Назад
Company hidden
53 минуты назад

Application Security Engineer

Формат работы
hybrid
Тип работы
fulltime
Английский
b2
Страна
Austria/Hungary
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Security Engineer (Cloud Security): Strengthening security across cloud-native environments with an accent on secure development practices, vulnerability management, threat modelling, and compliance. Focus on securing containers and Kubernetes, investigating SIEM events, and translating complex security findings into actionable mitigation plans.

Location: Budapest, Hungary; Workplace: Hybrid

Company

hirify.global is a Vienna-founded, manufacturer-independent IT consulting and services company providing innovative IT solutions for international clients.

What you will do

  • Promote secure software development practices throughout the SDLC.
  • Identify, assess, and manage security vulnerabilities using SAST, DAST, and vulnerability scanning tools such as Tenable/Nessus, Rapid7, Aqua Security, and Trivy.
  • Monitor and investigate security events with SIEM platforms including Splunk and Elastic.
  • Collaborate with development and infrastructure teams to implement effective security solutions.
  • Facilitate threat modelling workshops and turn identified risks into mitigation plans.
  • Support security governance, compliance, and cloud-native application security across containers and Kubernetes environments.

Requirements

  • Experience with SDLC, secure development practices, application security, and cloud security.
  • Hands-on experience with SAST, DAST, vulnerability scanning, SIEM, and Jira or similar ticketing systems.
  • Knowledge of ISO 27001, SOC 2, PCI-DSS, and IT-Grundschutz standards.
  • Experience facilitating threat modelling workshops and securing cloud-native development, containers, and Kubernetes.
  • Development experience with Python and/or Golang.
  • Exposure to AWS, Azure, GCP, or OpenStack, along with strong analytical and communication skills.

Culture & Benefits

  • Hybrid work in a technology-driven environment.
  • Continuous learning and professional development opportunities.
  • Exposure to modern cloud security, DevSecOps, Kubernetes, and application security technologies.
  • Collaboration with experienced technology, development, and infrastructure teams.
  • Security expertise can directly influence technology and business decisions.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →