TL;DR
Application Security Engineer: Enhancing the security of hirify.global products, focusing on data protection and driving business resilience. Focus on security assessments, vulnerability scanning, and integrating secure development practices into the software development lifecycle.
Location: Remote job is only possible in case the employee is located in Poland.
Company
hirify.global is the Data and AI Trust Company, specializing in helping organizations ensure their data and AI are fully understood, secured, and resilient to enable the acceleration of safe AI at scale.
What you will do
- Conduct regular security assessments, vulnerability scanning, and penetration testing of hirify.global products and services.
- Work with development teams to integrate secure development practices into the software development lifecycle.
- Collaborate on the design and implementation of security within hirify.global products.
- Perform threat modeling and design reviews for new and existing hirify.global products.
- Conduct manual source code security audits and use automated application-analysis tools.
Requirements
- Ability to read source code on programming languages (such as C/C++/C#/JavaScript).
- A good understanding of the principles of secure software development.
- A desire to develop in the field of application security.
- Lively and flexible mind, clear logic, and analytical skills.
- The desire and ability to work as part of a team.
- English proficiency for daily communication within international teams.
Nice to have
- Knowledge of scripting languages (Python, PowerShell, Bash, Ruby, etc.).
- Knowledge of modern cryptographic algorithms.
- Experience with DAST and SAST tools.
- Skills using OWASP ZAP, Burp Suite, Kali Linux tools.
- Certifications such as OSCP, CEH, CSSLP, CCSP, AWS Certified Security, etc.
Culture & Benefits
- 26 paid days off annually, plus 4 extra global hirify.globale Days for self-care and 24 paid volunteer hours annually through hirify.global Cares.
- Paid parental, maternity, and paternity leave.
- Fully covered family medical plan, dental, rehab, and vaccinations.
- Employer pension contribution via PPK.
- Opportunities to learn and grow through on-demand libraries (LinkedIn Learning, O’Reilly), mentoring, workshops and learning events like our annual Global Day of Learning.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →