
A Hub AB · Helsingborg
ABOUT THE POSITION AND THE COMPANY With a wide range of products for the whole family, Biltema is a strong brand with more than 190 stores around the Nordic...
With a wide range of products for the whole family, Biltema is a strong brand with more than 190 stores around the Nordic region,
with expansion plans for more. The success and vision are based on a simple concept that has been refined over the years; To make
it easier financially for people to have a high-quality car, boat, home, tools and leisure goods and thereby create a richer
leisure time for these people. They go their own way and have therefore chosen to invest in their own operation and development
of, among other things, systems, and technical solutions. Biltema Nordic Services is a Biltema service company with various
departments that together deliver a complete solution for the department stores' assortment and operations. The IT department in
Helsingborg delivers systems and digital solutions in collaboration with Biltema's other companies within the Group for our Nordic
markets.
You will be part of a team with 9 colleagues who, together with the entire IT department, develop, manage, and support both
proprietary products and systems, and also well-known systems from market-leading suppliers. Together with your colleagues, the
mission is to develop, integrate and automate Biltema's digital platforms and systems.
We are seeking a skilled Application Security Engineer with expertise in the Microsoft technology stack to join our security team.
In this role, you will collaborate with developers, architects, and DevOps engineers to ensure secure design, development, and
deployment of applications and services across on-premises and cloud environments (Azure). You will play a key role in identifying
risks, implementing secure coding practices, and supporting security initiatives across the software development lifecycle:
and third-party tools.
Microsoft Entra ID, and Defender for Cloud.
Start: By agreement
Working hours: Standard office hours with the possibility for hybrid work.
Location: Helsingborg
Type of employment: This assignment is a recruitment, and the employment will be directly with our client. Salary, terms, and
conditions are discussed separately.
The recruitment process is managed by A-hub. Therefore, Biltema Nordic Services requests that all inquiries regarding the position
be directed to A-Hub.
ABOUT THE POSITION AND THE COMPANY With a wide range of products for the entire family, Biltema is a strong brand with more than 160 stores across the Nordic region, and plans for further expansion. The success and vision are based on a simple concept that has been refined over the years; To make it economically easier for people to have cars, boats, homes, tools, and leisure articles of high quality, thereby creating a richer leisure time for these people. They choose their own path and have therefore decided to invest in their own operations and development of systems and technical solutions, among other things. Biltema Nordic Services is a service company within Biltema with various departments that together deliver a complete solution for the department stores' assortment and operations. The IT department in Helsingborg provides systems and digital solutions in collaboration with Biltema's other companies within the group for our Nordic markets. You will be part of a large team of colleagues who, together with the entire IT department, develop, manage, and support both proprietary products and systems, as well as well-known systems from market-leading suppliers. Together with your colleagues, the mission is to develop, integrate, and automate Biltema's over 150 digital platforms and systems. YOU ARE OFFERED * To work for a company with healthy values and play an important role in the future development of Biltema's systems. * Work in an organization with clear leadership and a clear and long-term vision. * The opportunity to work at a well-managed and very prosperous company that values entrepreneurship and simplicity. Key Responsibilities * Design, implement, and manage Microsoft Azure infrastructure (VMs, networking, storage, security). * Administer Microsoft 365 services (Exchange, Teams, OneDrive, SharePoint) with focus on security and performance. * Manage user accounts, permissions, and hybrid integrations (Azure AD/Entra ID, conditional access). * Monitor system health, performance, and security across Azure and Microsoft 365. * Automate and optimize deployments using scripting and Infrastructure-as-Code (PowerShell, ARM, Terraform). * Provide support and guidance on Microsoft 365 and Azure. * Manage and troubleshoot Citrix environments (VDI, application streaming). * Deploy and support virtualization platforms (VMware, Hyper-V) and