At a Glance
- Tasks: Protect our apps and data from cyber threats while collaborating with dynamic teams.
- Company: Join a fast-growing, innovative company on a mission to revolutionise resource planning.
- Benefits: Enjoy top-tier health insurance, free meals, and a supportive work environment.
- Other info: Relocation support available; vibrant office culture in Lisbon.
- Why this job: Make a real impact in cybersecurity while working with cutting-edge technology.
- Qualifications: 4+ years in cybersecurity with strong knowledge of secure coding and threat modelling.
The predicted salary is between 60000 - 80000 £ per year.
About Air Apps
At Air Apps, we believe in thinking bigger—and moving faster. We’re a family-founded company on a mission to create the world’s first AI-powered Personal & Entrepreneurial Resource Planner (PRP), and we need your passion and ambition to help us change how people plan, work, and live. Born in Lisbon, Portugal in 2018—and now with offices in both Lisbon and San Francisco—we’ve remained self-funded while reaching over 100 million downloads worldwide. Our long-term focus drives us to challenge the status quo every day, pushing the boundaries of AI-driven solutions that truly make a difference. Here, you’ll be a creative force, shaping products that empower people across the globe. Join us on this journey to redefine resource management—and change lives along the way.
The Role
As a Security Engineer at Air Apps, you will be responsible for safeguarding our applications, infrastructure, and data from threats and vulnerabilities. You will work closely with development, DevOps, and IT teams to implement secure coding practices, vulnerability scanning, and threat modeling to ensure our systems remain resilient against cyber threats. Your expertise will help build and maintain a secure development lifecycle (SDLC), security monitoring frameworks, and proactive risk mitigation strategies. This is a fully onsite position, based at our office in Lisbon, where you will collaborate closely with cross‑functional teams in person and contribute to a dynamic and fast‑paced environment. We are open to support with relocation efforts.
Responsibilities
- Develop and implement threat modeling to identify security risks across applications and infrastructure.
- Conduct vulnerability scanning, penetration testing, and security assessments to detect weaknesses.
- Define and enforce secure coding practices in collaboration with development teams.
- Work with DevOps to integrate security into CI/CD pipelines and automate security testing.
- Monitor and respond to security incidents, conducting root cause analysis and implementing preventative measures.
- Ensure compliance with security standards and regulations (e.g., ISO 27001, GDPR, SOC 2).
- Design and implement identity and access management (IAM) policies, encryption standards, and authentication mechanisms.
- Collaborate with product teams to conduct security reviews of features, APIs, and third‑party integrations.
- Develop incident response plans, security documentation, and best practices.
- Stay ahead of emerging threats, vulnerabilities, and security technologies.
Requirements
- Around 4+ years of experience in cybersecurity, application security, or security engineering.
- Strong knowledge of secure coding principles, OWASP Top 10, and threat modeling techniques.
- Experience with vulnerability scanning tools (Nessus, Qualys, Burp Suite) and penetration testing methodologies.
- Hands‑on experience with SIEM, intrusion detection systems (IDS), and security monitoring tools.
- Proficiency in scripting and automation (Python, Bash, PowerShell) for security tasks.
- Familiarity with cloud security in AWS, Azure, or GCP, including IAM and workload protection.
- Knowledge of encryption protocols, network security, and API security best practices.
- Experience working with DevSecOps, integrating security into CI/CD pipelines.
- Ability to analyze security logs, detect anomalies, and mitigate potential threats.
- Excellent problem‑solving skills and ability to communicate security concepts to non‑technical stakeholders.
What benefits are we offering?
- Apple hardware ecosystem for work.
- Annual Bonus.
- Top‑tier Health and Life Insurance for peace of mind.
- Transportation Budget to support your commute needs.
- Coverflex benefits package for meal allowances, well‑being, and more.
- Childcare support.
- Air Conference - an opportunity to meet the team, collaborate, and grow together.
- Pension Fund to support your long‑term financial planning.
- Urban Sports Club membership to keep you active.
- Meals 100% free at the hub.
Security Engineer employer: airapps
At Air Apps, we pride ourselves on fostering a vibrant and innovative work culture that empowers our employees to think creatively and push boundaries. As a Security Engineer in our Lisbon office, you will enjoy a range of benefits including top-tier health insurance, a supportive relocation process, and opportunities for professional growth through collaboration with cross-functional teams. Join us in a dynamic environment where your contributions will directly impact the future of AI-driven solutions and resource management.
StudySmarter Expert Advice🤫
We think this is how you could land Security Engineer
✨Tip Number 1
Network like a pro! Reach out to current employees at Air Apps on LinkedIn or attend industry meetups. A friendly chat can give you insider info and maybe even a referral!
✨Tip Number 2
Show off your skills! Prepare a portfolio or case studies that highlight your experience in cybersecurity and secure coding practices. This will help you stand out during interviews.
✨Tip Number 3
Be ready for technical challenges! Brush up on your knowledge of vulnerability scanning tools and threat modeling techniques. You might face some practical tests during the interview process.
✨Tip Number 4
Apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining the Air Apps family.
We think you need these skills to ace Security Engineer
Some tips for your application 🫡
Show Your Passion:When you're writing your application, let your enthusiasm for the role shine through! We want to see how your passion for security engineering aligns with our mission at Air Apps. Share why you’re excited about safeguarding applications and data in a fast-paced environment.
Tailor Your CV:Make sure your CV is tailored to highlight your relevant experience in cybersecurity and application security. We love seeing specific examples of your work with secure coding practices, vulnerability scanning, and threat modelling. Show us how your skills can contribute to our team!
Be Clear and Concise:Keep your application clear and to the point. We appreciate straightforward communication, so avoid jargon unless it’s necessary. Make it easy for us to see your qualifications and how they fit with the role of Security Engineer.
Apply Through Our Website:Don’t forget to apply through our website! It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it shows you’re serious about joining our team at Air Apps!
How to prepare for a job interview at airapps
✨Know Your Stuff
Make sure you brush up on your cybersecurity knowledge, especially around secure coding principles and the OWASP Top 10. Be ready to discuss specific tools you've used, like Nessus or Burp Suite, and how you've applied them in real-world scenarios.
✨Show Your Problem-Solving Skills
Prepare to share examples of how you've tackled security incidents in the past. Think about a time when you had to analyse security logs or respond to a threat—this will demonstrate your analytical skills and ability to communicate complex concepts clearly.
✨Collaborate Like a Pro
Since this role involves working closely with development and DevOps teams, be ready to talk about your experience in integrating security into CI/CD pipelines. Highlight any collaborative projects where you’ve enforced secure coding practices or conducted security reviews.
✨Stay Ahead of the Game
Research the latest trends in cybersecurity and be prepared to discuss emerging threats and technologies. Showing that you're proactive about staying informed will impress the interviewers and align with Air Apps' mission to challenge the status quo.