logo[мetahunt]
> DOU
senior

Security Engineer

AgileEngine
format:Remotecompany:Outsource
python
javasastdastscaci/cd
englishB2
experience5+ years
domainFintech
locationSofia, Bulgaria · Warsaw, Poland +6
> full description

Hi there! AgileEngine is an Inc. 5000 company that creates award-winning software for Fortune 500 brands and trailblazing startups across 17+ industries. We rank among the leaders in areas like application development and AI/ML, and our people-first culture has earned us multiple Best Place to Work awards.

Why join us
If you’re looking for a place to grow, make an impact, and work with people who care, we’d love to meet you! :)

About the role
We are looking for a Senior Application Security Engineer to architect and build automated security layers within the SDLC, engineering AI-enabled secure code scanning, hardened baseline automation, and CI/CD security tooling integration within a large-scale financial services program. You will work primarily in Python to build automated security runbooks, deploy and tune scanning tools, and provide code-level remediation guidance to development teams — operating with full autonomy and no daily supervision. AppSec and DevSecOps experience is strongly preferred; SAST/DAST/SCA and Java expertise are a plus.

What you will do
● Engineer and deploy AI-enabled secure code scanning capabilities and “Golden Images” to drive secure-from-the-start adoption;
● Automate the development of secure coding patterns and integrate them with traditional and Agentic SDLC workflows;
● Architect the integration of continuous security scanning tools (SAST, DAST, SCA) into enterprise CI/CD pipelines, tuning them to eliminate noise;
● Act as a senior technical SME, reading and reviewing complex application code (Java/Python) to provide software engineers with highly specific, code-level remediation guidance.

Must haves
5+ years of software engineering experience, ideally with a focus on Application Security and DevSecOps;
● Strong coding and architectural proficiency in Python for security automation and scripting;
● Fully autonomous execution capability, requiring no daily supervision to map out and build automated security runbooks;
Upper-intermediate English level.

Nice to haves
Deep, hands-on expertise deploying and tuning modern application security testing tools, including SAST, DAST, and SCA, and integrating them into complex CI/CD orchestration ecosystems;
● Experience integrating LLMs, AI agents, or automated coding assistants to streamline vulnerability triaging or secure code generation;
● Advanced application threat modeling experience;
● Ability to confidently read, review, and secure enterprise source Java code.

Perks and benefits
Professional growth: Accelerate your professional journey with mentorship, TechTalks, and personalized growth roadmaps
Competitive compensation: We match your ever-growing skills, talent, and contributions with competitive USD-based compensation and budgets for education, fitness, and team activities
A selection of exciting projects: Join projects with modern solutions development and top-tier clients that include Fortune 500 enterprises and leading product brands
Flextime: Tailor your schedule for an optimal work-life balance, by having the options of working from home and going to the office — whatever makes you the happiest and most productive.


Meet Our Recruitment Process
Asynchronous stage — An automated, self-paced track that helps us move faster and give you quicker feedback:
● Short online form to confirm basic requirements
● 30–60 minute skills assessment
● 5-minute introduction video
Synchronous stage — Live interviews
● Technical interview with our engineering team (scheduled at your convenience)
● Final interview with your future teammates
If it’s a match—you’ll get an offer!

Відгукнутись на вакансію