Talent.com
Esta oferta de trabajo no está disponible en tu país.
Application Security Engineer

Application Security Engineer

Nerdy, , Spain, España
Hace 29 días
Descripción del trabajo

Overview : We are seeking an experienced Application Security Engineer to serve as a trusted partner to our software development teams. This role focuses on making our product secure by design-embedding security into how software is architected, written, deployed, and maintained. Unlike infrastructure security roles, this position centers on application-layer and code-level security, working closely with developers to enable fast, confident delivery by providing meaningful, actionable security tooling and feedback. This includes leveraging modern AI-assisted techniques to accelerate vulnerability analysis, exploit chaining, and demonstration of actual risk. You will ensure engineering teams move faster-not slower-while minimizing noise. This role is part of the IT & Security team and prioritizes embedding guardrails into developer workflows rather than enforcement gates.

About Nerdy :

At Nerdy (NYSE : NRDY) - the company behind Varsity Tutors - we're redrawing the blueprint of learning. Our Live + AI platform fuses real-time human expertise with proprietary generative-AI systems, setting a new bar for measurable academic impact at global scale. We recruit the kind of technologists and operators you'd bet on as solo founders - people who turn ambiguous problems into shipping code, iterate faster than markets move, and compound their advantage with every data point. In an era where great employees can deliver 10-times the leverage of the merely good, we back those who play to win.

Fortune favors the bold. Join us.

How we compete :

  • AI-Native at every level From the CEO to day-one hires, everyone builds and ships with generative AI. If you're not wielding AI, you're not done.
  • Entrepreneurial velocity Move at founder speed, prototype in hours, and measure in real user outcomes. Slow teams die.
  • Free-market rigor Ideas rise or fall on merit and results - no committees, no politics, no cap on upside.
  • Full-stack ownership You design, build, and run what you ship; accountability is a feature, not a bug.
  • Reward for contribution Pay rises with impact, not years. Outstanding results earn outsized rewards. We evaluate both what you achieve and how you achieve it : living our leadership principles and using AI effectively are formally measured and rewarded.
  • Relentless exploration Push the frontier of generative AI in live learning and - because only the paranoid survive - questioning every legacy assumption along the way.
  • Is Apolitical You stay focused on mission-aligned outcomes, not distractions or unrelated causes.

If you're a technically minded builder who thrives on open competition, personal responsibility, and the chance to redefine how the world learns - while continually stretching the limits of what generative AI can do - come do the most ambitious and rewarding work of your career here. Learn more at nerdy.com. Nerdy's shareholder letters below explain our latest products and strategy :

  • Q2-2025 Shareholder Letter
  • Q1-2025 Shareholder Letter
  • Q4-2024 Shareholder Letter
  • Qualifications : Required :

  • Experience as an Application Security Engineer, Security Consultant, or Security-focused Software Engineer.
  • Strong understanding of secure coding practices and common vulnerability patterns.
  • Ability to apply common web application attack techniques and create proof-of-concept exploits to validate whether vulnerabilities are exploitable in our environment.
  • Proven ability to analyze exploit chains and demonstrate actual risk, leveraging AI to accelerate discovery and validation.
  • Hands-on experience integrating security tooling into CI / CD pipelines.
  • Familiarity with Ruby, Go, JavaScript / React, and related frameworks.
  • Deep familiarity with OWASP guidance, including the OWASP Top 10, Application Security Verification Standard (ASVS), and Secure Coding Guidelines.
  • Partner with DevOps to embed application security into CI / CD pipeline design and practices.
  • Ability to assess and communicate application risk in architectural and business context.
  • Comfortable demonstrating real-world exploits to technical and non-technical stakeholders.
  • Excellent written and verbal communication skills in an async-first, remote environment.
  • Preferred :

  • Experience leveraging and adapting open-source tools and frameworks for application security testing and validation.
  • Experience with API security testing and continuous monitoring, leveraging AI for fuzzing, intelligent input generation, and automated discovery.
  • Experience building or maintaining secure development training programs.
  • Security certifications (OSWE, OSCP, GIAC) are a plus but not required.
  • Responsibilities :

