4 дня назад
Senior Software Engineer (Application Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Software Engineer (Application Security) (CI/CD, Cloud, Vulnerability Management): Building and maintaining security automation, CI/CD pipelines, backend services, APIs, and vulnerability-processing workflows across Avaloq’s software delivery lifecycle with an accent on application security, container scanning, and cloud-native environments. Focus on integrating security tooling, assessing vulnerabilities and exploitability, and developing actionable reporting for remediation and compliance.
Location: Edinburgh, Scotland, United Kingdom; hybrid and flexible working available.
Company
provides wealth management technology and services for financial institutions, including private banks, investment managers, retail banks, and neo banks.
What you will do
- Design, implement, and maintain internal CI/CD pipelines and automation tooling for vulnerability management, security assurance, reporting, and software delivery.
- Develop security integrations for source-code, repository, dependency, and container scanning across the software delivery lifecycle.
- Build and maintain backend services and REST APIs for security scanning, vulnerability analysis, event processing, reporting, and internal platform integration.
- Monitor automated build and security validation processes, investigate findings and false positives, assess exploitability and risk, and support remediation.
- Develop vulnerability-processing workflows, issue-management integrations such as Jira, and dashboards covering remediation status, security risks, and compliance.
- Coordinate security actions across teams and contribute to technical discussions on secure software development and continuous improvement.
Requirements
- University degree in Information Technology, Computer Science, Mathematics, Physics, or a related technical discipline.
- Senior-level software engineering experience with CI/CD pipelines, developer tooling, automation platforms, and service integration.
- Hands-on experience with several of Java, Spring Boot, Python, JavaScript, TypeScript, Gradle, Jenkins, Groovy, REST APIs, event-driven architectures, and messaging technologies.
- Practical experience with Docker and Kubernetes and/or OpenShift, containerized applications, and container orchestration.
- Strong understanding of application security, secure software development, security standards, vulnerability management, security scanning, and automated security testing.
- Ability to analyse complex technical and security topics, communicate them clearly to non-technical stakeholders, and collaborate across teams.
Nice to have
- Knowledge and practical experience with Oracle Cloud Infrastructure and cloud-native technologies.
- Experience with software composition analysis, source-code security scanning, container security, and vulnerability lifecycle management.
- Experience or exposure to financial markets and financial products.
Culture & Benefits
- Hybrid and flexible working designed to support work-life balance.
- International environment with colleagues and clients across multiple countries.
- Collaborative and supportive workplace focused on diversity, inclusion, and equal opportunity.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
9 дней назад
Product Security Engineer (AI)
227 000 - 296 000₽
8 дней назад
Product Security Engineer (AI)
7 дней назад
Cyber Security Engineer (Azure)
5 дней назад
AI Security Consultant
10 дней назад
Staff Product Security Architect
168 000 - 238 000$
7 дней назад