EN

Application Security Engineer

Hiring from
Greece
Work type
Hybrid
Posted
Is this job info correct?

530,570 remote jobs, straight from company career pages

100% free · New jobs every hour

Show job description
ENTERSOFTONE - Redefining Business Software in an AI-powered Future

ENTERSOFTONE supports 90,000+ businesses with 1,500+ employees across 10 cities in 4 countries. We deliver Cloud, Web, and AI-driven solutions (ERP, CRM, HCM, WMS, e-Invoicing) to help organizations work smarter, grow faster, and leverage AI insights.

We are looking for a motivated Application Security Engineer to join our dynamic and high-caliber team.

The Role

Reporting to the CISO and collaborating with Information Security Officers, development, DevOps and product teams, you will embed security across our ERP, CRM and cloud products. As our first dedicated Application Security Engineer, you will establish security standards, tooling and automation, build a network of security champions, and shape the growth of our application security function.

Your contribution to the success of the team

  • Maintain our Secure Software Development Lifecycle and the secure coding standards that underpin it
  • Conduct threat modeling and security design reviews for new products and significant changes, including the AI features in our products
  • Manage our SAST and SCA platform, optimizing how development teams use it and reporting the key metrics it produces
  • Define which security findings block a release, and integrate security checks into our delivery pipelines with the support of our Security Engineer
  • Triage and prioritize software vulnerabilities found through SAST, SCA, penetration testing and DAST with our Security Operations Analysts, and drive their remediation by development teams within policy timeframes
  • Contribute to the effective use of our penetration testing and DAST platforms, from scoping application tests to validating fixes
  • Work with our Security Engineer on web application firewall exceptions, and take the issues the WAF identifies to the development teams
  • Run the intake and assessment of vulnerabilities reported in our products, and provide the technical input for security advisories and EU Cyber Resilience Act notifications
  • Define Software Bill of Materials (SBOM) requirements and manage software supply chain risk
  • Vet secure development training content, and identify and support security champions across our development teams
  • Help shape the future of our application security function

Your Qualifications & Competencies

  • 5+ years of experience in software engineering or information security, including 3+ years in a dedicated application security role
  • Professional software development experience in at least one widely used language, sufficient to read, review and contribute code
  • In-depth knowledge of application and API security risks across all major vulnerability classes
  • Hands-on experience operating and tuning SAST, SCA, DAST and secrets scanning tools, and driving their adoption by developers
  • Practical experience with threat modeling and with integrating security into CI/CD pipelines
  • Penetration testing knowledge sufficient to reproduce, validate and triage findings
  • Familiarity with software supply chain security, SBOMs and secure development frameworks such as OWASP SAMM, OWASP ASVS and NIST SSDF
  • An understanding of AI and LLM application security risks
  • Strong communication skills: you can turn a finding into clear guidance for developers and into business risk for leadership
  • Ability to influence engineering practice without direct authority
  • Excellent written and spoken English is required
  • Knowledge of the regulatory obligations for software products, including the EU Cyber Resilience Act, is considered a plus
  • Experience with enterprise software such as ERP or CRM products is considered a plus
  • Professional certifications such as CSSLP, OSWE, GWAPT or OSCP are considered a plus
  • Practical experience working with AI tools is a strong advantage, as our Security team operates in an AI-first environment and uses AI extensively in day-to-day work

Your Benefits

We are growing our team with the vision of having top performers who contribute directly to the growth of the company. As a result, we offer:

💰Competitive remuneration package

❤️Private health insurance plan

🏠Hybrid working model

💯Opportunity to work alongside people who are always eager to mentor

🚍Transportation with company’s bus from central stations

📖 Funded training & development opportunities

🥪Catering food services

Be ONE of Us

At ENTERSOFTONE, our purpose is to bridge cutting-edge technology with real business needs, helping organizations grow faster, work smarter, and unlock the full potential of their people.

Joining ENTERSOFTONE means becoming part of a fast-growing environment where innovation, collaboration, and continuous growth are part of everyday life. We are driven by passion in everything we do, we build relationships based on trust and transparency, we take ownership with commitment, and we constantly challenge the status quo by breaking new grounds through technology and innovation.

Most importantly, we remain people-focused. We invest in talented people, encourage learning and development, and create opportunities for every team member to grow, contribute, and make a real impact.

Join our team and experience a culture that empowers you to innovate, take initiative, develop your potential, and shape your own career path within a dynamic and evolving organization.

ENTERSOFTONE is an Equal Opportunity Employer. We welcome applications from all individuals regardless of gender, sexual orientation, age, ethnic origin, religion, or any other characteristic protected by applicable laws and regulations. Diversity, inclusion, and respect are fundamental elements of our culture and shape the way we work together.

Similar jobs

Apply on LinkedIn