  • Enable engineering teams to move quickly while embedding security into development workflows-security and speed go hand-in-hand.
  • Partner with engineering on secure use of AI services, evaluating controls such as AI gateways, prompt inspection, and policy enforcement.
  • Identify, prioritize, and implement security tooling in developer environments and CI / CD pipelines, with AI-assisted triage to reduce noise and highlight exploitable risks.
  • Collaborate with developers to identify vulnerabilities in code, APIs, and dependencies; improve secure coding awareness; and participate in design reviews and threat modeling.
  • Demonstrate practical exploit techniques to raise security awareness and drive remediation, including chaining multiple weaknesses across services to illustrate end-to-end risk.
  • Analyze vulnerabilities across code, dependencies, APIs, and logic, with AI-assisted techniques to identify and prioritize exploit chains.
  • Build or adapt automation scripts and tools for continuous security validation, , using AI copilots to accelerate script generation and validation.
  • Provide coaching, documentation, and embedded training to help developers understand and apply security guidance within their workflows.
  • Continuously evaluate emerging AI and application security threats and detection techniques.
  • Lead incident response activities as part of the incident commander rotation.
  • Drive continuous improvement of incident response runbooks and playbooks.
  • Unlock Your Full Potential at Nerdy :

    Join our worldwide team-work from home, get great pay, and help shape the future of learning. Here's what you get :

  • Competitive USD Compensation : Enjoy a market-leading rate paid in U.S. dollars.
  • 100% Remote (Home Country Only) : Work from anywhere in your home country-no relocation required, no borders crossed.
  • Flexible Time Off : Our flexible PTO lets you recharge on your own terms and when you need it the most.
  • Local Holiday Pay : We honor your nation's official holidays with paid time off-celebrate what matters to you.
  • Continuous Learning : Get a free, all-inclusive learning membership for you and your household-including 1-on-1 tutoring hours, unlimited on-demand classes, and access to our full suite of learning products and services.
  • Supercharge with AI : Gain exclusive access to cutting-edge AI tools that boost your productivity, making you feel almost super-human (cape not included).
  • Feedback-Rich, Collaborative Culture : Tap into regular training, peer reviews, and a team that treats every team member as a vital collaborator and owner in our success.
  • Make a Global Impact : Your expertise fuels an innovative platform used by learners around the world-be part of something transformative.
  • The Bottom Line :

    If you're driven by impact, energized by ownership, and excited to help shape what's next, you'll thrive here. We move fast, think big, and reward those who deliver. This isn't a traditional corporate environment - it's a place to do the most meaningful work of your career. #J-18808-Ljbffr

    Crear una alerta de empleo para esta búsqueda

    Security Engineer • , , Spain, España

    Ofertas relacionadas
    • Oferta promocionada
    Application Security Engineer

    Application Security Engineer

    BrainRocket, , Spain, España
    BrainRocket is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing.Young, ambitious, and unstoppable, we've already taken Cyprus, Malta, Portugal, ...Mostrar másÚltima actualización: hace 24 días
    • Oferta promocionada
    Cloud Security Engineer (m / f / d)

    Cloud Security Engineer (m / f / d)

    SiemensTres Cantos, Comunidad de Madrid, España
    We are seeking a highly motivated and skilled Cloud Security Engineer to join our Cloud Protection Cybersecurity team, specifically working with our central service based on Wiz, a leading Cloud-Na...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Application Security Testing Engineer, Madrid

    Application Security Testing Engineer, Madrid

    AccentureMadrid, España
    Application Security Testing Engineer Accenture, reconocida como Great Place To Work , una compañía líder mundial en servicios profesionales que ayuda a las principales empresas, administraciones p...Mostrar másÚltima actualización: hace 10 días
    • Oferta promocionada
    Senior Application Security Engineer

    Senior Application Security Engineer

    Backbase Inc.Madrid, Comunidad de Madrid, España
    Keep millions of users and their banking data safe and secure.No day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in ha...Mostrar másÚltima actualización: hace 2 días
    • Oferta promocionada
    Application Security Analyst

    Application Security Analyst

    Electronic Arts Inc., , Spain, España
    Electronic Arts creates next-level entertainment experiences that inspire players and fans around the world.Here, everyone is part of the story. A place where creativity thrives, new perspectives ar...Mostrar másÚltima actualización: hace 12 días
    • Oferta promocionada
    Security Engineer

    Security Engineer

    CamfilGalapagar, Comunidad de Madrid, España
    This is a global role based in Europe, with a hybrid setup that combines remote work with regular on-site presence.Preferred locations are Spain, Germany, Sweden, and Slovakia, but Finland, France,...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Security infrastructure engineer

