7 дней назад
Security Engineer (Application Security)
145 196 - 223 379PLN
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Engineer (Application Security): Building and scaling an application security program across the secure software development lifecycle with an accent on CI/CD integration, cloud-native security, and developer engagement. Focus on deploying SAST, SCA, DAST, secrets management, and IaC scanning, while guiding secure architecture, threat modeling, vulnerability triage, and security metrics.
Location: Hybrid in Warsaw, Poland
Salary: 145,196–223,379 PLN
Company
is a global lottery company providing secure technology, lottery operations, retail and digital solutions, and lottery games for customers, governments, and regulators.
What you will do
- Drive the strategy, implementation, and maturity of the application security program.
- Integrate application security tooling and developer-friendly controls into CI/CD pipelines.
- Provide secure architecture guidance and design recommendations during development planning.
- Deploy and tune SAST, SCA, secrets management, IaC scanning, and DAST tools.
- Partner with product teams on secure coding, threat modeling, and high-impact vulnerability triage.
- Develop security KPIs, support compliance alignment, and mentor other application security engineers.
Requirements
- 5–10 years of experience in application security or secure software development.
- Experience leading application security programs in CI/CD-focused engineering environments.
- Expertise in securing cloud-native applications and integrating tools such as Semgrep, Mend, GitHub Advanced Security, or HCL AppScan.
- Hands-on experience with GitHub Actions, GitLab CI, Jenkins, or similar CI/CD platforms.
- Knowledge of DAST and penetration testing methodologies, including Tenable Web App Scanning, Burp Suite, and Kali Linux.
- Experience securing containers, microservices, APIs, and modern SDLC environments, with strong communication and influencing skills.
Nice to have
- Experience with IAST and runtime protection.
Culture & Benefits
- Paid time off.
- Health, life, and disability insurance.
- Retirement benefits and well-being programs.
- Opportunities to participate in volunteering, employee networks, and other company initiatives.
- Annual information security training for employees.
- Employment terms, working hours, leave, and other rights are governed by a collective bargaining agreement.
Hiring process
- The selection process follows pay-transparency and equal-pay principles.
- Salary history is not requested or used during selection.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Link Group
1 день назад
Элитный пентестер (Cybersecurity)
30 - 33€
14 часов назад
Security Detection Engineer (Cybersecurity)
2 дня назад
Security Analyst Trainee - Security Operations Center L1 (Cybersecurity)
6 дней назад
Senior AI Security Engineer
6 часов назад
Security & Compliance Engineer (Robotics)
5 часов назад
IT Risk & Compliance Engineer (DevOps/Agile)
9 600 - 12 000PLN