related components. * Administer server infrastructure, lifecycle management, patching, and capacity planning. * Manage SCCM/Intune for updates, patches, and application delivery. * Provide 2nd/3rd line support for infrastructure services and applications. * Administer and troubleshoot Active Directory. * Administer Active Directory (objects, GPOs, replication, security). * Work with networking (LAN, WAN, VPNs, firewalls, routing, switching). * Manage storage, backup, and disaster recovery solutions. * Implement monitoring and alerting for availability and incident response. * Collaborate with cybersecurity to enforce security best practices. * Develop automation scripts to streamline provisioning, configuration, and monitoring. * Stay updated on emerging technologies and recommend improvements. * Document infrastructure, processes, and best practices. * Share knowledge and mentor team members. * Participate in IT projects and seek continuous learning opportunities. Qualifications & Skills * Proven experience in Citrix administration (VDI, application streaming, deployments, and maintenance). * Strong experience in virtualization (VMware, Hyper-V). * Demonstrated experience in Microsoft 365 (Exchange Online, Teams, OneDrive, SharePoint) and Azure administration (IaaS, PaaS, identity management, conditional access). * Strong Active Directory knowledge (objects, group policies, replication). * Proficiency in PowerShell scripting; knowledge of IaC tools (Terraform, ARM, Bicep) is a plus. * Working knowledge of networking concepts (TCP/IP, DNS, DHCP, VPN, routing, switching, firewall rules). * Experience managing backup solutions, storage systems, and disaster recovery planning. * Familiarity with SQL administration. * Experience with endpoint management tools such as SCCM and/or Intune. ADDITIONAL INFORMATION Start: By agreement Working hours: Standard office hours with the possibility for hybrid work. Location: Helsingborg Type of employment: This assignment is a recruitment, and the employment will be directly with our client. Salary, terms, and conditions are discussed separately. The recruitment process is managed by A-hub. Therefore, Biltema Nordic Services requests that all inquiries regarding the position be directed to A-Hub.
TL;DR We are seeking an Application Security Engineer to champion security across our entire development lifecycle. You’ll play a pivotal role in reviewing code, designing secure features, and mentoring engineers, ensuring security is at the heart of everything we build. If you’re passionate about application security, thrive on close collaboration with developers, and want to do the work of your life, this is your opportunity WHY LOVABLE? Lovable lets anyone and everyone build software with any language. From solopreneurs to Fortune 100 teams, millions of people use Lovable to transform raw ideas into real products - fast. We are at the forefront of a foundational shift in software creation, which means you have an unprecedented opportunity to change the way the digital world works. Lovable-built applications and websites are visited hundreds of millions of times a month, and our enterprise footprint is compounding fast. And we’re just getting started. We’re a small, talent-dense team building a generation-defining company from Stockholm. We value extreme ownership, high velocity, and low-ego collaboration. We seek out people who care deeply, ship fast, and are eager to make a dent in the world. WHAT YOU’LL BRING * 5+ years of experience in application security, securing cloud-native environments at product-focused tech companies, high-growth startups, or leading AI labs. * Strong programming and engineering skills. * Deep expertise in application security: secure code review, threat modeling, SAST/DAST, supply chain security, product patching, and vulnerability management. * Strong background in securing engineering infrastructure: CI/CD pipelines, secrets management, service-to-service authentication, containerized workloads, and public cloud platforms. * Hands-on experience collaborating with developers to design and implement security features and best practices. * Passion for educating and mentoring engineers on secure coding, vulnerability remediation, and emerging threats. * Systems mindset: comfortable reading and contributing to codebases, building security tooling, and integrating security into engineering workflows. * Bonus: Experience building internal security tools or contributing to open-source security projects. WHAT YOU’LL DO * Conduct secure code reviews, threat modeling, and architecture assessments to identify and mitigate vulnerabilities early. * Work closely with engineering teams to design and implement security features, provide actionable feedback, and ensure security is embedded in