Application Security Expert (AWS)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Application Security Expert (AWS/AppSec): Designing and implementing secure application architectures and automating security controls for telecommunication systems with an accent on cloud security and secure-by-design principles. Focus on threat modeling, analyzing source code for vulnerabilities, and building security frameworks for modern tech stacks.
Location: Hybrid - Must be based in Warsaw, Poland (1-2 days per week in office)
Company
T-Mobile Poland is a leading telecommunications company dedicated to providing innovative and secure solutions that drive growth and efficiency for its clients.
What you will do
- Automate and standardize application security controls in cooperation with the CICD team.
- Analyze source code to mitigate identified weaknesses and vulnerabilities.
- Perform software architecture design reviews for both on-prem and cloud deployments.
- Collaborate with engineering teams to architect and implement secure-by-design solutions.
- Define, document, and supervise the implementation of security guidelines and standards.
- Build security frameworks and libraries to provide security by default.
Requirements
- Location: Must be based in Poland to support the hybrid work model.
- 4+ years of full-time commercial application security experience.
- 4+ years of experience in software development, preferably in cloud environments.
- Proven experience in performing threat modeling and secure design reviews.
- Strong knowledge of AWS security best practices and Kubernetes/containerization security.
- Deep understanding of OWASP Top 10, ASVS, NIST, SANS top 20, and cryptography (TLS, hashing, encryption).
Nice to have
- Application Security related certificates.
- Cloud Security related certificates.
Culture & Benefits
- Hybrid work model with 1-2 days of office presence per week.
- Opportunity to work in a leading telecommunications environment with a strong focus on security and integrity.
- Collaborative environment working closely with IT, Cloud, and development teams.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →