Application Security Engineer
Contentsquare · Barcelona (hybrid)
Hybrid
mid
security engineerapplication security
Apply on Contentsquare →
Contentsquare is the all-in-one experience intelligence platform designed to be easily used by anyone who cares about digital journeys. With our flexible and scalable platform, organizations quickly get a deep understanding of their customers’ whole online journey.
We are a global leader in the experience analytics space, with a growing presence across 15 offices worldwide. We’re here to stay—and we’re looking for team members who are excited to drive impact and help us scale even further.
Our aim is to create an inclusive workplace where everyone learns and succeeds. Contentsquare has built a community of individuals who are daring, understanding, and deliberate. We invite you to join us in making the complex simpler—for our customers, their customers, and each other.
Important note: Be careful of scammers pretending to be from Contentsquare. We will never ask for money or contact you through random texts. Any communication from our in house Talent Acquisition team will only ever come from our contentsquare.com or @contentsquare-ext.com domain. For more information, visit our careers blog.
The Contentsquare Security team is looking for an application security engineer (Appsec) who can work closely with the development team, product managers and diverse third-party groups (including bug bounty hunters).
Contentsquare provides a globally leading SaaS service and commits to the highest security standards for its customers. We are ISO 27001 and ISO 27701 certified and maintain robust security initiatives (SOC 2 Type 2 report, private bug bounty program, SIEM, advanced security awareness, etc.).
As an Application Security Engineer, you'll help secure Contentsquare's applications throughout their lifecycle, from identifying and validating vulnerabilities to understanding their root cause, driving remediation with Engineering teams, and improving how security issues are detected and prevented.
You'll bring a strong offensive security mindset and hands-on experience testing web applications, APIs and services, while working closely with developers to translate findings into practical, scalable security improvements. You'll have end-to-end ownership of application security issues, from detection and exploitation through remediation and validation.
Posted 2026-08-19