Senior Application & DevSecOps Engineer

PortugalRemotefull-time

<p style="font-family:"><b><strong style="color:rgb(0,0,0);font-size:12pt;white-space:pre-wrap;">Build the Future with AspenView Technology Partners</strong></b></p><p style="font-family:">At AspenView, we are passionate about transforming the way organizations approach technology. We specialize in creating high-performing, nearshore IT teams to help North American clients innovate faster and more efficiently. As we continue to grow, we're looking for exceptional people to join our team and help drive impactful change across industries.</p><p style="font-family:"><b><strong style="color:rgb(0,0,0);font-size:12pt;white-space:pre-wrap;">Why Join AspenView?</strong></b></p><p style="font-family:">At AspenView, we're more than a nearshore IT partner—we're a <b><strong style="color:rgb(0,0,0);font-size:12pt;white-space:pre-wrap;">people-first, purpose-driven</strong></b> company that believes great culture drives great outcomes. We're passionate about connecting talent and technology to deliver measurable value for clients—and meaningful career paths for our people.</p><h3>Here's what you can expect:</h3><ul data-pattern="discCircleSquare" data-depth="1" style="font-family:"><li style="color:rgb(0,0,0);font-size:12pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Competitive base </li><li style="color:rgb(0,0,0);font-size:12pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Comprehensive benefits and wellness support</li><li style="color:rgb(0,0,0);font-size:12pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Flexible work model: hybrid, remote, or in-office</li><li style="color:rgb(0,0,0);font-size:12pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Real growth opportunities and leadership visibility</li><li style="color:rgb(0,0,0);font-size:12pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Inclusive, respectful culture that blends U.S. innovation with Colombian heart</li><li style="color:rgb(0,0,0);font-size:12pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">A company that listens, invests in you, and celebrates wins together</li></ul><p style="font-family:">The <b><strong style="white-space:pre-wrap;">Senior Application &amp; DevSecOps Engineer</strong></b> is responsible for ensuring that security is built into every line of code and every stage of the software development lifecycle (SDLC). This is a hands-on engineering role that requires a deep understanding of modern software architecture, microservices, and automated delivery pipelines.</p><p style="font-family:">You will act as the technical authority for <b><strong style="white-space:pre-wrap;">Product Security</strong></b>, performing everything from manual code reviews and threat modeling to the integration of automated security gates. Your mission is to empower developers to ship high-quality, secure software without compromising velocity.</p><h3 style="font-family:">What you will do:</h3><p style="font-family:"><b><strong style="white-space:pre-wrap;">Secure SDLC &amp; Pipeline Integration</strong></b></p><ul data-pattern="discCircleSquare" data-depth="1" style="font-family:"><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Design and implement the <b><strong style="white-space:pre-wrap;">Secure SDLC</strong></b> framework, integrating security gates directly into DevOps pipelines.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Deploy and manage <b><strong style="white-space:pre-wrap;">SAST, DAST, and SCA</strong></b> tooling (e.g., Veracode, Checkmarx, SonarQube, Snyk) to automate vulnerability detection.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Secure <b><strong style="white-space:pre-wrap;">containerized environments</strong></b> (Docker/Kubernetes) and microservices architecture within the CI/CD flow.</li></ul><p style="font-family:"><b><strong style="white-space:pre-wrap;">Code Review &amp; Security Testing</strong></b></p><ul data-pattern="discCircleSquare" data-depth="1" style="font-family:"><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Perform <b><strong style="white-space:pre-wrap;">manual and automated code reviews</strong></b> across multiple languages, including <b><strong style="white-space:pre-wrap;">Java, C#, Python, and Go</strong></b>.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Execute <b><strong style="white-space:pre-wrap;">API security testing</strong></b> and advanced vulnerability assessments using tools like <b><strong style="white-space:pre-wrap;">Burp Suite Professional</strong></b>.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Lead <b><strong style="white-space:pre-wrap;">Threat Modeling</strong></b> sessions during the design phase to identify and mitigate architectural flaws before code is written.</li></ul><p style="font-family:"><b><strong style="white-space:pre-wrap;">Product Security &amp; Architecture</strong></b></p><ul data-pattern="discCircleSquare" data-depth="1" style="font-family:"><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Define and promote <b><strong style="white-space:pre-wrap;">secure design patterns</strong></b> and coding standards across the engineering organization.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Partner with development teams to prioritize and remediate vulnerabilities based on business risk.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;">Support incident response teams during application-level security events or data breach investigations.</li></ul><h3 style="font-family:">Tools &amp; Technologies:</h3><ul data-pattern="discCircleSquare" data-depth="1" style="font-family:"><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Security Tooling:</strong></b> Veracode, Checkmarx, SonarQube, Snyk, Burp Suite, or Mend.io.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">DevOps &amp; CI/CD:</strong></b> GitHub Actions, GitLab CI, Jenkins, and Azure DevOps.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Environments:</strong></b> Docker, Kubernetes (K8s), and Serverless architectures.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Languages:</strong></b> Proficiency in reading/analyzing Java, C#, Python, or Go.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Frameworks:</strong></b> Strong knowledge of <b><strong style="white-space:pre-wrap;">OWASP Top 10</strong></b> (Web, API, and Mobile).</li></ul><h3 style="font-family:">What you bring:</h3><ul data-pattern="discCircleSquare" data-depth="1" style="font-family:"><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">6–8+ years</strong></b> in Application Security, DevSecOps, or Software Engineering with a focus on security.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Technical Depth:</strong></b> Ability to explain complex vulnerabilities to developers and provide actionable remediation guidance.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Automation Mindset:</strong></b> Experience treating "Security as Code" and automating security checks in high-velocity environments.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Strategic Perspective:</strong></b> Proven track record of implementing threat modeling and secure design principles.</li><li style="font-size:11pt;margin:3px 0px;letter-spacing:0.25px;line-height:1.6;"><b><strong style="white-space:pre-wrap;">Background:</strong></b> Often comes from a Software Development background with a transition into Cybersecurity.</li></ul><p style="font-family:"><b><strong style="color:rgb(0,0,0);font-size:12pt;white-space:pre-wrap;">Equal Opportunity Employer:</strong></b></p><p style="font-family:">AspenView is proud to be an equal opportunity employer. We believe in creating an environment where all employees feel welcome, valued, and empowered to succeed. We celebrate diversity and strive to build a culture of inclusion where all individuals, regardless of their race, color, gender, gender identity or expression, sexual orientation, disability, age, or any other characteristic, can thrive. We encourage applicants from all walks of life to join our team and make a lasting impact.</p><p>Originally posted on <a href="https://himalayas.app">Himalayas</a></p>

Apply with uptayn.

Sign in free to open the apply link, get this role scored against your CV, and track your application.

uptayn
2026 · built quietly in Berlin.
uptayn = up + attain
Built for
  • Recent business grads
  • Engineers pivoting to ops
  • Consultants → startup
  • Second-job operators
Quiet by default
  • No tracking pixels
  • No LinkedIn login
  • No spam outreach
  • Just roles + your CV