Devoteam
Banking
ApplicationSecurity-Lead
Neural analysis suggests this role is
optimal for mid candidates.
“Application Security - Lead at Devoteam. Skills: Application Security, DevSecOps, Leadership, Vulnerability Management. Contribute to strategy development. Develop roadmap”
What You'll Achieve.
Reduce cyber risk; Monitor KPIs; Optimize KPIs; Monitor KRIs; Optimize KRIs; Monitor OKRs; Optimize OKRs
Industry & Context.
Technical problem-solving; Analytical mindset; Complex security challenge resolution; Vulnerability analysis; False-positive identification
Portuguese proficiency mandatory
What They're Looking For.
Must Have
Master's degree minimum, 3+ years Cybersecurity experience, 3+ years Application Security experience, 3+ years DevSecOps experience, Proven leadership experience, Portuguese proficiency mandatory, English proficiency mandatory, Advanced SAST proficiency, Advanced SCA proficiency, Advanced Container Image Scanning proficiency, Advanced DAST proficiency, Experience with IaC Scanning, Experience with Secrets Detection tools, Quality assurance tool integration, Security tool integration into CI/CD, Expert-level Python knowledge, Expert-level C++ knowledge, Expert-level C# knowledge, Deep understanding OWASP Top 10, Advanced vulnerability analysis, Advanced remediation strategies, False-positive identification techniques, False-positive optimization techniques, End-of-Support lifecycle management, Comprehensive cloud security knowledge, Leadership capabilities, Independent project strategic ability, Team strategic ability, Ability to influence, Ability to drive adoption, Advanced pedagogical skills, Ability to translate technical concepts
Nice to Have
Engineering school degree preferred, Previous experience in international banking ecosystem, French proficiency nice to have, Familiarity with Hadoop, Familiarity with Angular
What You'll Do.
Contribute to strategy development
Guide junior engineers
Support junior engineers
Mentor junior engineers
Drive framework improvement
Provide advisory services
Lead vulnerability analysis
Lead remediation efforts
Lead community animation
Conduct advanced workshops
Conduct training sessions
Conduct weekly open sessions
Develop technical documentation
Develop best practices
Monitor security metrics
Optimize security metrics
Conduct technological watch
Conduct threat analysis
Propose security solutions
Drive security solution POCs
How You'll Work.
Team & Collaboration
Development squads; Development teams
Communication Scope
Technical documentation; Advanced workshops; Training sessions; Translate technical concepts
Process & Methodology
Roadmap development, Framework optimization
Full Job Description
Devoteam Cyber Trust is the Cybersecurity specialist arm of the Devoteam Group. With our 800+ experts located across EMEA, we aim to establish cybersecurity as an enabler of business success rather than a gatekeeper. We leverage an end-to-end approach to Cyber Resilience, Applied Security, and Managed Security services to secure the tech journey of large and medium-sized companies from all sectors and industries. Since 2009, previously known as INTEGRITY, our team based in Portugal is specialised in providing cutting-edge Managed Security Services that combine its expertise and proprietary technology to consistently and effectively reduce the cyber risk of our clients. The comprehensive service range includes Persistent Intrusion Testing, ISO 27001, PCI-DSS, GRC Consulting and Solutions, and Third-Party Risk Management. ISO 27001 (Information Security) and ISO 9001 (Quality) certified, PCI-QSA, and member of CREST and CIS - Centre for Internet Security, we provide services to a considerable number of clients, operating in more than 20 countries. The First Line of Defense (LoD1) IT Risk Management (ITRM) team plays a strategic role within our organization by monitoring topics related to IT Risks and by establishing operational standards in accordance with organizational policies, ensuring their effective implementation. We are seeking an experienced Application Security Engineer to lead application security initiatives, mentor junior team members, and drive strategic security improvements across our development ecosystem. This role combines hands-on technical expertise with leadership responsibilities in our mission to implement comprehensive application security practices. 🎯 Main Responsibilities: Strategic Leadership * Roadmap Development: Contribute to the application security strategy and roadmap development. * Mentorship: Guide, support, and mentor junior AppSec engineers. * Framework Optimization: Drive continuous improvement of the IT S-SDLC (Secure Software
Applying for this Application Security - Lead role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on SmartRecruiters
- SmartRecruiters often includes a video screening step — check camera and mic permissions.
- Link your GitHub or portfolio directly in the profile section for technical roles.
- Applications may be reviewed by AI scoring before reaching a recruiter — use keywords from the job description.
ANONYMOUS · UNFILTERED
What do employees actually say about Devoteam?
Real rants from real employees. Read before you apply.