Junior Application Security Analyst (AppSec)

Company
Description
Job Summary: We are seeking a Junior Application Security Analyst to identify and mitigate vulnerabilities in corporate applications, collaborating with development teams and improving security processes. Key Responsibilities: 1. Security analysis using SAST, DAST, and SCA tools 2. Support to development teams in vulnerability remediation 3. Continuous training and professional development in cybersecurity At Excelia, a multinational consulting, technology, and professional services firm, we have over 25 years of experience and a presence in more than 50 countries across Europe, Latin America, and the United States, through our 9 owned offices. We are currently seeking a **Junior Application Security Analyst (AppSec)** to join a stable project within the insurance sector, contributing to the identification and mitigation of vulnerabilities in corporate applications. **What will you do?** --------------- * Perform application security analysis using SAST, DAST, and SCA tools. * Identify, analyze, and report vulnerabilities detected in applications and software components. * Participate in code reviews and validation of security findings. * Support development teams in vulnerability remediation. * Conduct security testing using specialized tools. * Collaborate on continuous improvement of security processes throughout the software development lifecycle (SDLC). * Prepare documentation and reports on results and vulnerability tracking. **Requirements** -------------- * 1–2 years of experience in Application Security (AppSec). * Experience analyzing applications using SAST, DAST, and SCA tools. * Knowledge and experience with: + Burp Suite. + Fortify. * Basic knowledge of secure development and vulnerability management. * Analytical ability, capacity for learning, and teamwork skills. * Interest in professional development in the field of cybersecurity applied to software development. **Preferred Qualifications** ------------- * Familiarity with OWASP Top 10\. * Experience with additional security analysis tools. * Certifications or training in cybersecurity. * Basic knowledge of DevSecOps. **Work Modality** ------------------------ Hybrid model in Madrid – Paseo de la Castellana area (client’s office) On-site presence of 1–2 days per week. **What We Offer** ------------------- Stable employment with an international company. Company-provided IT equipment. Participation in cybersecurity projects with impact across corporate environments. Continuous training and professional development. Collaborative environment with multidisciplinary teams. Career development plan and growth opportunities within Excelia. Hybrid work model and flexibility. If you wish to further develop your career in Application Security and be part of innovative cybersecurity projects, we would love to meet you!
Posted by

David Muñoz
Indeed · HR




