Super Technologies logo

Principal Application Security Engineer

Super Technologies

On-site
Spain
Full-time
Principal
6+ yrs
Salary not listedPosted 9h ago

Real job — pulled straight from Super Technologies’s careers page · Verified September 29, 2026 · No reposts.

Job description

Super Technologies is hiring a Principal Application Security Engineer — a full-time, based in Spain role. Apply directly on Super Technologies's careers page below.

Principal Appsec Engineer

Location: Spain

Department: Technology

We are on a mission to pioneer the world’s next era of play. As we grow across Europe and Latin America, we’re building The Playstack - the technology powering the next generation of sports, gaming, and fan experiences. Join us, and help make it the most widely used platform in the world! From operations, to marketing, to product, we are looking for talented people who will shape how millions of customers play, watch, and connect every day.

Product Security is responsible for preventing vulnerabilities before code ships, absorbing on-demand security-testing load, and making security testing part of everything that reaches production. This role owns the team's deep offensive capability, running adversary emulation and bypass testing against production systems and providing the technical depth behind the team's hardest architecture reviews. Reporting to the Product Security Lead, the Principal AppSec Engineer sets the bar for pentest quality that engineers execute against.
 
What the role involves
  • Run adversary emulation and bypass testing against production systems to identify exploitable weaknesses.
  • Own the standardised pentest playbooks used for urgent "launching next week" requests and personally handle the highest-complexity engagements.
  • Lead in-depth architecture and design reviews for high-risk features, threat-modelling before code is written and producing security requirements and sign-off.
  • Mature and scale AI-assisted pentest tooling (e.g. NEO, regression code scanning) to increase testing coverage.
  • Mentor less experienced AppSec engineers in pentest methodology and adversarial thinking.
  • Feed confirmed bypass and pentest findings to Detection Engineering & Threat Hunting so each becomes a shipped detection.
  • Contribute to the vendor security testing element of the shared vendor intake process for high-risk vendors.
What we are looking for
  • 6+ years' experience in offensive security — pentesting, red teaming, or adversary emulation — ideally including production/live-environment experience.
  • Strong architecture review skills, with the ability to threat-model a system from a design document rather than only testing a finished build.
  • Familiarity with the modern AppSec tooling landscape (SAST/DAST, AI-assisted pentest tools).
  • Comfortable acting as the technical escalation point for the team's hardest problems.
Nice to have
  • Experience running or contributing to bug bounty triage or vulnerability-disclosure programmes.
What we offer
  • Medical / Health Insurance
  • Open Annual Leave
  • Employee Assistance Programme
  • Training & Learning Development

About Super

We are a global technology group, dedicated to building the future of entertainment and fan-centric experiences. With commercial markets in Brazil, Belgium, Poland, Romania, Greece and Serbia, and a network of offices across Spain, Croatia, Malta, Gibraltar, the Netherlands and the UK, we are a truly international organization. Our purpose at Super has evolved from sports and betting into creating the platform that stretches into the wider world of technology-driven entertainment. With a growing and diverse team of more than 5,000 people, we create immersive, responsible, and personalised experiences for millions of customers worldwide.

Shaping the Future of Play

Everything we do at Super is rooted in doing what is right: for customers, for each other, and for our long-term vision. Our Culture Manifesto is our North Star. It captures our purpose, mission, and the six core beliefs that shape how we think, make decisions, and act every day. Want to explore our culture in more detail? Visit our careers page: super.xyz/careers 

Super is committed to the highest standards of compliance, safety, and responsibility. As such, we are active members of the International Betting Integrity Association (IBIA) and the European Gaming & Betting Association (EGBA).

At Super, we operate as a high-performing team. We hire and grow talent based on ability and potential, regardless of background and identity because we know diverse perspectives, drive better performance.

Get Security Engineer jobs like this→

New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.

Email me new jobs
Patch My PC logo

Cloud Security Engineer

$110k–$145kRemote · US-eligible
✓ From careers page· 46m ago
Raft logo

Raft

New

Staff DevSecOps Engineer

$150k–$210kDulles, VA
✓ From careers page· 48m ago
PepsiCo logo

SAP Security Lead Engineer

Hyderabad, Telangana, India
✓ From careers page· 1h ago
Zalora logo

Junior Security Engineer

Ho Chi Minh City, Vietnam
✓ From careers page· 1h ago

Frequently asked questions

What is the seniority level for Principal Application Security Engineer at Super Technologies?

Principal Application Security Engineer at Super Technologies is a Principal level position.

How do I apply for Principal Application Security Engineer at Super Technologies?

You can view the full description and apply for Principal Application Security Engineer at Super Technologies on EchoJobs: https://echojobs.io/job/super-technologies-principal-appsec-engineer-wbvdq.