4 дня назад
Software Security Engineer
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Software Security Engineer (Application and Code Security): Shaping code security strategy and securing custom applications, services, cloud, network, and AI-enabled architectures with an accent on secure design reviews, threat modeling, and software development lifecycle controls. Focus on assessing end-to-end risk, identifying vulnerabilities and misconfigurations, and guiding engineering teams toward secure-by-design practices.
Location: Warsaw, Poland; 70% in-office work model
Company
develops mRNA technology, scientific infrastructure, and medicines.
What you will do
- Lead the enterprise code security strategy and manage the primary code security platform.
- Perform secure design reviews, architecture reviews, and risk assessments for custom-built applications and services throughout the software development lifecycle.
- Assess risks across on-premises and cloud environments, including commercial products and internally developed services.
- Conduct threat modeling for applications, APIs, platforms, and supporting infrastructure.
- Drive secure software development practices covering code security, dependency and package risk, secrets management, and secure-by-design patterns.
- Advise on cloud, network, and AI-enabled architectures, and collaborate with security operations and platform teams to remediate misconfigurations.
Requirements
- 4+ years of cybersecurity experience with strong expertise in application and code security architecture.
- Experience reviewing custom applications and services for secure design issues, code-level weaknesses, and architectural flaws.
- Strong knowledge of secure software development, threat modeling, dependency risk, secrets management, and common application security vulnerabilities.
- Experience assessing cloud security architectures and identifying misconfigurations in hybrid environments.
- Working knowledge of network security fundamentals, including segmentation, core protocols, and enterprise security controls.
- Ability to communicate complex security risks and influence technical decisions with engineers, architects, and senior stakeholders.
Culture & Benefits
- Competitive healthcare and voluntary benefit programs.
- Fitness, mindfulness, and mental health resources.
- Family-building benefits, including fertility, adoption, and surrogacy support.
- Paid vacation, bank holidays, volunteer days, sabbatical, global recharge days, and year-end shutdown.
- Savings and investment programs, plus location-specific benefits.
- In-person collaboration supported by a 70/30 office-based work model.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
37 минут назад
Staff Security Engineer (Cybersecurity)
1 день назад
Engineering-L2-Warsaw-Vice President-Secure SDLC Lead (AI)
5 дней назад
Staff Product Security Engineer (Web Application Security)
7 дней назад
Cybersecurity Engineering Lead (Cybersecurity)
3 дня назад
Offensive Security Engineer, Penetration Testing (Cybersecurity)
3 дня назад