Application Security Engineer Iii, São Paulo (estado)

Brazil, São Paulo (estado), São Paulo (estado)
Última atualização 2025-06-15
Expira 2025-07-15
ID #2844335738
Free
Application Security Engineer Iii, São Paulo (estado)
Brazil, São Paulo (estado), São Paulo (estado),
Modificado May 25, 2025

Descrição

Overview
When you think of In Comm Payments, think of Innovative Payments Technology. We were founded over 30 years ago and continue to be a pioneer in the payment (Fin Tech) industry. Since our inception, we have grown to be a team of over 3,000 employees in 35 countries around the world. We own over 400 global technical patents and a network that includes over 525,000 points of retail distribution that points to our industry expertise.
We are creating nearly 200
Fully Remote
jobs in Brazil for various financial technology (Fintech) engineering, database, development, and testing teams.
In Comm Payments is highly focused on our people and their growth, and we work hard to make a career at In Comm Payments meaningful and rewarding. We value innovation, quality, passion, integrity and responsibility in all that we do, and we are looking for great people to join our team as we move forward towards a very bright future. We anticipate developing future leaders for our teams in Brazil!
Benefits include health and dental insurance, meal and restaurant vouchers, fixed monthly stipend for internet and mobile expenses, In Comm hardware/software, and annual bonuses! All positions are CLT.
You can learn more about In Comm Payments by visiting our Website or connecting with us on Linked In, You Tube, Twitter, Facebook, or Instagram.
About This Opportunity
Our Global Enterprise Security Team is growing in Brazil and we are seeking a dedicated and experienced Senior Application Security Engineer to join our growing team! You will work with a dynamic group of professionals dispersed across North and South America supporting our global business that spans 5 continents. You will play a crucial part in safeguarding our applications from potential threats and vulnerabilities. With a few years of hands-on experience, you will conduct thorough security assessments, implement robust security measures, and ensure compliance with industry standards. Your strong analytical skills and deep understanding of modern security protocols and tools will be essential in identifying and mitigating risks early in the development lifecycle. You will report to the Enterprise Application Security group which works closely with software development and application ownership teams across various business units to help develop more secure applications and products. Join us as we secure applications and products across the entire In Comm Payments enterprise!
CLT and fully remote position. Must reside in Brazil. Benefits include:
Health and dental insurance
Meal and restaurant vouchers
Fixed monthly stipend for internet and mobile expenses
Company-issued device
Responsibilities
Integrate SAST tooling into CI/CD pipelines, ensuring compatibility and efficient scanning within development workflows.
Provide tailored SAST integration support for development teams at varying maturity levels with diverse toolsets and security requirements.
Analyze application logs for anomalous patterns, communicate findings to leadership, and persuade them to take appropriate action.
Participate in on-call rotation in support of WAF incidents.
Validate security vulnerabilities identified by automated tools and fine-tune configurations to minimize false positives and reduce noise.
Develop threat models with development teams to help expose risks in their deliverables.
Participate in application design and architectural reviews.
Facilitate activities such as blue/red team events and bug bounty programs.
Lead prioritization discussions to gain traction on important security issues
Act as a liaison with 3rd parties performing vulnerability scans and penetration testing to validate findings and inform priorities and strategies for remediation.
Draft, evaluate, and monitor compliance with application and development security standards.
Ensure development teams are validating for OWASP Top 10 and performing industry leading application security practices.
Qualifications
5+ years of application security experience.
Strong background with CI/CD processes and associated tooling, such as Jenkins, Git Hub Actions, Azure Pipelines, or similar.
Strong scripting experience - Power Shell, Python, etc.
Extensive experience with SAST & DAST application scanning tools and knowledge of OWASP methodologies
Application security experience with high level programming languages (e.g., Java, C, C++, C#, VB,. NET, ASP. NET, ASP, PHP, J2 EE, JSP)
Experience with Container technologies - Docker, Docker Swarm, Kubernetes
Experience with Cloud Service Providers (Azure and/or AWS)
Knowledge of Web Application Firewalls (WAF)
Experience with performing web, API, and mobile manual penetration testing; preparing reports to document findings; and presenting the report to development teams.
Familiarity with regulatory controls and industry best practices such as HIPAA, PCI, Hi Trust, NIST etc.
Communication skills to create documentation, videos and conduct training classes
Ability to manage multiple tasks simultaneously and meet established deadlines.
Ability to collaborate with IT teams on security-related tasks and projects.
Ability to work productively while remote and communicate effectively in a virtual team environment.
Ability to stay current with new technology.
Education & Certifications
Education: Associate Degree, or, Technologo (Technologist) Degree, or higher is required.
A CISSP certification is preferred, but not required. Career development plan to include certifications upon hire.
In Comm Payments provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity or national origin, citizenship, veteran’s status, age, disability status, genetics or any other category protected by federal, state, or local law.
This position is eligible for the Employee Referral Bonus Program - Tier 4

Detalhes do trabalho

Tipo de emprego: Tempo total
Tipo de contrato: Permanente
Tipo de salário: Por mês
Ocupação: Application security engineer iii

⇐ Trabalho anterior

Próximo trabalho ⇒     

Propaganda


 

enviar curriculo

    Informação do empregador

    Pesquisa rápida:

    Localização

    Digite cidade ou região

    Palavra-chave


    Propaganda