Application Security Engineer
Menlo Ventures
Contentsquare is the all-in-one experience intelligence platform designed to be easily used by anyone who cares about digital journeys. With our flexible and scalable platform, organizations quickly get a deep understanding of their customers’ whole online journey.
We are a global leader in the experience analytics space, with a growing presence across 15 offices worldwide. We're here to stay—and we're looking for team members who are excited to drive impact and help us scale even further.
Our aim is to create an inclusive workplace where everyone learns and succeeds. Contentsquare has built a community of individuals who are daring, understanding, and deliberate. We invite you to join us in making the complex simpler—for our customers, their customers, and each other.
The Contentsquare Security team is looking for an application security engineer (Appsec) who can work closely with the development team, product managers and diverse third-party groups (including bug bounty hunters).
Contentsquare provides a globally leading SaaS service and commits to the highest security standards for its customers. We are ISO 27001 and ISO 27701 certified and maintain robust security initiatives (SOC 2 Type 2 report, private bug bounty program, SIEM, advanced security awareness, etc.). Working alongside other cybersecurity experts, your mission will be to ensure the security of Contentsquare’s products and for keeping Contentsquare’s users and customers safe. You will work out of our Barcelona office.
What you'll do
- Conduct continuous, automated security audits of our global SaaS applications to identify misconfigurations and ensure strict adherence to industry-standard security benchmarks and internal best practices.
- Serve as a strategic security consultant to product and engineering teams, facilitating complex threat modeling sessions and AppSec reviews during the design phase to proactively mitigate risks.
- Perform deep-dive, security-focused code reviews and mentor developers on secure coding patterns to minimize the introduction of high-impact vulnerabilities.
- Architect and manage the end-to-end vulnerability lifecycle, developing sophisticated automation for the triage, reporting, and remediation tracking of security flaws across cloud infrastructure and application layers.
- Orchestrate and optimize AI-driven security workflows, leveraging LLMs and autonomous agents to conduct scaleable, proactive vulnerability discovery and validation within our CI/CD pipelines.
- Lead "Shift-Left" initiatives by integrating security checkpoints into the automation stack, developing custom security-as-code tools that empower developers to own security outcomes.
- Oversee the strategic direction of our private and public bug-bounty programs, ensuring high-quality engagement with the researcher community and rapid internal response to critical findings.
- Coordinate specialized external penetration testing engagements and customer-driven security assessments, acting as the primary technical point of contact for complex security inquiries.
- Drive the technical response to application-level security incidents, conducting root-cause analysis to prevent recurrence and enhance our defensive posture.
What you'll need
- 3+ years of professional experience in Application Security Operations within a high-growth SaaS or cloud-native environment.
- Advanced proficiency in securing modern technical stacks, with specific expertise in NestJS, Vue.js, and Angular frameworks.
- Hands-on experience with enterprise security tooling, including Snyk, Datadog ASM/AppSec (WAF), Google SecOps, and Crowdstrike.
- Deep architectural understanding of AWS and Azure environments, including Kubernetes/Docker container security and Infrastructure as Code (Terraform).
- Demonstrated ability to apply AI and LLM technologies to automate security tasks, such as automated vulnerability validation or code analysis at scale.
- Expertise in scripting and development (Python, Node.js, Shell) to build custom security tooling and integrations.
- Comprehensive knowledge of web protocols, OWASP Top 10, and advanced threat frameworks (MITRE ATT&CK, NIST CSF).
- Proven track record in ethical hacking, CTF competitions, or bug bounty hunting, showcasing a high level of technical tenacity and analytical rigor.
- Exceptional cross-functional collaboration skills, with the ability to articulate complex security risks to both technical and non-technical stakeholders.
- Fluency in English is mandatory
Why you should join Contentsquare
- - Virtual onboarding, Hackathon, and various opportunities to interact with your team and global colleagues both on and offsite each year
- - Work flexibility: hybrid and remote work policies
- - Generous paid time-off policy (every location is different)
- - Lifestyle allowance
- - A Culture Crew in every country we’re based in to coordinate regular activities for employees to get to know each other and bond outside of work
- - Every full-time employee receives stock options, allowing them to share in the company’s success
- - We have multiple Employee Resource Groups, that offer a safe space for individuals who share common identities, life experiences, or allyship to connect, support one another, and passionately advocate for the issues close to their hearts
- - And more benefits tailored to each country
Contentsquare is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to sex, gender identity or expression, sexual orientation, race, color, religion, national origin, disability, protected veteran status, age, or any other characteristic protected by law.
