6 дней назад
Application Security Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Application Security Engineer (AI/software consulting): Defining and validating security controls for a greenfield digital news platform with an accent on threat modeling, API security, identity controls, and privacy engineering. Focus on securing composable CMS and media integrations, coordinating vulnerability remediation, and preparing security acceptance evidence for a high-traffic public platform.
Location: Remote from Poland or Georgia
Company
is an AI-native consulting and technology services firm delivering cloud, data, software engineering, and artificial intelligence solutions for enterprise clients.
What you will do
- Define and validate application and platform security controls throughout the full delivery lifecycle.
- Perform architecture and threat-model reviews as the digital news platform evolves.
- Review authentication, authorization, privileged access, secrets, credentials, and token management across CMS, APIs, and integrated services.
- Validate API, integration, encryption, secure data handling, logging, monitoring, and incident-response requirements.
- Support vulnerability scanning and penetration testing, coordinate remediation, and conduct third-party security assessments.
- Support GDPR and privacy engineering requirements and prepare security acceptance evidence before launch.
Requirements
- 5+ years of experience in application security, security engineering, or a closely related role.
- Experience with threat modeling and architecture security reviews for complex, multi-component platforms.
- Strong knowledge of OAuth, OIDC, RBAC, privileged access management, API security, secrets management, and token lifecycles.
- Experience coordinating vulnerability scanning and penetration-testing programs.
- Knowledge of encryption, secure data handling, GDPR, and privacy-by-design engineering.
- Ability to provide remediation guidance and security acceptance documentation for engineering and delivery teams.
Nice to have
- Experience securing composable CMS or media architectures such as AEM or Amplience.
- Experience with high-traffic public-facing platforms and security logging or monitoring tools, including SIEM.
- Experience with third-party vendor security assessments and incident-response playbooks.
- CISSP, OSCP, CEH, or an equivalent certification.
- Experience in phased, full-lifecycle delivery alongside engineering and architecture teams.
Culture & Benefits
- Work on AI-driven projects across multiple industries, from startup innovation to enterprise transformation.
- Collaborate with a global team across continents and cultures.
- Inclusive environment focused on continuous learning, innovation, and ethical AI.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
8 дней назад
Application Security Engineer - Vice President (API Security)
6 дней назад
Senior Application Security Engineer (AI)
111 000 - 144 400$
11 дней назад
Principal Security Engineer (Product Security)
Jito
10 дней назад
Senior Security Engineer (AI Security)
180 000 - 200 000$
11 дней назад
Senior Security Engineer (AI)
13 000 - 17 000PLN
13 дней назад