13 ago
|
AgileEngine
|
San Carlos de Bariloche
13 ago
AgileEngine
San Carlos de Bariloche
Job Description
AgileEngine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people-first culture has earned us multiple Best Place to Work awards.
WHY JOIN US
If you're looking for a place to grow, make an impact, and work with people who care, we'd love to meet you!
ABOUT THE ROLE
We are looking for a Senior Application Security Engineer to architect and build automated security layers within the SDLC, engineering AI-enabled secure code scanning, hardened baseline automation, and CI/CD security tooling integration within a large-scale financial services program. You will work primarily in Python to build automated security runbooks, deploy and tune scanning tools, and provide code-level remediation guidance to development teams — operating with full autonomy and no daily supervision. AppSec and DevSecOps experience is strongly preferred; SAST/DAST/SCA and Java expertise are a plus.
WHAT YOU WILL DO
- Engineer and deploy AI-enabled secure code scanning capabilities and "Golden Images" to drive secure-from-the-start adoption;
- Automate the development of secure coding patterns and integrate them with traditional and Agentic SDLC workflows;
- Architect the integration of continuous security scanning tools (SAST, DAST, SCA) into enterprise CI/CD pipelines, tuning them to eliminate noise;
- Act as a senior technical SME, reading and reviewing complex application code (Java/Python)
to provide software engineers with highly specific, code-level remediation guidance.
MUST HAVES
- 5+ years of software engineering experience, ideally with a focus on Application Security and DevSecOps;
- Strong coding and architectural proficiency in Python for security automation and scripting;
- Fully autonomous execution capability, requiring no daily supervision to map out and build automated security runbooks;
- Upper-intermediate English level.
NICE TO HAVES
- Deep, hands-on expertise deploying and tuning modern application security testing tools, including SAST, DAST, and SCA, and integrating them into complex CI/CD orchestration ecosystems;
- Experience integrating LLMs, AI agents, or automated coding assistants to streamline vulnerability triaging or secure code generation;
- Advanced application threat modeling experience;
- Ability to confidently read, review, and secure enterprise source Java code.
PERKS AND BENEFITS
- Growth without limits: build your skills through mentorship, internal TechTalks, challenging projects, and a dedicated annual learning budget
- Competitive compensation:
get recognition that reflects your skills and impact, with regular performance and compensation reviews
- Flexibility: work 100% remotely with versátil hours that support focus, autonomy, and a healthy work rhythm
- Meaningful, modern projects: build impactful products using modern technologies alongside global teams and leading brands
- Collaborative culture: join a supportive environment with zero micromanagement where ideas are welcomed and contributions are recognized
- Well-being & support: access local well-being programs and people-focused support tailored to your location
Meet Our Recruitment Process
Application → Coding Challenge → Video Interview → Technical Interview or Hiring Manager Interview
Each step helps us understand your skills and overall fit.
If it’s a match, you’ll receive an offer.
Requirements
5+ years of experience combining software engineering experience, security implementation and/or architecture experience. Strong coding and architectural proficiency in Python (for security automation and scripting). Hands-on experience with Wiz, Prisma Cloud, or similar tools for cloud security posture management and threat detection. Implementation experience with deploy-time checks against Infrastructure as Code (IaC) / Terraform. Implementation experience with runtime checks through Cloud Security Posture Management (CSPM). Fully autonomous execution capability, requiring no daily supervision to map out and build automated security runbooks.
📌 Senior/Lead AppSec Engineer (San Carlos de Bariloche)
🏢 AgileEngine
📍 San Carlos de Bariloche