Application Security Engineer

hace 2 semanas


Bogotá, Bogotá D.E., Colombia Amadeus IT Group A tiempo completo

Application Security Engineer (White Hat)

Application Security Engineer (White Hat)

Apply locations Bogota time type Full time posted on Posted 2 Days Ago time left to apply End Date: February 21, 2025 (15 days left to apply) job requisition id R25098

Job Title

Application Security Engineer (White Hat)

** All CVs must be submitted in English**

About the area/department:

Consulting and Bespoke Services (CBS) within Amadeus focuses on delivering tailored solutions to meet the unique needs of our customers. Our customers include travel agents, large online travel websites, and other travel-related businesses. We work closely with various departments to integrate and deploy customized solutions, ensuring seamless operations and enhanced customer satisfaction. The team is involved in the entire lifecycle of customer solutions, from initial consultation and design to implementation and ongoing support. In addition to our hub in Bogota, we also have hubs in APAC (Thailand, India, and Taipei) and Europe (Spain and France).

Summary of the Role:

You will be responsible for ensuring the security of our software applications by identifying vulnerabilities and collaborating with software developers to mitigate them throughout the software development lifecycle. This role involves working closely with development and QA teams to conduct threat models, implement secure coding practices, monitor the treatment of scan findings, and provide guidance on addressing discovered vulnerabilities. Additionally, you will work with QA to ensure security functional test case coverage and gather evidence for PCI audits.

In this role you'll:
  • Facilitate threat modeling sessions with developers, QA, and functional experts to identify potential issues in new solutions being planned.
  • Monitor findings detected by source code and binary scanning tools and work with developers to ensure they are addressed during the development process.
  • Manage the treatment of vulnerabilities detected in existing applications by calculating the environmental CVSS scores, suggesting remediation strategies, and following the progress of the vulnerability until closure.
  • Work with development teams, QA, and Platform Operation teams to collect evidence for annual PCI audits and ensure that any new applications developed are compliant with PCI-DSS.
About the ideal candidate:

The ideal candidate would be highly detail-oriented and possesses a deep understanding of the software development lifecycle and secure coding practices, particularly with .NET and Docker/Kubernetes. They should have the ability to analyze vulnerabilities, suggest remediation strategies, and clearly communicate these strategies to developers, working with them to ensure the closure of vulnerabilities.

Effective problem-solving, communication, and analytical skills are essential, as well as the ability to work collaboratively with cross-functional teams in both English and Spanish. Additionally, the ideal candidate should be knowledgeable about PCI-DSS compliance and capable of working with various teams to collect evidence for annual PCI audits.

Technical Competencies:

  • Fortify, Security Center, and BlackDuck: Proficiency in using these security tools to identify and manage vulnerabilities in software applications.
  • .NET Development: Understanding and experience in developing secure applications using the .NET framework.
  • Kubernetes/Docker: Knowledge of containerization and orchestration technologies to ensure secure deployment and management of applications.
  • CVSS Vulnerability: Ability to calculate and interpret Common Vulnerability Scoring System (CVSS) scores to assess the severity of vulnerabilities.
  • Threat Modeling: Expertise in conducting threat modeling sessions to identify potential security issues in new and existing applications.
What we can offer you:
  • Get rewarded with competitive remuneration, individual and company annual bonus, vacation and holiday paid time off, health insurances and other competitive benefits.

  • Work hybrid at our Bogota office.

  • Professional development to broaden your knowledge and enhance your skills with on-line learning hubs packed with technical and soft skills training that allow you to develop and grow.

  • Enter a diverse and inclusive workplace, join one of the world's top travel technology companies and take on a role that impacts millions of travelers around the globe.

Application process:

The application process takes no longer than 10 minutes
Create your candidate profile, upload your Resume/CV and apply today

Working at Amadeus, you will find:
  • A critical mission and purpose - At Amadeus, you will be powering the future of travel and pursuing a critical mission and extraordinary purpose.

  • A truly global DNA - Everything at Amadeus is global, from our people to our business, which translates into our footprint, processes, and culture.

  • Great opportunities to learn - Learning happens all the time and in many ways at Amadeus, through on-the-job training, formal learning activities, and day-to-day interactions with colleagues.

  • A caring environment - Amadeus fosters a caring environment, nurturing both a fulfilling career and personal and family life. We care about our employees and strive to provide a supportive work environment.

