Senior Application Security Specialist – Secure SDLC & Cloud Security
Digital
Security
Master
Senior (7+)
- Location
- Braine-l'Alleud, Walloon Brabant
- Work type
- Consultancy
- Work model
- Fulltime, Hybrid
Our client, a global leader in the biopharmaceutical sector, is looking for a Senior Application Security Specialist to join their security function. This role focuses on securing internally developed and SaaS applications while leading strategic tooling migrations and providing expert guidance to a global center of excellence.
Responsibilities
- Provide expert guidance to the Application Security Center of Excellence to oversee day-to-day operations and handle complex escalations.
- Lead the migration of security tooling platforms, including the transition of dynamic and component analysis tools to SaaS environments.
- Support application owners and developers with onboarding, tooling integration, and complex security inquiries.
- Drive improvements in secure development processes, security metrics, and technical documentation.
- Collaborate with stakeholders across development, data science, and platform teams to define security roadmaps.
- Perform design security reviews, analyze code review reports, and conduct threat modeling as required.
Requirements
- 8+ years of experience in Application Security within a custom software development environment.
- Expert knowledge of AppSec tooling including Snyk, Invicti, Sonatype, and Intigriti.
- Strong expertise in secure SDLC, secure coding concepts, and vulnerability management.
- Experience working in large, international organizations with complex stakeholder landscapes.
- You bring the ability to act as a subject matter expert and advisor, guiding operational teams rather than daily execution.
- You possess a proactive and autonomous mindset with a focus on driving security initiatives forward.
- You are fluent in English.
Nice to Haves
- Security certifications related to AppSec or penetration testing.
- Experience within the pharmaceutical or life sciences industry.
- Familiarity with GxP regulatory concepts.
- Exposure to GenAI and LLM security topics.
- Knowledge of French or Dutch.
Offer
- Start date: ASAP
- Duration: until end of June 2026 (extension likely)
- Work regime: Full-time (minimum 4 days per week)
- Location: Brussels
- Working model: Fully remote (VDI only, equipment not provided)
- Contract: open to both permanent employees and freelancers
# 94267
)