Senior Application Security Engineer (Fintech/iGaming)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Application Security Engineer (Cybersecurity): Designing and implementing secure architecture from cloud infrastructure to applications with an accent on secure-by-design principles and CI/CD integration. Focus on building declarative threat models, securing microservices in Kubernetes/AWS, and overseeing the migration of services to public clouds.
Location: Remote
Company
is a global company creating end-to-end tech products for clients across Fintech, iGaming, and Marketing.
What you will do
- Design security architecture from cloud infrastructure to application using secure-by-design principles.
- Collaborate with product managers, architects, and developers to implement security controls and platforms.
- Integrate security scanning and tooling into CI/CD pipelines and deployment manifests.
- Define policies, controls, and capabilities for the protection of products and environments.
- Build and validate automated declarative threat models.
- Oversee product security aspects for the migration of services from data centers to public clouds (e.g., AWS).
Requirements
- Experience integrating security scanning/tooling into development pipelines.
- Experience analyzing and securing microservices developed using JavaScript and TypeScript.
- Proficiency with CI/CD pipelines (GitLab, Jenkins) and IaC models (Terraform, Helm, or CloudFormation).
- Hands-on development experience in Python or shell scripting.
- Strong understanding of supply chain security, software integrity, and secure software delivery.
- Experience with Docker and mesh technologies such as Istio.
Nice to have
- In-depth experience architecting secure services on Kubernetes and AWS.
- Security certifications such as CISSP, CISM, CCSK, CCSP, or CEH.
- Knowledge of GDPR and industry frameworks like PCI, ISO 27001, or NIST.
- Experience working with Agile methodologies.
Culture & Benefits
- 20 vacation days annually.
- 6 sick days without a medical certificate.
- International corporate events, parties, and team buildings.
- Career growth opportunities within a fast-growing global company.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →