Your mission
We are looking for a(Senior) Application Security Engineer to strengthen the security of our software products in a hybrid on-premise and SaaS this role you will contribute through deep technical expertise and hands-on involvement in the analysis design and improvement of application security across our product landscape.
You will work closely with software development and architecture teams directly engaging with source code systems and technical designs to identify and mitigate security risks. The position emphasizes technical contribution secure engineering practices and continuous improvement of security standards within the organization.
Your responsibilities include performing security reviews and tests advising on secure design decisions and actively supporting security awareness in day-to-day engineering work.
Key Responsibilities
- Identify security vulnerabilities through code reviews dynamic testing and penetration testing
- Analyze and explain security risks in complex software systems and propose practical organization-ready solutions
- Work hands-on with an evolving legacy product in a hybrid on-premise and cloud setup
- Advise development teams on secure coding practices and architectural security aspects
- Support compliance with relevant security standards and regulations
- Use and maintain common security tools for analysis and testing
- Train software developers in secure coding and foster security awareness within engineering teams
- Stay up to date with modern security topics including AI-assisted development and security tooling
Your profile
To succeed in this role you are a self-driven security specialist who enjoys working deeply on technical challenges and taking ownership from problem analysis to solution delivery.
You bring the following skills and experience:
- Solid experience in software development
- Proven experience in identifying security issues via code review and dynamic testing (e.g. penetration tests)
- Excellent professional communication skills with the ability to explain complex security topics clearly and concisely
- High level of independence and structured working style in a complex corporate environment
(understanding the task identifying stakeholders preparing solutions that fit the organization) - Good understanding of common security flaws and mitigation strategies (e.g. OWASP Top 10)
- Knowledge of security standards and regulations such as GDPR NIST and OWASP ASVS
- Practical experience with object-oriented and scripting languages such as Java C# JavaScript Python and Bash
- Understanding of network and web protocols (TCP/IP HTTP/13 HTTPS TLS)
- Solid grasp of SaaS security fundamentals (databases web APIs containerization)
- Hands-on experience with security tools such as static analysis tools Burp Suite OWASP ZAP NMAP Wireshark SonarQube Kali or Parrot Linux
- Understanding of modern cryptography concepts including encryption authentication key management and hashing
- Willingness to work with and responsibly use LLM-based code generation and generative AI tools in daily work
Nice to have- Experience in designing or using multi-agent AI systems for software development
- Experience in applying multi-agent AI systems for security analysis or threat modeling
- Relevant certifications such as OSWE CISSP CEH or comparable credentials
Why us
- A diverse working environment where you can contribute your expertise long term
- Targeted professional and personal development opportunities supported by training and mentoring
- Flat hierarchies and an open collaborative company culture
- Flexible trust-based working hours with mobile office options and an attractive compensation package
- Additional benefits such as MultiSport and Luxmed
Contact us
Asseco Solutions
People & Culture
Amalienbadstraße 41c
76201 Karlsruhe
Deutschland
jobs.dach@
About us
Do you want a job that is considerate of your life
Then welcome to Asseco Solutions!
Here we emphasize that your job integrates into your life - not the other way around.
You have a doctors appointment or have to pick up your child from daycare Or you want to work abroad for a few days and combine this with a vacation We trust you to be aware of your responsibilities and to work conscientiously on your return we give you flexibility and a lot of freedom.
But who exactly is behind Asseco Solutions
Here are a few hard facts:
We are celebrating our 30th anniversary this year!
We are the leading ERP provider for the upper mid-market
Our turnover in 2022 was 65.98 million euros
We employ over 500 people at 10 locations in Germany Austria Italy as well as Guatemala
As part of the Asseco Group we combine global vision with local expertise with our ERP system APplus we simplify the daily work of our customers and support them in their growth. The ingredients for success are forward-looking technologies such as AI and automation a comprehensive range of services with industry-specific solutions intuitive user experience and individual expert advice.
Are you looking for appreciation a strong team spirit freedom to work and good development opportunities Then you have found the perfect employer in us.
Apply today and start a job that is considerate of your life!
Required Experience:
IC
Your missionWe are looking for a(Senior) Application Security Engineer to strengthen the security of our software products in a hybrid on-premise and SaaS this role you will contribute through deep technical expertise and hands-on involvement in the analysis design and improvement of application se...
Your mission
We are looking for a(Senior) Application Security Engineer to strengthen the security of our software products in a hybrid on-premise and SaaS this role you will contribute through deep technical expertise and hands-on involvement in the analysis design and improvement of application security across our product landscape.
You will work closely with software development and architecture teams directly engaging with source code systems and technical designs to identify and mitigate security risks. The position emphasizes technical contribution secure engineering practices and continuous improvement of security standards within the organization.
Your responsibilities include performing security reviews and tests advising on secure design decisions and actively supporting security awareness in day-to-day engineering work.
Key Responsibilities
- Identify security vulnerabilities through code reviews dynamic testing and penetration testing
- Analyze and explain security risks in complex software systems and propose practical organization-ready solutions
- Work hands-on with an evolving legacy product in a hybrid on-premise and cloud setup
- Advise development teams on secure coding practices and architectural security aspects
- Support compliance with relevant security standards and regulations
- Use and maintain common security tools for analysis and testing
- Train software developers in secure coding and foster security awareness within engineering teams
- Stay up to date with modern security topics including AI-assisted development and security tooling
Your profile
To succeed in this role you are a self-driven security specialist who enjoys working deeply on technical challenges and taking ownership from problem analysis to solution delivery.
You bring the following skills and experience:
- Solid experience in software development
- Proven experience in identifying security issues via code review and dynamic testing (e.g. penetration tests)
- Excellent professional communication skills with the ability to explain complex security topics clearly and concisely
- High level of independence and structured working style in a complex corporate environment
(understanding the task identifying stakeholders preparing solutions that fit the organization) - Good understanding of common security flaws and mitigation strategies (e.g. OWASP Top 10)
- Knowledge of security standards and regulations such as GDPR NIST and OWASP ASVS
- Practical experience with object-oriented and scripting languages such as Java C# JavaScript Python and Bash
- Understanding of network and web protocols (TCP/IP HTTP/13 HTTPS TLS)
- Solid grasp of SaaS security fundamentals (databases web APIs containerization)
- Hands-on experience with security tools such as static analysis tools Burp Suite OWASP ZAP NMAP Wireshark SonarQube Kali or Parrot Linux
- Understanding of modern cryptography concepts including encryption authentication key management and hashing
- Willingness to work with and responsibly use LLM-based code generation and generative AI tools in daily work
Nice to have- Experience in designing or using multi-agent AI systems for software development
- Experience in applying multi-agent AI systems for security analysis or threat modeling
- Relevant certifications such as OSWE CISSP CEH or comparable credentials
Why us
- A diverse working environment where you can contribute your expertise long term
- Targeted professional and personal development opportunities supported by training and mentoring
- Flat hierarchies and an open collaborative company culture
- Flexible trust-based working hours with mobile office options and an attractive compensation package
- Additional benefits such as MultiSport and Luxmed
Contact us
Asseco Solutions
People & Culture
Amalienbadstraße 41c
76201 Karlsruhe
Deutschland
jobs.dach@
About us
Do you want a job that is considerate of your life
Then welcome to Asseco Solutions!
Here we emphasize that your job integrates into your life - not the other way around.
You have a doctors appointment or have to pick up your child from daycare Or you want to work abroad for a few days and combine this with a vacation We trust you to be aware of your responsibilities and to work conscientiously on your return we give you flexibility and a lot of freedom.
But who exactly is behind Asseco Solutions
Here are a few hard facts:
We are celebrating our 30th anniversary this year!
We are the leading ERP provider for the upper mid-market
Our turnover in 2022 was 65.98 million euros
We employ over 500 people at 10 locations in Germany Austria Italy as well as Guatemala
As part of the Asseco Group we combine global vision with local expertise with our ERP system APplus we simplify the daily work of our customers and support them in their growth. The ingredients for success are forward-looking technologies such as AI and automation a comprehensive range of services with industry-specific solutions intuitive user experience and individual expert advice.
Are you looking for appreciation a strong team spirit freedom to work and good development opportunities Then you have found the perfect employer in us.
Apply today and start a job that is considerate of your life!
Required Experience:
IC
View more
View less