Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Clicksign

AppSec Specialist, Application Security

Clicksign

. Assess technical vulnerabilities and propose solutions to enhance platform security, working across the Ruby, Go, and PHP stacks and developing security fixes in AWS/Lambda.

Posted 9/22/2026full-timeRemote • BrazilMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Application Security and Product Security, with a strong focus on threat modeling, secure coding practices, and CI/CD pipeline security. Proficient in Ruby, PHP, and AWS/Lambda, with a proven ability to collaborate effectively with Engineering teams to implement security solutions.

Highest-signal resume keywords
Ruby ProgrammingPHP ProgrammingAWS/Lambda AutomationApplication SecurityCI/CD Pipeline Security

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Threat ModelingSecure-By-Design PrinciplesCode Fix ImplementationSecurity Tool IntegrationSASTSCASecret ScanningVulnerability AssessmentProduction Code DeliveryAutomation Development
Soft Skills
CollaborationCommunication
Tools & Technologies
AWSCI/CD ToolsSecurity Tools
Certifications & Qualifications
Information Security Certifications
Industry Keywords
Application SecurityProduct SecurityCloud SecurityEngineering

Tech Stack

Tools & technologies
AWSPHPRubyGo

About the role

Key responsibilities & impact
  • Assess technical vulnerabilities and propose solutions to enhance platform security, working across the Ruby, Go, and PHP stacks and developing security fixes in AWS/Lambda.
  • Rapidly assess requests in the development queue, reducing the AppSec bottleneck and unblocking Engineering deliveries.
  • Proactively propose and implement code fixes, going beyond simply reporting findings.
  • Lead threat modeling activities and apply secure-by-design principles to product initiatives.
  • Create guardrails, tooling, and automations that make the secure path the default for Engineering teams.
  • Integrate and calibrate security tools in the CI/CD pipeline, including SAST, SCA, and secret scanning, while keeping noise and false positives low.

Requirements

What you’ll need
  • Experience in software or security engineering, writing and delivering production code—ideally in Ruby and PHP—including automations in AWS/Lambda.
  • Experience with Application Security/Product Security, including threat modeling, secure-by-design practices, and the creation of guardrails and tooling.
  • Solid knowledge of CI/CD pipeline security, with calibrated SAST, SCA, and secret scanning tools.
  • Knowledge of AWS cloud security as applied to products.
  • Information security certifications are a plus.
  • Strong ability to collaborate with Engineering teams, proposing and implementing fixes directly in the code.
  • Ability to communicate in English, both written and spoken.

Benefits

Comp & perks
  • 100% remote work.
  • A trust-based culture focused on results, with plenty of challenges and learning opportunities.
  • Autonomy and ownership in a highly collaborative and empathetic environment.
  • A feedback culture and regular 1:1s with supportive leadership and no micromanagement.
  • Meal and food allowance.
  • Childcare assistance.
  • Home office allowance.
  • Healthcare allowance.
  • Education and cultural allowance.
  • Gympass.
  • Birthday day off.
  • Discounts on therapy.
  • Discounts on English courses.
  • Other partner benefits.