- Contract
- Anywhere
Application Security Engineer (Contract – 3+ months | Remote | Brussels-based Pharma Client)
Role Overview
For a leading pharmaceutical organization based in Brussels, we are looking for an Application Security Engineer to strengthen the security of custom-developed applications and platforms.
In this role, you will act as the technical expert for application security tooling and practices, ensuring secure development processes, driving platform improvements, and supporting development teams with expert guidance. You will operate at the intersection of security, development, and platform engineering, contributing directly to reducing application risk across the organization.
Key Responsibilities
🔐 Security Tooling Ownership & Governance
Own and manage application security tooling such as Snyk, Invicti, Intigriti, and Sonatype (or equivalent)
Ensure platform performance, quality, and lifecycle management (updates, roadmap, feature adoption)
Monitor SLAs, dashboards, and tool health, ensuring data accuracy and reliability
Align with internal teams and stakeholders on tooling strategy and improvements
🚀 Project Ownership
Lead key platform initiatives, including:
Migration of application security tools to enhanced platforms (incl. AI/LLM scanning capabilities)
Transition of software composition analysis tools to SaaS environments
Coordinate with internal teams, vendors, and external partners to ensure successful delivery
Ensure smooth operationalization with minimal disruption
🧑💻 Development Security Reviews
Conduct or support secure design reviews and code review assessments
Act as a subject matter expert for developers, architects, and project managers
Provide actionable security recommendations across the SDLC
🧠 Threat Modeling
Lead or support threat modeling activities (e.g., STRIDE, attack trees)
Help teams identify risks early in the development lifecycle
Ensure consistency with internal methodologies and security standards
🤝 Collaboration & Continuous Improvement
Work closely with security and engineering teams to ensure alignment on best practices
Drive process improvements, automation, and efficiency in application security
Contribute to security awareness and developer enablement initiatives
Required Skills & Experience
Strong hands-on experience with AppSec tools (Snyk, Invicti, Sonatype, bug bounty platforms like Intigriti, or similar)
Proven experience in secure SDLC, secure coding, and application security assessments
Practical knowledge of threat modeling methodologies (e.g., STRIDE)
Experience working in cross-functional environments (development, security, platform teams)
Familiarity with cloud and modern application architectures
Nice to have:
Exposure to GenAI / LLM security risks (e.g., prompt injection, AI scanning tools)
Experience in regulated environments (e.g., pharma, life sciences)
Soft Skills
Strong ownership and accountability
Excellent communication and stakeholder management skills
Analytical mindset with the ability to solve complex security challenges
Collaborative, pragmatic, and solution-oriented approach
Practical Details
Contract: Freelance / Contract (3+ months, with possible extension)
Location: Brussels-based client
Work setup: Fully remote
Start date: ASAP