  • A complete rewards offer - Amadeus provides attractive remuneration packages, covering all essential components of a competitive reward offer, including salary, bonus, equity, and benefits.

  • A diverse and inclusive community - We are committed to leveraging our uniquely diverse population to drive innovation, creativity, and collaboration across our organization.

  • A Reliable Company - Trust and reliability are fundamental values that drive our actions and shape long-lasting relationships with our customers, partners, and employees.

#LI-AM2024

Diversity & Inclusion

Amadeus aspires to be a leader in Diversity, Equity and Inclusion in the tech industry, enabling every employee to reach their full potential by fostering a culture of belonging and fair treatment, attracting the best talent from all backgrounds, and as a role model for an inclusive employee experience.

Amadeus is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to gender, race, ethnicity, sexual orientation, age, beliefs, disability or any other characteristics protected by law.

#J-18808-Ljbffr

  • Bogotá, Bogotá D.E., Colombia Amadeus It Group, S.A. A tiempo completo

    Application Security Engineer (White Hat) page is loadedApplication Security Engineer (White Hat)Apply locations Bogota time type Full time posted on Posted 7 Days Ago time left to apply End Date: March 14, 2025 (10 days left to apply) job requisition id R25098Job Title Application Security Engineer (White Hat)** All CVs must be submitted in English** About...


  • Bogotá, Bogotá D.E., Colombia Amadeus A tiempo completo

    Application Security Engineer (White Hat) Amadeus Discover how Amadeus' platform and technology help airlines, travel agencies, hotels, and others connect, do business, and deliver better travel experiences. Job Title: Application Security Engineer (White Hat) All CVs must be submitted in English About the area/department: Consulting and Bespoke Services...


  • Bogotá, Bogotá D.E., Colombia Amadeus A tiempo completo

    Application Security Engineer (White Hat) Amadeus Discover how Amadeus' platform and technology help airlines, travel agencies, hotels, and others connect, do business, and deliver better travel experiences. Job Title: Application Security Engineer (White Hat) All CVs must be submitted in English About the area/department: Consulting and Bespoke Services...


  • Bogotá, Bogotá D.E., Colombia Avature A tiempo completo

    A career in IBM Consulting is rooted by long-term relationships and close collaboration with clients across the globe.You'll work with visionaries across multiple industries to improve the hybrid cloud and AI journey for the most innovative and valuable companies in the world.Your Role and ResponsibilitiesAs an entry-level security consultant, you will be...


  • Bogotá, Bogotá D.E., Colombia Amadeus A tiempo completo

    About AmadeusWe are a leading travel technology company powering the future of travel.Job SummaryAs an Application Security Specialist, you will play a critical role in ensuring the security of our software applications by identifying vulnerabilities and collaborating with software developers to mitigate them throughout the software development...

  • Sr Security Engineer

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia Sapindex A tiempo completo

    Job Responsibilities:3+ years of proven experience in DevOps, SRE, DevSecOps or a related field.3+ years using containerized workload management technologies (e.g., Kubernetes, AWS ECS, EKS).Consistent track record building and managing infrastructure in AWS including setting up VPCs, security groups, NACLs, and other network security mechanisms.Proficiency...

  • Cloud Security Engineer

    hace 3 semanas


    Bogotá, Bogotá D.E., Colombia Coupa Software, Inc. A tiempo completo

    Coupa Software, Inc. See all of your business spend in one place with Coupa to make cost control, compliance and anything spend management related easier and more effective. Coupa makes margins multiply through its community-generated AI and industry-leading total spend management platform for businesses large and small. Coupa AI is informed by trillions of...


  • Bogotá, Bogotá D.E., Colombia Amadeus A tiempo completo

    Company OverviewAmadeus is a leading travel technology company that provides innovative solutions to the travel industry. Our mission is to power the future of travel and make it easier, faster, and more enjoyable for everyone.About the JobYou will be part of our Global SOC platform engineering team, working on supporting our multi-tenant Azure Security data...

  • Security Engineer

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia Sos Trabajo A tiempo completo

    General Description Perform assessment and accreditation efforts before releasing new systems to production.This role is highly cross-functional and requires working within Information Security, with IT division and other divisions across the company.Essential Duties and Responsibilities · Assist in defining and establishing accreditation and validation...


