

Cover Letter