Hiring.Camp

Security Engineer

WIZELINE

Location
Barcelona · Spain
Workplace
Hybrid
Type
Full-time
Department
Security

Description

We are:

Wizeline, a global AI-native technology solutions provider, develops cutting-edge, AI-powered digital products and platforms. We partner with clients to leverage data and AI, accelerating market entry and driving business transformation. As a global community of innovators, we foster a culture of growth, collaboration, and impact.

With the right people and the right ideas, there’s no limit to what we can achieve.

Are you a fit?
Sounds awesome, right? Now, let’s make sure you’re a good fit for the role:

Key Responsibilities

  • AppSec & Offensive Testing: Perform dynamic and static application security testing (SAST/DAST/SCA), red team exercises, penetration testing, and manual code reviews on live applications and APIs to surface business logic flaws and complex vulnerabilities.
  • Hands-on Vulnerability Remediation: Prioritize risks using CVSS and business context, then directly execute code-level patches and infrastructure configuration fixes across .NET, Java, and React stacks in live production and legacy environments.
  • AppSec Tooling Management: Configure, manage, and optimize enterprise security scanners—including Wiz, Snyk, Qualys, Burp Suite Enterprise/Pro, and OWASP ZAP—to minimize noise and maximize actionable findings.
  • DevSecOps & Pipeline Automation: Embed automated SAST/SCA scanning, dynamic secret management, and compliance gates directly into GitHub Actions CI/CD pipelines to enforce "shift-left" security.
  • Governance & Threat Modeling: Conduct architecture security reviews and threat modeling based on OWASP SAMM principles to align hybrid environments with compliance standards (e.g., PCI-DSS, HIPAA, GDPR).
  • Cloud & Infrastructure Hardening: Secure and harden hybrid architecture spanning AWS cloud environments, containerized workloads, and on-premise infrastructure.

Must-Have Skills

  • Offensive & Defensive AppSec: Proven expertise in penetration testing, red teaming, manual code reviews, and dynamic analysis using tools like Burp Suite Professional and OWASP ZAP.
  • AppSec Tooling Expertise: Hands-on experience configuring and operating Wiz, Snyk, Qualys, SonarQube, and automated DAST platforms.

  • Code-Level Remediation: Ability to read, refactor, and patch vulnerable code across .NET, Java, and React stacks to remediate OWASP Top 10 vulnerabilities.
  • DevSecOps & Secrets Management: Experience embedding security into GitHub Actions pipelines and implementing dynamic secrets management (AWS KMS, HashiCorp Vault, IAM).
  • Security Frameworks: Strong command of OWASP Top 10, OWASP SAMM, threat modeling methodologies, and Software Bill of Materials (SBOM) tracking.
  • AWS & Hybrid Security: Demonstrated track record securing AWS cloud environments, IAM policies, network controls, and hybrid/on-prem infrastructure.

Nice-to-Have Skills

  • Industry Certifications: Relevant security certifications such as OSCP, OSWE, CISSP, GWAPT, or AWS Certified Security – Specialty.

  • Healthcare & Payment Compliance: Deep familiarity navigating regulatory frameworks like HIPAA, HITRUST, and PCI-DSS within healthcare or fin-tech environments.
  • Legacy Systems Refactoring: Practical experience untangling and securing legacy monolithic architectures without causing operational downtime.
  • Advanced Container Security: Experience securing containerized ecosystems (Docker, Kubernetes/EKS) and runtime security monitoring.

Nice-to-have:

  • AI Tooling Proficiency: Leverage one or more AI tools to optimize and augment day-to-day work, including drafting, analysis, research, or process automation. Provide recommendations on effective AI use and identify opportunities to streamline workflows. 
  • Familiarity with cloud-based infrastructure and services (e.g., AWS and GCP), Docker, and the Git version control system
  • Familiarity with consuming and integrating APIs in a reliable and secure manner.

What we offer:

  • A High-Impact Environment
  • Commitment to Professional Development
  • Flexible and Collaborative Culture
  • Global Opportunities
  • Vibrant Community
  • Total Rewards

*Specific benefits are determined by the employment type and location.

Find out more about our culture here.

Skills

JavaReactAWSGCPDockerKubernetesCI/CDGitGitHubPenetration TestingComplianceHIPAAGDPRAWS CertifiedCISSP

Similar Jobs

30

Security Engineer

Alertmedia · Remote, United States or Austin, TX HQ +1 · Remote

Today

Security Engineer

Vulcan Technologies · Austin, Texas, US · Remote, Hybrid, Onsite

Yesterday

Security Engineer

Upwind · Remote

Yesterday

Security Engineer

Network Coverage · Remote · Remote

Yesterday

Security Engineer

Meridianlink · US Remote · Remote

2 days ago

Security Engineer

Cisco · USA-MAYNARD, United States of America · Hybrid

2 days ago

Security Engineer

SambaSafety · RM - Samba Holdings Remote, US · Remote

2 days ago

Security Engineer

Accurx · London (Shoreditch) · Hybrid

3 days ago

Security Engineer

Lemfi · London · Hybrid

3 days ago

Security Engineer

Shipt · AL Birmingham: Shipt Tower, United States of America +1 · Hybrid

3 days ago

security Engineer

Ensigninfosecurity · Malaysia (Kuala Lumpur) +1

3 days ago

Security Engineer

HealthMark Group · Remote, US · Remote

5 days ago

Security Engineer

Jci · BE Jakarta, Indonesia

6 days ago

Security Engineer

Novig · New York, New York, US

1 week ago

Security Engineer

Pentair · Golden Valley MN, United States of America

1 week ago

Security Engineer

Virtuozzo

1 week ago

Security Engineer

Virtuozzo

1 week ago

Security Engineer

Mcneeswallacenurickllc · Remote - PA +1 · Remote

1 week ago

Security Engineer

Inadev · Reston, VA

1 week ago

Security Engineer

The Onset Jobs Marketplace · Hybrid

1 week ago

Security Engineer

FUSE3 · Fair Oaks, California

1 week ago

Security Engineer

GoodData · Prague +1

1 week ago

Security Engineer

Barclays · Pune, Gera Commerzone SEZ, India

1 week ago

Security Engineer

Kami

1 week ago

Security Engineer

Oddball · Remote · Remote

1 week ago

Security Engineer

Zoom · Remote (US), United States of America · Remote

1 week ago

Security Engineer

Nttlimited · Prague, Czech Republic, Czechia · Hybrid

1 week ago

Security Engineer

Cisco · IND-CHENNAI, India · Remote

1 week ago

Security Engineer

Cisco · USA-FULTON, United States of America · Hybrid

1 week ago

Security Engineer

LiteLLM · San Francisco, US

2 weeks ago
Security Engineer at WIZELINE | Hiring.Camp