04 ago
|
AgileEngine
|
Bogotá
04 ago
AgileEngine
Bogotá
Agile Engine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people-first culture has earned us multiple Best Place to Work awards.
WHY JOIN US
If you're looking for a place to grow, make an impact, and work with people who care, we'd love to meet you!
ABOUT THE ROLE
We are looking for a Middle Application Security Engineer to execute hands‑on Dev SecOps work across CI/CD pipeline security integration, vulnerability management tooling, and automated hardened baseline deployment within a large‑scale financial services security program.
You will write Python scripts to integrate SAST, DAST, and SCA gates into CI/CD pipelines, tune scanning tools to reduce false positives, and provide code‑level remediation guidance to Java and Python development teams. The role requires 3–5 years of combined software engineering and App Sec experience.
WHAT YOU WILL DO
- Write and maintain the scripts necessary to integrate security gates such as SAST, DAST, and SCA into CI/CD pipelines;
- Continuously tune and configure existing security scanning tools to eliminate false positives and deliver high‑confidence alerts;
- Assist in coding and deploying automated hardened baselines and secure coding patterns;
- Work directly with product development teams to provide actionable, code‑level remediation guidance in Java and Python.
MUST HAVES
- 3–5 years of commercial experience blending software engineering and Dev SecOps/App Sec;
- Solid coding proficiency in Python for automation and scripting;
- Ability to comfortably read and navigate Java source code;
- Working knowledge of modern CI/CD orchestration tools;
- Practical experience interacting with vulnerability scoring frameworks;
- Ability to operate with minimal supervision on day‑to‑day execution and reliably complete complex scripting and integration tasks;
NICE TO HAVES
- Hands‑on experience with CNAPP or ASPM platforms such as Wiz;
- Basic understanding of application threat modeling.
PERKS AND BENEFITS
- Professional growth: Mentorship, Tech Talks, and personalized growth roadmaps.
- Competitive compensation: USD‑based pay with education, fitness, and team activity budgets.
- Exciting projects: Modern solutions with Fortune 500 and top product companies.
- Flextime: Versátil schedule with remote and office options.
#J-18808-Ljbffr
📌 AppSec Engineer (Bogotá)
🏢 AgileEngine
📍 Bogotá