About the job
Join Air Apps as a Security Engineer
At Air Apps, we are driven by innovation and a commitment to excellence. Founded in Lisbon, Portugal in 2018, we have transformed into a global leader in AI-driven solutions with over 100 million downloads. Our mission is to revolutionize planning for individuals and entrepreneurs through our cutting-edge AI-powered Personal & Entrepreneurial Resource Planner (PRP).
We pride ourselves on our self-funded growth and our long-term focus on pushing the boundaries of technology. When you join our team, you will be at the forefront of developing products that empower people worldwide to enhance their productivity and lifestyle.
If you are passionate about technology and looking to make a tangible impact, we invite you to help us redefine resource management and change lives.
Your Role
As a Security Engineer at Air Apps, you will be instrumental in protecting our applications, infrastructure, and data from various threats. Collaborating closely with development, DevOps, and IT teams, you will implement secure coding practices, conduct vulnerability assessments, and develop threat models to ensure our systems are resilient against cyber threats.
Your technical expertise will be essential in establishing a secure development lifecycle (SDLC) and crafting proactive risk mitigation strategies that protect our digital assets.
Key Responsibilities
Develop and implement threat modeling techniques to identify and mitigate security risks.
Conduct vulnerability scans, penetration tests, and comprehensive security assessments.
Enforce secure coding practices in collaboration with our development teams.
Work with DevOps to seamlessly integrate security measures into CI/CD pipelines.
Monitor and respond to security incidents, including performing root cause analysis.
Ensure compliance with relevant security standards and regulations (e.g., ISO 27001, GDPR, SOC 2).
Design and implement identity and access management (IAM) policies and encryption standards.
Collaborate with product teams to perform thorough security reviews of features, APIs, and integrations.

