As the Application Cybersecurity Associate Engineer, you ensure secure onboarding and secure operation of software and technology solutions (third‑party and in‑house) across application, infrastructure, network, and OT‑related use cases. You conduct risk‑based security assessments, enforce defined security requirements, and provide hands‑on internal security consulting to project teams. You translate requirements into actionable implementation guidance, validate evidence, drive remediation to closure, and support the security exception process when requirements cannot be met. Cybersecurity Consulting - Provide pre‑assessment consulting for software onboarding and changes (help teams choose correct request type and required inputs) - Give implementation guidance on security topics (identity/authN/authZ, encryption, logging, secure integrations,etc.) and define concrete next steps for teams - Coordinate with project teams and stakeholders to ensure required information/evidence is delivered and actions are completed within agreed timelines. Cybersecurity Assessments - Conduct risk‑based security assessments for software and technology solutions across application, infrastructure, network, and OT-related use cases. - Review and validate evidence, document findings and decisions, define remediation actions, and track completion until closure. Continuous Improvement of Cybersecurity - Improve assessment quality and efficiency by refining templates, standard question sets, and control mappings - Track recurring gaps and propose improvements to the assessment approach Audit Support - Support internal and external audits through the provision of expert know-how and by providing security assessment evidence Business & Cross-Functional Collaboration - Act as an internal consulting partner for project teams: run clarification calls/workshops, translate requirements into practical actions, and align stakeholders on feasible solutions - Communicate risk and tradeoffs clearly; when requirements cannot be met, support teams in defining compensating measures and preparing exception submissions. ▪ Bachelor’s degree (Master's preferred) in computer science, Information Security or a related field or equivalent practical experience; ▪ CISSP, CISM or other security engineering certifications are a plus; ▪ 3+ years of experience in application security, cybersecurity engineering, or cybersecurity assessments related role; ▪ Experience applying and enforcing security requirements in projects (translating requirements into implementation steps and validating evidence) across application, infrastructure, network, and OT-related use cases; ▪ Experience defining and operating security assessment and exception workflows; ▪ Familiarity with cybersecurity frameworks such as ISO 27001 and NIST CSF 2.0; ▪ Experience communicating security requirements, remediation actions, and risk tradeoffs to technical and non‑technical stakeholders in a consulting manner; ▪ Strong problem-solving skills; ▪ Fluent in English; ▪ High exposure to international work context in previous roles;
Senior Cybersecurity Engineer
Wire It
Cybersecurity Engineer
Growin
Senior Fullstack Engineer
We Are META
Information Security Solution Architect - Cloud Security (m/f/d)
Allianz
Information Security Solution Architect - Network Security (m/f/d)
Allianz
AI Engineer
Global