Application Security Engineer
Sofia, Bulgaria
myPOS
Hyväksy korttimaksuja kivijalkaliikkeessä, verkossa ja liikkeellä. Valitse myPOS, joka sisältää maksupäätteen, yritystilin ja Visa-yrityskortin. Luo tili ilmaiseksi!At myPOS, we’re all about helping businesses grow and get paid. We make payments simple, smart, and accessible for everyone, but we’re more than just payment solutions - myPOS is a partner in growth. From free multicurrency accounts to powerful e-commerce tools, we’re here to support business owners of all sizes and everyone out there who dreams of starting their own business.
As we are expanding our team, we’re looking for Application Security Engineer to help us make a real difference in the Fintech industry. Ready to join us and shape the future of payments? Let’s make it happen!
About the role:
The Application Security Engineer will play a pivotal role in shaping and driving the security strategy of the organization. By supporting cybersecurity operations and our internal teams, the expert ensures that all department efforts align with business objectives and regulatory frameworks. This position is instrumental in fostering a secure, resilient, and compliant operational environment in a dynamic fintech context.
What you’ll do:
- Assist in integration and management of Snyk (SCA/SAST) within our infrastructure to proactively identify and remediate vulnerabilities in our codebases.
- Automate security scanning and reporting, customizing rules to minimize false positives and align with our application architecture.
- Analyze scan results, prioritize risks using industry frameworks (e.g., CVSS), and deliver actionable remediation guidance to developers.
- Collaborate with engineering teams to embed secure coding practices, conduct code reviews, and facilitate threat modeling sessions (using OWASP Top Ten, ASVS, etc.).
- Consult on secure development strategies, including API security, data protection, and secure authentication/authorization patterns.
- Lead security training and workshops for engineering teams, fostering a security-first culture.
This role is perfect for you if you have:
- 2+ years of experience in application security, including Snyk.
- High expertise in PHP and/or .NET development, with a strong understanding of secure coding patterns for these stacks.
- Familiarity with security frameworks and best practices (OWASP Top 10, ASVS, NIST, ISO 27001).
- Strong analytical, communication, and documentation skills.
Preferred Qualifications:
- Professional certifications (e.g., OSWE) are a plus.
- Familiarity with security tools (e.g., Snyk, SonarQube).
- Experience automating security processes and integrating with issue tracking tools (e.g., Jira).
Why you should join myPOS:
- Vibrant international team operating in hi-tech environment
- Annual salary reviews, promotions and performance bonuses
- myPOS Academy for upskilling and training
- Unlimited access to courses on LinkedIn Learning
- Refer a friend bonus as we know that working with friends is fun
- Annual individual training and development budget
- Teambuilding, social activities and networks on a multi-national level
What we offer:
- Excellent compensation package
- 25 days annual paid leave (+1 day per year up to 30)
- Full “Luxury” package health insurance including dental care and optical glasses
- Meal vouchers of 200 BGN per month
- Fully covered Multisport card
- Free coffee, snacks and drinks at the office
Who we are:
Since 2014 we’ve been all about making payments easier and more accessible for businesses of all shapes and sizes. Whether you’re at the counter, selling online, or on the move, we’ve got businesses covered with smart, accessible and affordable solutions that keep things easy.
Our mission? It’s simple. Help businesses get paid by taking advantage of modern tech and innovative ideas, so payment challenges are a thing of the past.
Pro tip:
Take it easy about meeting every requirement - this job description is just that, a job description! Even if you don’t tick every box, we want you to apply anyway! This is your chance to grow, learn, and build your career with us. We value potential over perfection, and we are all about mutual growth!
Apply by filling in the form below and send your CV in English!
myPOS is committed to providing equal employment opportunities. All qualified candidates will be considered for employment without discrimination based on age, ancestry, color, marital status, national origin, physical or mental disability, medical condition, veteran status, race, religion, sex, sexual orientation, gender identity or expression, or any other characteristic protected by applicable laws, regulations, and ordinances.
Your application will be confidentially reviewed in line with the General Data Protection Regulation (GDPR). Personal information will be used solely for the job application and will be stored for a period needed by the application process. Only short-listed candidates will be contacted. Good luck!
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Application security CVSS E-commerce FinTech GDPR ISO 27001 Jira NIST OSWE OWASP PHP SAST Security strategy SonarQube Strategy Vulnerabilities
Perks/benefits: Career development Health care Insurance Medical leave Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.