Cyber Security – Application Security Engineer, Associate

Blackrock.wd1.blackrock Professional

Apply to this job
B3G - Skyline Belgrade, Kneza Milosa 88, Belgrade Until 10/3/2026 H-1B sponsor history First posted August 4, 2026 Last posted August 4, 2026
Job description

About this role

We are seeking a motivated Application Security Penetration Tester and Code Reviewer to join our team. The ideal candidate will be responsible for ensuring the security and integrity of our software applications using comprehensive tools, heavily using AI and all types of security testing. This role involves performing penetration tests, secure designs, static code analysis, dynamic code analysis, and software composition analysis to identify and mitigate security vulnerabilities. The role could also include other tasks such as automations, pipeline configurations and more. 

 

Key Responsibilities: 

  • Configure and manage automated security testing tools to perform regular scans of the codebase in static code analysis, dynamic, and API tests. 
  • Perfom penetration tests on web apps, mobile apps, APIs, thick clients, network, cloud, AI 
  • Analyze the results of security scans and identify true positive findings. 
  • Collaborate with the development team to provide detailed feedback and recommendations for remediation of identified security issues. 
  • Document and report security findings, including mitigation strategies 
  • Handle the bug bounty program, help with analysis and triage where needed 

  

Qualifications and Tech skills: 

  • Bachelor's degree in Computer Science, Information Security, or a related field. 
  • Experience in application security, code review, and security testing. 
  • Basic knowledge of static and dynamic code analysis tools and techniques. 
  • Familiarity with software composition analysis tools and methodologies. 
  • Experience with automated security testing tools and their configuration. 
  • Familiarity with Java, C, C++, or .Net. 
  • Strong understanding of Object-Oriented Programming. 
  • Proficient in reading SQL statements. 
  • Knowledgeable about ADO pipelines. 
  • Familiarity with coding agent AI tools like Claude, Devin, Codex. 
  • Strong analytical and problem-solving skills. 
  • Good communication and collaboration skills to work effectively with development teams. 
  • Relevant certifications such as CISSP, CEH, or OSCP are a plus. 

Our benefits

To help you stay energized, engaged and inspired, we offer a wide range of employee benefits including: retirement investment and tools designed to help you in building a sound financial future; access to education reimbursement; comprehensive resources to support your physical health and emotional well-being; family support programs; and Flexible Time Off (FTO) so you can relax, recharge and be there for the people you care about.

Our hybrid work model

BlackRock’s hybrid work model is designed to enable a culture of collaboration and apprenticeship that enriches the experience of our employees, while supporting flexibility for all. Employees are currently required to work at least 4 days in the office per week, with the flexibility to work from home 1 day a week. Some business groups may require more time in the office due to their roles and responsibilities. We remain focused on increasing the impactful moments that arise when we work together in person – aligned with our commitment to performance and innovation. As a new joiner, you can count on this hybrid model to accelerate your learning and onboarding experience here at BlackRock.


Guidance on AI use for candidates


At BlackRock, AI has long been part of how we work – enhancing decision-making, improving operations, and helping us deliver better outcomes for clients. We encourage candidates to use AI thoughtfully to learn, prepare, and work more effectively; but during our interview process, we want to focus on getting to know you through your own experiences, thinking, and judgment. To support you, we’ve provided guidance on when and how to use AI during our hiring process so you can approach each step with confidence and showcase your best self.


About BlackRock


At BlackRock, we are all connected by one mission: to help more and more people experience financial well-being.  Our clients, and the people they serve, are saving for retirement, paying for their children’s educations, buying homes and starting businesses. Their investments also help to strengthen the global economy: support businesses small and large; finance infrastructure projects that connect and power cities; and facilitate innovations that drive progress.


This mission would not be possible without our smartest investment – the one we make in our employees. It’s why we’re dedicated to creating an environment where our colleagues feel welcomed, valued and supported with networks, benefits and development opportunities to help them thrive.


To learn more about BlackRock, please visit Careers.BlackRock.com. We also encourage you to get to know us on LinkedIn, Instagram, YouTube, X, and TikTok.


BlackRock is proud to be an Equal Opportunity Employer.  We evaluate qualified applicants without regard to age, disability, race, religion, sex, sexual orientation and other protected characteristics at law.

About this role

Summary

Perform security testing, penetration tests, code analysis, and collaborate on security improvements.

Job title

Application Security Penetration Tester and Code Reviewer

Experience level

none

Industry

finance

Location requirements

Belgrade, hybrid work allowed, at least 4 days office

Salary

Not specified

Visa sponsorship

H-1B sponsor history

Management role

No

Skills & keywords

Required skills

static code analysisdynamic code analysissecurity testing toolsJavaCC++SQLAdo pipelines

Preferred skills

CISSPCEHOSCPAI tools like Claude, Devin, Codex

Specializations

application securitypenetration testingcode reviewsecurity testingAI
Locations

Structured locations inferred from the posting.

Unknown location

Hybrid