    Security infrastructure engineer

    GMVTres Cantos, Comunidad de Madrid, España
    GMV Tres Cantos, Community of Madrid, Spain.Join or sign in to find your next job.Security infrastructure engineer.GMV Tres Cantos, Community of Madrid, Spain. Be among the first 25 applicants.Secur...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Senior Application Security Engineer

    Senior Application Security Engineer

    Backbase, , Spain, España
    Keep millions of users and their banking data safe and secure.No day at Backbase is the same, and even more so for our security engineers. We all know that security and banking need to go hand in ha...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Application Security

    Application Security

    Decskill EspañaMadrid, Comunidad de Madrid, España
    Decskill was founded in 2014 as an IT Consulting Company and their main mission is to delivery value through the knowledge. We enable companies to meet the chalenges of digital world by providing ou...Mostrar másÚltima actualización: hace 16 días
    • Oferta promocionada
    Security Engineer

    Security Engineer

    Thales S21secToledo, Castille-La Mancha, España
    Thales S21sec selecciona una persona con perfil técnico con al menos 5 años de experiencia en diseño, gestión y soporte de lnfraestructuras de ciberseguridad que se incorpore al área de Integración...Mostrar másÚltima actualización: hace 28 días
    • Oferta promocionada
    • Nueva oferta
    Security Engineer

    Security Engineer

    Bending SpoonsMadrid, Madrid, España
    Overview 4 days ago Be among the first 25 applicants.At Bending Spoons, we’re striving to build one of the all-time great companies. A company that serves a huge number of customers.A company where...Mostrar másÚltima actualización: hace 7 horas
    • Oferta promocionada
    Application Security

    Application Security

    OpswatGalapagar, Comunidad de Madrid, España
    MetaDefender Email Gateway Security (EGS) now supports High Availability with an external PostgreSQL database.Protecting the World’s Critical Infrastructure. OPSWAT , a global leader in IT, OT , and...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Security Engineer

    Security Engineer

    DeliverectMadrid, Comunidad de Madrid, España
    Join to apply for the Security Engineer role at Deliverect.At Deliverect, our API-first platform is revolutionizing commerce by providing a connected suite of on and off-premise solutions.We empowe...Mostrar másÚltima actualización: hace 22 días
    • Oferta promocionada
    Senior Security Engineer

    Senior Security Engineer

    Allianz DirectGalapagar, Comunidad de Madrid, España
    The world around us is changing rapidly and so is the insurance industry.Now’s the right time to make a bold move and shape the future of insurance – this is Allianz Direct! As a pan-European onlin...Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Security Engineer

    Security Engineer

    LanguageWire, , Spain, España
    Join to apply for the Security Engineer role at LanguageWire.Are you ambitious about product development, new technology and cybersecurity. Do you get your kick from securing systems at scale so tha...Mostrar másÚltima actualización: hace 22 días
    • Oferta promocionada
    Security Engineer

    Security Engineer

    NTT DATA Europe & LatamMadrid, Madrid, SPAIN
    NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us.If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now....Mostrar másÚltima actualización: hace más de 30 días
    • Oferta promocionada
    Application Security Engineer (m / f / d)

    Application Security Engineer (m / f / d)

    Liebherr, , Spain, España
    The Application Security Engineer is responsible for integrating security into the software development lifecycle (SDLC), conducting security testing, and ensuring applications are resilient to cyb...Mostrar másÚltima actualización: hace 12 días
    • Oferta promocionada
    • Nueva oferta
    Application Security Architect (Software)

    Application Security Architect (Software)

    Bentley SystemsMadrid, Madrid, España
    We are seeking a visionary Application Security Architect to elevate our software security strategy across a global portfolio of cutting-edge products. As a key member of our Product Security team, ...Mostrar másÚltima actualización: hace 1 hora
    • Oferta promocionada
    Application Security Engineer

    Application Security Engineer

    PagoNxt (a Santander company)Boadilla del Monte, Comunidad de Madrid, España
    PagoNxt is looking for a Application Security Engineer, based in our Boadilla del Monte (Madrid) office.We embrace a strong risk culture and all of our professionals at all levels are expected to t...Mostrar másÚltima actualización: hace 22 días
    • Oferta promocionada
    Application Security Analyst

    Application Security Analyst

    ExceliaGalapagar, Comunidad de Madrid, España
    Consultoría, Tecnología y Servicios profesionales, con más de 25 años de trayectoria marcada por la excelencia.Operamos en más de 50 países de Europa, América Latina y Estados Unidos, desde nuestra...Mostrar másÚltima actualización: hace 20 días