Назад
Company hidden
4 дня назад

Software Security Engineer

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Poland
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Software Security Engineer (Application and Code Security): Shaping code security strategy and securing custom applications, services, cloud, network, and AI-enabled architectures with an accent on secure design reviews, threat modeling, and software development lifecycle controls. Focus on assessing end-to-end risk, identifying vulnerabilities and misconfigurations, and guiding engineering teams toward secure-by-design practices.

Location: Warsaw, Poland; 70% in-office work model

Company

hirify.global develops mRNA technology, scientific infrastructure, and medicines.

What you will do

  • Lead the enterprise code security strategy and manage the primary code security platform.
  • Perform secure design reviews, architecture reviews, and risk assessments for custom-built applications and services throughout the software development lifecycle.
  • Assess risks across on-premises and cloud environments, including commercial products and internally developed services.
  • Conduct threat modeling for applications, APIs, platforms, and supporting infrastructure.
  • Drive secure software development practices covering code security, dependency and package risk, secrets management, and secure-by-design patterns.
  • Advise on cloud, network, and AI-enabled architectures, and collaborate with security operations and platform teams to remediate misconfigurations.

Requirements

  • 4+ years of cybersecurity experience with strong expertise in application and code security architecture.
  • Experience reviewing custom applications and services for secure design issues, code-level weaknesses, and architectural flaws.
  • Strong knowledge of secure software development, threat modeling, dependency risk, secrets management, and common application security vulnerabilities.
  • Experience assessing cloud security architectures and identifying misconfigurations in hybrid environments.
  • Working knowledge of network security fundamentals, including segmentation, core protocols, and enterprise security controls.
  • Ability to communicate complex security risks and influence technical decisions with engineers, architects, and senior stakeholders.

Culture & Benefits

  • Competitive healthcare and voluntary benefit programs.
  • Fitness, mindfulness, and mental health resources.
  • Family-building benefits, including fertility, adoption, and surrogacy support.
  • Paid vacation, bank holidays, volunteer days, sabbatical, global recharge days, and year-end shutdown.
  • Savings and investment programs, plus location-specific benefits.
  • In-person collaboration supported by a 70/30 office-based work model.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →