Security Engineer (web application penetration tester - source code analysis)

Brussels, Belgium

Posted:11 days ago
Location:Brussels, Belgium
Job Ref:BH-33698
Job Type:Contract
Expiry date:11/29/2022
Contact:Alex Englander
Service Description:

We are looking for a Security Engineer (web application penetration tester - source code analysis) for its office in Diegem, Belgium.


  • Organize, execute and report on manual penetration testing and code review of web applications and mobile applications (iOS)
  • Set up, maintain and improve SAST and DAST tooling as part of the CI/CD pipeline (Specifically Micro Focus Fortify & Micro Focus Fortify WebInspect)
  • Analyze results produced by automated SAST and DAST scanning (Specifically using Micro Focus Software Security Center)
  • Provide detailed mitigations for identified security vulnerabilities
  • Coordinating vulnerability management and planning together with stakeholders
  • Follow-up on security-related issues beyond specific applications, ie: policy and architecture
  • Provide technical support to internal auditing teams


  • Experience with security testing
  • eWPT certification, eWPTX (or equivalent) is a plus
  • Effective communication and reporting skills
  • Knowledge of application security testing as part of DevOps/DevSecOps
  • Knowledge of network security
  • Experience with penetration testing methodologies (OWASP Top 10, OWASP WSTG, ...)
  • Experience with penetration testing tools (Burp Suite Pro, SQLMap, ...)
  • Experience with manual source code analysis (Java, Python, PHP, ...)
  • Experience with project management
  • A habit of staying up to date with the latest security news and applying it in your work whenever relevant
  • The ability to work in an ad-hoc manner
  • Fluent in English both verbally and in the written word
  • Fluent in Dutch verbally or in the written word is a plus
  • Working on site in general, with possibility of flexibility

Apply now