product development. * Lead security training, workshops, and 1:1 mentoring to upskill developers and foster a security-first culture. * Integrate SAST/DAST and supply chain security tools into our CI/CD pipelines for continuous, automated protection. * Detect, triage, and respond to application vulnerabilities and incidents, driving remediation and continuous improvement. * Monitor and address emerging risks in AI infrastructure, LLM pipelines, and third-party dependencies. * Secure the last piece of software. OUR TECH STACK * Frontend: React and Typescript * Backend: Golang and Rust * Cloud: Cloudflare, Google Cloud, AWS, Terraform * DevOps & Tooling: CI/CD pipelines, observability, infrastructure-as-code And always exploring what’s next. HOW TO APPLY * Please submit your application in English—our working language at Lovable. * We’re committed to fair and equal treatment for all candidates. If you’re interested, apply via our careers portal
WHO WE ARE Moniepoint Inc. is Africa’s all-in-one financial platform, helping 20 million businesses and individuals access seamless payments, banking, credit, cross-border, and business management tools each month. As Nigeria’s largest merchant acquirer, we power most of the country’s point-of-sale (POS) transactions. Through our subsidiaries, Moniepoint Inc. processes over $250 billion in digital payment transaction value annually. ABOUT THE ROLE Moniepoint is seeking a passionate Application Security Engineer to drive security across our services and development pipelines. In this role, you’ll champion security best practices, embed application security into the product lifecycles, and empower engineering teams to build and release safe products KEY RESPONSIBILITIES * Act as a Security Champion across product teams, influencing design and engineering decisions to prioritize security from the outset. * Design solutions that are Secure by Design, integrating threat modeling and security requirements into feature architecture and design reviews. * Promote and enforce Secure Coding standards through CI/CD automation, peer reviews, and development training to reduce vulnerabilities at the source. * Lead Vulnerability Management & Remediation, overseeing identification, risk-based triage, and tracking of remediation efforts for security issues. * Develop and maintain standard security packages (e.g., secure configuration baselines, code templates, CI/CD security integrations) for consistent use across engineering teams. * Conduct and support Penetration Testing, both hands-on and automated to uncover vulnerabilities throughout environments, platforms, and release cycles. * Enable continuous improvement through Collaboration & Enablement, delivering security knowledge transfer, best practices, and feedback loops across teams. TO SUCCEED IN THIS ROLE, YOU SHOULD HAVE * 3 - 5 years of hands-on experience in application security (AppSec), DevSecOps, or similar roles. * Software engineer with a keen interest in Security. * At least 2 years of experience working in an engineering team a plus * Deep understanding of secure software development lifecycle (SDLC) and first-principles of secure-by-design engineering. * Skilled in security scanning tools (e.g., SAST, DAST, SCA), incident and remediation workflows, and security automation. * Proficiency in reading and writing code for Java/Python/JavaScript and cloud platforms (AWS/Azure/GCP) * Proven experience with pentesting or red-team engagements, identifying and exploiting application-level vulnerabilities. * Excellent communication skills, you're able to translate technical risks into actionable steps and help engineers incorporate security improvements. * Comfortable building trust as a security mentor and champion, raising security maturity across teams with patience and influence. * Contributions to security tooling/open-source projects. * OSCP, OSCE, GXPN, or similar offensive security certifications a plus * Experience with container sec What we can offer you * Culture -We put our people first and prioritize the well-being of every team member. We’ve built a company where all opinions carry weight and where all voices are heard. We value and respect each other and always look out for one another. Above all, we are human. * Learning - We have a learning and development-focused environment with an emphasis on knowledge sharing, training, and regular internal technical talks. * Compensation - You’ll receive an attractive salary, pension, health insurance,, Employee Stock Options, annual bonus, plus other benefits. What to expect in the hiring process * A preliminary phone call with the recruiter * A take home assessment * A technical interview with a lead in our Engineering Team * A behavioural and technical interview with a member of the Executive team.