Point your AI agent at freehire and let it find you a job.

Get the CLI →

emagine

NewBe an early applicant

Application Security Engineer

Posted 3 views
Discussion

Summary

100% remote, 12-month B2B contract (via emagine) hardening application security for a telecom client: triaging vulnerabilities in DefectDojo, driving remediation with dev teams, defining secrets management, and leveraging GitLab Ultimate, SonarQube/SCA and Power BI for security reporting.

PROJECT INFORMATION:

Industry: telecommunication

Remote work: 100%

Project language: English

Business trips: n/a

Project length: 12 months contracts + prolongations.

Start: ASAP / 1 month notice

Assignment type: B2B

Summary: This role aims to strengthen the organization's application security posture by analyzing existing vulnerabilities, driving their remediation, and implementing modern security processes and tools.
Technical Environment: DefectDojo, GitLab Ultimate, SonarQube / SCA, Power BI.

Responsibilities:

  • Analyze the current state component by component using DefectDojo.

  • Collaborate with development teams on vulnerability mitigation.

  • Present a remediation plan in coordination with Tech Leads and security profiles.

  • Drive the execution of the remediation plan.

  • Provide technical support to the DevOps team.

  • Define and implement secrets management procedures.

  • Leverage GitLab Ultimate security features.

  • Contribute to the deployment of SCA solutions (SonarQube).

  • Set up Power BI dashboards for high-level security reporting.

  • Produce reports for the security team and developers.

  • Ensure visibility on the evolution of the security posture.

Must Haves:

  • Experience with vulnerability management tools (DefectDojo or equivalent).

  • Knowledge of DevSecOps practices and CI/CD pipelines.

  • Knowledge of secure secrets management procedures.

  • Proficiency with GitLab and its security features.

  • Familiarity with SCA and SAST tools (SonarQube).

  • Reporting and data visualization skills (Power BI).

  • Experience using Jira/Confluence.

  • Experience with Agile Scrum methodology.

  • Experience with OWASP security recommendations and NIS2 compliance.

  • Proven experience with major development languages: Java, Angular, Python, Drupal, etc.

Nice to Haves:

  • Strong analytical and synthesis skills.

  • Ability to collaborate with diverse technical teams.

  • Ability to communicate security topics to non-experts.

  • Autonomy and proactivity.

Skills

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available