Application Security Engineer (m/w/d)

Festanstellung, Vollzeit · Polen

Lesen Sie die Stellenbeschreibung in:
Your mission

We are looking for a (Senior) Application Security Engineer to strengthen the security of our software products in a hybrid on-premise and SaaS environment. In this role, you will contribute through deep technical expertise and hands-on involvement in the analysis, design, and improvement of application security across our product landscape.

You will work closely with software development and architecture teams, directly engaging with source code, systems, and technical designs to identify and mitigate security risks. The position emphasizes technical contribution, secure engineering practices, and continuous improvement of security standards within the organization.

Your responsibilities include performing security reviews and tests, advising on secure design decisions, and actively supporting security awareness in day-to-day engineering work.

Key Responsibilities

  • Identify security vulnerabilities through code reviews, dynamic testing, and penetration testing
  • Analyze and explain security risks in complex software systems and propose practical, organization-ready solutions
  • Work hands-on with an evolving legacy product in a hybrid on-premise and cloud setup
  • Advise development teams on secure coding practices and architectural security aspects
  • Support compliance with relevant security standards and regulations
  • Use and maintain common security tools for analysis and testing
  • Train software developers in secure coding and foster security awareness within engineering teams
  • Stay up to date with modern security topics, including AI-assisted development and security tooling
Your profile
To succeed in this role, you are a self-driven security specialist who enjoys working deeply on technical challenges and taking ownership from problem analysis to solution delivery.
You bring the following skills and experience:
  • Solid experience in software development
  • Proven experience in identifying security issues via code review and dynamic testing (e.g. penetration tests)
  • Excellent professional communication skills, with the ability to explain complex security topics clearly and concisely
  • High level of independence and structured working style in a complex corporate environment
     (understanding the task, identifying stakeholders, preparing solutions that fit the organization)
  • Good understanding of common security flaws and mitigation strategies (e.g. OWASP Top 10)
  • Knowledge of security standards and regulations such as GDPR, NIST, and OWASP ASVS
  • Practical experience with object-oriented and scripting languages such as Java, C#, JavaScript, Python, and Bash
  • Understanding of network and web protocols (TCP/IP, HTTP/1–3, HTTPS, TLS)
  • Solid grasp of SaaS security fundamentals (databases, web APIs, containerization)
  • Hands-on experience with security tools such as static analysis tools, Burp Suite, OWASP ZAP, NMAP, Wireshark, SonarQube, Kali or Parrot Linux
  • Understanding of modern cryptography concepts including encryption, authentication, key management, and hashing
  • Willingness to work with and responsibly use LLM-based code generation and generative AI tools in daily work


Nice to have

  • Experience in designing or using multi-agent AI systems for software development
  • Experience in applying multi-agent AI systems for security analysis or threat modeling
  • Relevant certifications such as OSWE, CISSP, CEH, or comparable credentials
Why us?
  • A diverse working environment where you can contribute your expertise long term
  • Targeted professional and personal development opportunities, supported by training and mentoring
  • Flat hierarchies and an open, collaborative company culture
  • Flexible, trust-based working hours with mobile office options and an attractive compensation package
  • Additional benefits such as MultiSport and Luxmed
Contact us
Asseco Solutions
People & Culture
Amalienbadstraße 41c
76201 Karlsruhe
Deutschland
jobs.dach@assecosol.com
About us
Do you want a job that is considerate of your life?

Then welcome to Asseco Solutions!
Here, we emphasize that your job integrates into your life - not the other way around.
You have a doctor's appointment or have to pick up your child from daycare? Or you want to work abroad for a few days and combine this with a vacation? We trust you to be aware of your responsibilities and to work conscientiously on your tasks. In return, we give you flexibility and a lot of freedom.


But who exactly is behind Asseco Solutions?


Here are a few hard facts:
We are celebrating our 30th anniversary this year!
We are the leading ERP provider for the upper mid-market
Our turnover in 2022 was 65.98 million euros
We employ over 500 people at 10 locations in Germany, Austria, Italy as well as Guatemala

As part of the Asseco Group, we combine global vision with local expertise with our ERP system APplus we simplify the daily work of our customers and support them in their growth. The ingredients for success are forward-looking technologies such as AI and automation, a comprehensive range of services with industry-specific solutions, intuitive user experience and individual expert advice.

Are you looking for appreciation, a strong team spirit, freedom to work and good development opportunities? Then you have found the perfect employer in us.


Apply today and start a job that is considerate of your life!


Deine Aufgaben

We are looking for a (Senior) Application Security Engineer to strengthen the security of our software products in a hybrid on-premise and SaaS environment. In this role, you will contribute through deep technical expertise and hands-on involvement in the analysis, design, and improvement of application security across our product landscape.

You will work closely with software development and architecture teams, directly engaging with source code, systems, and technical designs to identify and mitigate security risks. The position emphasizes technical contribution, secure engineering practices, and continuous improvement of security standards within the organization.

Your responsibilities include performing security reviews and tests, advising on secure design decisions, and actively supporting security awareness in day-to-day engineering work.

