Luza Tecnologia

A company integrated into the Cronos Group, with over 500 companies, 7,500 employees, 10,000 clients, and offices in 10 countries, this organization is a catalyst in translating new technologies into business solutions, always in close collaboration with the client. Luza specializes in Microsoft Modern Workplace, Dynamics 365, Azure, and Power Platform.
About company

Application security engineer

Remote

location Porto

date August 15, 2026

types Full-time

Sobre o trabalho Application Security Engineer

Syffer is an all-inclusive consulting company focused on talent, tech and innovation. We exist to elevate companies and humans all around the world, making change, from the inside to the outside.

We believe that technology + human kindness positively impacts every community around the world. Our approach is simple, we see a world without borders, and believe in equal opportunities. We are guided by our core principles of spreading positivity, good energy and promote equality and care for others.

Our hiring process is unique! People are selected by their value, education, talent and personality. We dont present ethnicity, religion, national origin, age, gender, sexual orientation or identity.

Its time to burst the bubble, and we will do it together!

What You'll do:

  • Define and standardize Secure Software Development Life Cycle (S-SDLC) across multiple development teams;
  • Integrate and manage security testing tools (SAST, DAST, SCA) in CI/CD pipelines;
  • Lead vulnerability management initiatives in cloud environments and Kubernetes clusters;
  • Maintain and automate infrastructure security controls, including WAFs and network policies;
  • Guide development and DevOps teams on security best practices, ensuring compliance with frameworks such as DORA, CIS Benchmarks, and OWASP;
  • Hybrid work model;

Who You Are:

  • Bachelor's degree in Computer Science, Cybersecurity, or equivalent practical experience;
  • Solid professional experience as a Security Engineer, with strong focus on Application Security and DevSecOps methodologies;
  • Hands-on experience with containerization and orchestration tools;
  • Strong programming and scripting skills (e.g., Python, Bash, Java, or Go);
  • Knowledge of industry security standards, including OWASP Top 10 and ISO 27001;
  • Fluent in English to communicate effectively with technical and executive stakeholders;

Nice-to-have:

  • Intent to obtain or completion of industry certifications such as CKA (Certified Kubernetes Administrator) or CKS (Certified Kubernetes Security Specialist);
  • Strong analytical skills for threat detection and analysis;
  • Excellent communication skills to convey technical concepts;
  • Proactive approach to aligning security requirements with technological modernization and business goals;

What you'll get:

  • Wage according to candidate's professional experience;
  • Remote Work whenever possible;
  • Delivery of work equipment adjusted to the performance of functions;
  • Benefits plan;
  • And others.

Work together with expert teams on projects of large magnitude and intensity, long term together with our clients, all leaders in their industries.

Are you ready to step into a diverse and inclusive world with us?

Together we will promote uniquess!