Your personal data is used by Contentsquare for recruitment purposes only. Read our Job Candidate Privacy Notice to find out more about data protection at Contentsquare and your rights. You can exercise your rights by using our dedicated Data Subject Rights Portal here.
Your personal data will be securely stored in our hosting provider’s data center in Oregon (US west). We have implemented appropriate transfer mechanisms under applicable data protection laws.
Contentsquare may use AI-assisted tools to help review and screen applications. All decisions involving hiring are made by human reviewers, and your personal data will be processed in accordance with our Candidate Privacy Policy.
#J-18808-Ljbffr- ...Contentsquare is seeking an Application Security Engineer to secure our global SaaS platform from our Barcelona office. You’ll collaborate with product and engineering teams to embed security across design, code, and deployment while leveraging AI-driven workflows and...Ofertas de empleo recomendadasTrabajar en la oficinaRemotoTrabajo híbrido
- ...Contentsquare is seeking an Application Security Engineer to safeguard our SaaS platform from the Barcelona office. You will partner with development, product management and external groups to drive secure design, code reviews and threat modeling. You will architect...Ofertas de empleo recomendadasTrabajar en la oficinaRemotoTrabajo híbrido
- ...com or @contentsquare-ext.com domain. For more information, visit our careers blog. The Contentsquare Security team is looking for an application security engineer (Appsec) who can work closely with the development team, product managers and diverse third-party groups...Ofertas de empleo recomendadasTiempo completoTrabajar en la oficina
- ...the Role We are looking for an experienced and passionate Application Security Architect with a strong background in software development... ...clients to lead the design and implementation of secure application architectures in a highly regulated and innovation...Ofertas de empleo recomendadasTrabajo híbrido
- ...hackers focused on offensive security testing, automated exploit discovery, and advanced application security research. Your work... ...company's products and help scale secure-by-design principles. This... .... • Collaborate with engineering teams to reproduce, triage, and...Ofertas de empleo recomendadas
- ...We rank among the leaders in areas like application development and AI/ML, and our people-... ...ASPM integrations and AI-enabled SDLC secure code scanning. You will facilitate shift... ...The role requires 6+ years of software engineering experience with strong Python depth and...Tiempo completoRemotoHorario flexibleTrabajo por turnos
- ...Select how often (in days) to receive an alert: EDA Applications Engineer Experience Level: Professional Job Type: Regular... ...consideration without regard to any characteristics protected by applicable law, including race, color, religion, sex (as defined by...Práctica
- ...Qorvo, Inc. is seeking an EDA Applications Engineer in Barcelona to support EM simulation activities across RFIC, package, and module development. The role focuses on troubleshooting EM simulations, assisting with tool setup, and supporting correlation and verification...
- ...We are seeking a highly self‑motivated engineer with strong knowledge in PCB design and power electronics to support the development of PCBs for high‑power and automotive applications. ESSENTIAL FUNCTIONS Develop and design Printed Circuit Board (PCB) for different...
- ...Omega CRM Consulting is looking for a CISOC Application Security Engineer that would like to collaborate with one of the top global pharmaceutical... ...guidance to development teams on the use of SAST tools and secure coding practices. • Participate in the development and...Empleo permanenteContratoDesde casa
- ...We are looking for an Application Security Engineer to join our CISOC team, responsible for implementing and managing SAST tools and supporting secure software development across the organization. TASKS : The ideal candidate will have a strong background in...Trabajar en la oficinaRemotoLunes a viernes
de 74000 a 101000 €/año
...Description: Secure Every Identity, from AI to Human Identity... ...-increasing pace of cloud application adoption, companies are... ...The Staff Product Security Engineer, PSIRT position is crucial... ..., Okta offers equity (where applicable), bonus, and comprehensive healthcare...- ...various teams. The ideal candidate holds a relevant Bachelor's degree and has 3-4 years of experience with at least 2 years in Cyber Security. A proactive attitude and strong communication skills are essential. This position offers a flexible work environment and...Horario flexible
- ...This Position reports to:R&D Team LeadYour Role and ResponsibilitiesJoin the Sevensense by ABB unit as an experienced Robotic Applications Engineer in the Robotic Systems team. As part of this role, you will serve as the link between product development and real-world...PrácticaHorario flexible
- ...ABB is seeking an experienced Robotic Applications Engineer for the Sevensense by ABB unit in Sant Quirze del Vallès. You will bridge product development and real-world deployments, working with ROS/ROS2 and Python on AMRs and localization tasks. You will analyze field...