Key Responsibilities

  • Identify security vulnerabilities through code reviews, dynamic testing, and penetration testing
  • Analyze and explain security risks in complex software systems and propose practical, organization-ready solutions
  • Work hands-on with an evolving legacy product in a hybrid on-premise and cloud setup
  • Advise development teams on secure coding practices and architectural security aspects
  • Support compliance with relevant security standards and regulations
  • Use and maintain common security tools for analysis and testing
  • Train software developers in secure coding and foster security awareness within engineering teams
  • Stay up to date with modern security topics, including AI-assisted development and security tooling
Dein Profil
To succeed in this role, you are a self-driven security specialist who enjoys working deeply on technical challenges and taking ownership from problem analysis to solution delivery.
You bring the following skills and experience:
  • Solid experience in software development
  • Proven experience in identifying security issues via code review and dynamic testing (e.g. penetration tests)
  • Excellent professional communication skills, with the ability to explain complex security topics clearly and concisely
  • High level of independence and structured working style in a complex corporate environment
     (understanding the task, identifying stakeholders, preparing solutions that fit the organization)
  • Good understanding of common security flaws and mitigation strategies (e.g. OWASP Top 10)
  • Knowledge of security standards and regulations such as GDPR, NIST, and OWASP ASVS
  • Practical experience with object-oriented and scripting languages such as Java, C#, JavaScript, Python, and Bash
  • Understanding of network and web protocols (TCP/IP, HTTP/1–3, HTTPS, TLS)
  • Solid grasp of SaaS security fundamentals (databases, web APIs, containerization)
  • Hands-on experience with security tools such as static analysis tools, Burp Suite, OWASP ZAP, NMAP, Wireshark, SonarQube, Kali or Parrot Linux
  • Understanding of modern cryptography concepts including encryption, authentication, key management, and hashing
  • Willingness to work with and responsibly use LLM-based code generation and generative AI tools in daily work


Nice to have

  • Experience in designing or using multi-agent AI systems for software development
  • Experience in applying multi-agent AI systems for security analysis or threat modeling
  • Relevant certifications such as OSWE, CISSP, CEH, or comparable credentials
Unser Angebot
  • A diverse working environment where you can contribute your expertise long term
  • Targeted professional and personal development opportunities, supported by training and mentoring
  • Flat hierarchies and an open, collaborative company culture
  • Flexible, trust-based working hours with mobile office options and an attractive compensation package
  • Additional benefits such as MultiSport and Luxmed
Unsere Kontaktdaten
Asseco Solutions
People & Culture
Amalienbadstraße 41c
76201 Karlsruhe
Deutschland
jobs.dach@assecosol.com
Über uns

Hast Du Lust auf einen Job, der auf Dein Leben Rücksicht nimmt?

Dann sagen wir herzlich willkommen bei Asseco Solutions – wo Innovation zuhause ist!
Bei uns soll sich Dein Job in Dein Leben integrieren – nicht umgekehrt.
Du hast einen Arzttermin, musst Dein Kind aus der Kita abholen oder möchtest für ein paar Tage im Ausland arbeiten und das mit einem Kurzurlaub verbinden? Wir vertrauen Dir, dass Du Verantwortung übernimmst und Deine Aufgaben gewissenhaft erledigst. Dafür bieten wir Dir Flexibilität, Vertrauen und echte Freiräume.

Doch wer genau ist Asseco Solutions? Hier ein paar Fakten:

  • Seit über 30 Jahren erfolgreich am Markt

  • Führender ERP-Anbieter für den gehobenen Mittelstand

  • 78 Mio. € Umsatz in 2024

  • Ca. 500 Mitarbeitende an Standorten in Deutschland, Österreich, Schweiz, Italien, Polen und Guatemala

  • Teil der internationalen Asseco-Gruppe, einem der Top 6 europäischen Softwareunternehmen mit über 34 000 Mitarbeitenden weltweit

Mit unserem ERP-System APplus vereinfachen wir den Arbeitsalltag unserer Kund*innen und unterstützen sie beim Wachstum.
Unsere Erfolgszutaten: zukunftsweisende Technologien, KI-gestützte Automatisierung, intuitive User Experience – ausgezeichnet als ERP-System des Jahres 2025 – sowie branchenübergreifende Expertise und persönliche Beratung.

Unsere Werte sind das Herzstück unseres Erfolgs: Vertrauen, Teamgeist, Respekt, Innovation und Menschlichkeit. Sie machen uns zu einem Arbeitgeber, der langfristig denkt, auf Augenhöhe handelt und Mitarbeitenden Freiraum zur Entwicklung gibt.

Wenn Du also auf der Suche nach Wertschätzung, Zusammenhalt, Gestaltungsspielraum und echten Perspektiven bist –
dann bist Du bei uns genau richtig.

Bewirb Dich noch heute und starte in einen Job, der auf Dein Leben Rücksicht nimmt!

Wir freuen uns auf Dich!
Wir freuen uns über Dein Interesse an der Asseco Solutions AG. Bitte fülle das folgende Bewerbungsformular aus. Solltest Du Schwierigkeiten mit dem Upload Deiner Daten haben, wende Dich gerne per E-Mail an jobs.dach@assecosol.com.
Dokument wird hochgeladen. Bitte warten Sie.
Fügen Sie alle erforderlichen (mit einem * gekennzeichneten) Angaben hinzu, um Ihre Bewerbung abzusenden.