  • Bogotá, Bogotá D.E., Colombia Amadeus A tiempo completo

    The application security department requires a knowledgeable practitioner and project manager to support our effort to provide customers with secure products across Amadeus Hospitality. Summary of the Role: Security and privacy of our platforms and applications are of utmost importance for Amadeus. We have legal, contractual, and moral obligations to our...


  • Bogotá, Bogotá D.E., Colombia Gi Group Colombia A tiempo completo

    Gi Group Colombia is looking for an experienced IT professional to lead our cybersecurity efforts. As a Senior Network and Security Engineer, you will be responsible for managing our network security, implementing security policies, and performing vulnerability scanning. Your expertise in networking, Windows servers, and security best practices will ensure...


  • Bogotá, Bogotá D.E., Colombia J.S. Held LLC A tiempo completo

    Sr. Azure Cyber Security Architect/Engineer 2 days ago Be among the first 25 applicants Company Description Are you looking to join an organization that is growing and dynamic? What about a high-energy, collaborative environment that rewards hard work? J.S. Held is a global consulting firm that combines technical, scientific, financial, and strategic...


  • Bogotá, Bogotá D.E., Colombia J.S. Held A tiempo completo

    Sr. Azure Cyber Security Architect/Engineer Are you looking to join an organization that is growing and dynamic? What about a high-energy, collaborative environment that rewards hard work? J.S. Held is a global consulting firm that combines technical, scientific, financial, and strategic expertise to advise clients seeking to realize value and mitigate...

  • Cyber Security Engineer

    hace 3 semanas


    Bogotá, Bogotá D.E., Colombia Charger Logistics Inc A tiempo completo

    Charger Logistics is a world-class asset-based carrier. We specialize in delivering your assets, on time and on budget. With a diverse fleet of equipment, we can handle a range of freight, including dedicated loads, specialized hauls, temperature-controlled goods, and HAZMAT cargo. Charger Logistics invests time and support into its employees to provide them...

  • Cyber Security Engineer

    hace 3 semanas


    Bogotá, Bogotá D.E., Colombia Charger Logistics Inc A tiempo completo

    Charger Logistics is a world-class asset-based carrier. We specialize in delivering your assets, on time and on budget. With a diverse fleet of equipment, we can handle a range of freight, including dedicated loads, specialized hauls, temperature-controlled goods, and HAZMAT cargo. Charger Logistics invests time and support into its employees to provide them...

  • Network Security Engineer

    hace 3 semanas


    Bogotá, Bogotá D.E., Colombia Charger Logistics Inc A tiempo completo

    Charger Logistics is a world class asset-basedcarrier. We specialize in delivering your assets, on time and onbudget. With the diverse fleet of equipment, we can handle a rangeof freight, including dedicated loads, specialized hauls,temperature-controlled goods, and HAZMAT cargo. Charger logisticsinvests time and support into its employees to provide them...

  • Cyber Security Engineer

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia Charger Logistics Inc A tiempo completo

    Charger Logistics is a world class asset-basedcarrier. We specialize in delivering your assets, on time and onbudget. With the diverse fleet of equipment, we can handle a rangeof freight, including dedicated loads, specialized hauls,temperature-controlled goods, and HAZMAT cargo. Charger logisticsinvests time and support into its employees to provide them...

  • Cyber Security Engineer

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia Charger Logistics Inc A tiempo completo

    Charger Logistics is a world class asset-basedcarrier. We specialize in delivering your assets, on time and onbudget. With the diverse fleet of equipment, we can handle a rangeof freight, including dedicated loads, specialized hauls,temperature-controlled goods, and HAZMAT cargo. Charger logisticsinvests time and support into its employees to provide them...


  • Bogotá, Bogotá D.E., Colombia Sutherland A tiempo completo

    About UsSutherland is a leading provider of IT services and consulting. We are committed to delivering high-quality solutions that meet the needs of our clients.We are currently seeking an IT technical consultant to join our team. As a Java application support engineer, you will be responsible for providing technical support to clients, troubleshooting...

  • Application Engineer II

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia Johnson Controls A tiempo completo

    En Johnson Controls, estamos comprometidos en trabajar día con día en crear y mantener edificios sustentables que sean más seguros y más inteligentes, buscando tener un impacto positivo no sólo en las personas y las comunidades a las que pertenecen así también en el medio ambiente. Como líderes mundiales en productos y tecnologías de...