Jobs and Careers
MC
MTA – Application Security Engineer
McKessonIrelandfull_timeVerifiedPosted 29 Sept 2025
💰 €53,300/yr
About the role
<p>McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve – we care.</p><p></p><p>What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you.</p><p></p><p>We are seeking an experienced Application Security Engineer to join our Product Security team. The ideal candidate will play a critical role in ensuring the security of our software development lifecycle, deployed application security posture, and operations in accordance with NIST guidelines. This role requires a deep understanding of software security best practices, DevSecOps principles, and the operation of security tooling.</p><p></p><p></p><p><b><span>Key Responsibilities:</span></b><span> </span></p><ul><li><p><b><span>Security Integration in SDLC:</span></b><span> </span></p></li></ul><ul><li><p><span><span>Collaborate with development teams to integrate security best practices into all phases of the Software Development Life Cycle (SDLC).</span></span><span> </span></p></li></ul><ul><li><p><span><span>Implement and manage security automation tools (e.g., SAST, DAST, SCA</span><span>, OSS</span><span>)</span><span>.</span></span><span> </span></p></li></ul><ul><li><p><b><span>DevSecOps</span><span> Implementation:</span></b><span> </span></p></li></ul><ul><li><p><span><span>Support </span><span>the adoption and implementation of </span><span>DevSecOps</span><span> practices across the organization, ensuring security is integrated into the CI/CD pipeline.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Automate</span><span> security testing, monitoring, and reporting processes using industry-standard tools and frameworks.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Collaborate with DevOps teams to ensure </span><span>application security scanning and remediation requirements are met.</span></span><span> </span></p></li></ul><ul><li><p><b><span>Vulnerability Management:</span></b><span> </span></p></li></ul><ul><li><p><span><span>Conduct regular vulnerability assessments and penetration testing on applications and infrastructure.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Monitor and analyze security incidents and vulnerabilities reported by various sources, including threat intelligence feeds.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Work closely with development and operations teams to prioritize and remediate vulnerabilities in a timely manner.</span></span><span> </span></p></li></ul><ul><li><p><b><span>Compliance and Reporting:</span></b><span> </span></p></li></ul><ul><li><p><span><span>Ensure all development activities </span><span>comply with</span><span> the organization’s security policies and standards, and other relevant cybersecurity frameworks and regulations.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Develop and </span><span>maintain</span><span> security documentation, including security policies, procedures, and guidelines.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Cont</span><span>ribute</span><span> rep</span><span>ort</span><span>ing</span><span> on security findings, incidents, and remediation efforts for stakeholders and leadership.</span></span><span> </span></p></li></ul><ul><li><p><b><span>Security Awareness and Training:</span></b><span> </span></p></li></ul><ul><li><p><span><span>Provide training and guidance to development, operations, and QA teams on </span><span>application security</span><span> practices, </span><span>DevSecOps</span><span>, and </span><span>polic</span><span>y standards.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Stay updated with the latest security trends, vulnerabilities, and compliance requirements.</span></span><span> </span></p></li></ul><p></p><p><b><span>Required / Basic Qualifications:</span></b><span> </span></p><ul><li><p>4+ years experience in Application Security / DevOps Engineering</p></li><li><p><span><span>Deep understanding of software security best practices, DevSecOps principles, and the operation of security tooling.</span></span></p></li></ul><ul><li><p><span><span>Proficiency</span><span> in </span><span>scripting such</span><span> as Python, </span><span>Bash, </span><span>Javascript</span><span>, etc.</span></span><span> </span></p></li></ul><ul><li><p><span><span>Experience </span><span>implementing </span><span>security </span><span>tools</span><span> </span><span>such as OWASP ZAP, Veracode, SonarQube</span><span>, and GitHub</span><span> Advanced Securi
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s
Similar roles
Technischer Assistent (TA / MTA / CTA)
Senova GmbH
Weimar, Thüringen
Pflegefachkraft, MTA-O oder OTA mit Weiterbildung zum Praxisanleiter (m/w/d)
Ilm-Kreis-Kliniken Arnstadt-Ilmenau gGmbH Klinik Arnstadt
Arnstadt
Medizinisch-technischer Laboratoriumsassistent - MTA-L (m/w/d), Zentralklinik Bad Berka GmbH
Zentralklinik Bad Berka GmbH
Bad Berka