- ...is the company you have been looking for. We are looking for We are looking for a driven and enthusiastic Application Engineer (Full-Stack Mobile) (m/w/d), to craft flawless mobile experiences while seamlessly tying them to robust backend architecture...Tiempo completoEmpleo permanenteContratoTrabajar en la oficinaDesde casaRemotoTrabajo híbridoLunes a viernes
- ...One Identity Application Engineer About the Job At Allianz Technology... ...pillar of our Information Security strategy. We are seeking a... ...solutions remain efficient, secure, and resilient against... ...characteristics protected under applicable local laws and regulations....IndefinidoTiempo completoContratoRemotoTrabajo híbridoHorario flexible
- ...billion euros incl. VAT in 2024 and employs 5,000 staff members across 10 countries. JOB DESCRIPTION As a Support & Development Engineer, you will join the Support L2 team, a transversal function that acts as a bridge between support agents and L3 development teams....Empleo permanente
- Wizeline ищет специалиста по информационной безопасности для проведения безопасных тестов, ревью кода и настройки конвейеров CI/CD. Требуется опыт в SAST/DAST/SCA, ред-анинг, OWASP Top 10 и управление секретами. Уделяется внимание интеграции инструментов в GitHub Actions...
- ...At Palatin, we're looking for a Senior Security Engineer to join a fast-growing international technology company... ...and controls from the ground up. Secure cloud infrastructure, Kubernetes environments and applications, improving the overall security posture across...PrácticaEmpleo permanenteDesde casaRemotoTrabajo híbridoHorario flexible
- ...neural systems. Â Our mission is to decode and modulate neural networks to restore people's lives. As a Clinical Application and Support engineer , you will be at the intersection of clinical research, field/sales operations, and product development . This position...Empleo permanenteTrabajo híbrido
- ...assessments to identify and address vulnerabilities across systems, applications, and infrastructure Define and track key risk indicators... ...document processes and procedures that strengthen Clariant's security services portfolio Support the design and delivery of...Horario flexible
- ...platform serves as the strategic engine for brand governance and... ...team. At Bynder, we believe security should never be an... ...relentlessly focused on enabling secure growth. We favor automation over... ...Security Engineer who brings strong application security and tooling chops....Desde casaTrabajo híbridoTrabajo por turnos
- ## Cyber Security EngineerApplylocations: Spain - Barcelonatime type: Full timeposted on:... ...id: 2026-744**Position: Cyber Security Engineer****Location : Barcelona****Report to : Head... ..., identity, network, cloud and business application environments.* Design, implement and...Trabajo híbrido2 días a la semana
- ...that the platform complies with industry security practices and standards, including... ...vulnerability management platforms for application triaging and continuous compliance Collaborate... ...cases Audit PMS systems, support secure migration to the central platform, and interpret...Trabajo de veranoPrácticaInicio inmediatoHorario flexible
- ...testing, and manual code reviews on live applications and APIs; Prioritize risks using CVSS... ...Configure, manage, and optimize enterprise security scanners, including Wiz, Snyk, Qualys,... ...modeling based on OWASP SAMM principles; Secure and harden hybrid architecture spanning...Trabajo híbrido
- Bacardi is seeking an experienced Network & Collaboration Services professional to own day-to-day operation of Aruba LAN and WLAN across campuses and sites. You will implement and manage Aruba switching, controllers/APs, and ClearPass, while leading incident and change...
- ...apeirum is hiring an IT Client Security Engineer in Barcelona to secure and enhance Windows endpoint security. The role involves designing and operating security solutions, improving hardening standards, and managing security incidents. Candidates should have extensive...Tiempo completoEmpleo permanente
- ...A proactive and detail-oriented OT Security Specialist with a strong analytical mindset... ...transparent solutions ensuring they become secure. With foundational expertise in OT... ...other teams—such as operations, IT, and engineering—to assess risks, strengthen network segmentation...Temporal
- ...Tokio Marine HCC in Barcelona is seeking a Cyber Security Engineer to strengthen detection, investigation and response across our international technology environment. You will administer security controls, design preventive and detective measures, investigate incidents...Trabajo híbrido
¿Quieres recibir más ofertas?
Suscríbete y recibe ofertas similares para Application Security Engineer. ¡Entérate antes que nadie!
- senior application engineer Barcelona
- field application engineer Barcelona
- desarrollador de aplicaciones react native Barcelona
- app developer Barcelona
- programador aplicaciones web Barcelona
- programador aplicaciones Barcelona
- ingeniero seguridad industrial Barcelona
- ingeniero seguridad Barcelona
- senior application engineer
- field application engineer

