DevSecOps - Security Scanning Analyst

2 tygodni temu


centrum Kraków, Polska ITDS Pełny etat

Join us, and safeguard our applications with advanced security measures

Krakow-based opportunity with the possibility to work 100% remotely

As a DevSecOps Security Analyst, you will be working for our client, a major global financial institution. You will be an integral part of the Secure Development team, contributing to the development and adoption of security utilities and tools. Your role will focus on enhancing the efficiency and security of development teams through hands-on technology use and providing key security recommendations.

Your main responsibilities:

  • Developing and adopting security utilities and tools for development teams
  • Contributing to the design, development, and support of security tools
  • Liaising with developers and project managers to understand application implementations
  • Staying updated with industry trends and best practices
  • Training and supporting developer and security champion activities
  • Overseeing changes in risk profiles through metrics and risk analysis
  • Supporting quality reviews, audit requirements, and service desk management
  • Integrating and automating various security technologies within DevOps tooling pipelines
  • Contributing to process, procedure, and tool identification and development
  • Ensuring security mechanisms are effectively employed in applications

You're ideal for this role if you have:

  • Understanding of integration and automation of security technologies (SAST, DAST, MAST, IAST, container security tools) container security tools within DevOps tooling pipeline (Jenkins, GitHub, Chef, Ansible, Nexus, etc.)
  • Experience with DevSecOps and a focus on security
  • Knowledge of platform-specific security risks and common vulnerabilities
  • Understanding of common public cloud environments (AWS, GCP, Azure, Alicloud)
  • Proficiency in identifying vulnerabilities within development pipelines
  • Knowledge of Common Vulnerability Scoring System (CVSS)
  • Experience with collaboration tools, preferably JIRA and Confluence
  • Strong analytical skills, including attention to detail and problem-solving
  • Knowledge of security flaws in Java, J2EE, Objective C, Swift, and Kotlin programming languages

It is a strong plus if you have:

  • Understanding of emerging technologies and corresponding security threats
  • Proficiency in one or more industry security tooling (Checkmarx, Invicti(Netsparker), Quokka(Kryptowire), IriusRisk, Aquasec, etc.)
  • Experience with mobile application architectures (HTML, XML, JavaScript, JSON, REST, Microservices)

We offer you:

ITDS Business Consultants is involved in many various, innovative and professional IT projects for international companies in the financial industry in Europe. We offer an environment for professional, ambitious, and driven people. The offer includes:

  • Stable and long-term cooperation with very good conditions
  • Enhance your skills and develop your expertise in the financial industry
  • Work on the most strategic projects available in the market
  • Define your career roadmap and develop yourself in the best and fastest possible way by delivering strategic projects for different clients of ITDS over several years
  • Participate in Social Events, training, and work in an international environment
  • Access to attractive Medical Package
  • Access to Multisport Program
  • Access to Pluralsight
  • Flexible hours & remote work

Internal job number # 5345



  • Kraków, Polska Groupe SII Pełny etat

    Join the Cybersecurity team of one of the largest financial institutions in the world. You will be a key part of the Secure Development team, reporting to the Global Head of Secure Development Lifecycle Support. You will be responsible for providing the security tooling for security scanning services. Your role Contributing to developing and adopting...


  • Kraków, Lesser Poland ITDS Business Consultants Pełny etat

    Join us, and safeguard our applications with advanced security measuresKrakow-based opportunity with the possibility to work 100% remotelyAs an DevSecOps Security Analyst, you will be working for our client, a major global financial institution. You will be an integral part of the Secure Development team, contributing to the development and adoption of...

  • Security Engineer

    2 tygodni temu


    Kraków, Lesser Poland IBM Pełny etat

    IntroductionAt IBM, work is more than a job - it's a calling: To build. To design. To code. To consult. To think along with clients and sell. To make markets. To invent. To collaborate. Not just to do something better, but to attempt things you've never thought possible. Are you ready to lead in this new era of technology and solve some of the world's most...

  • Security Analyst

    2 tygodni temu


    Kraków, Lesser Poland Software Mind Pełny etat

    Software Mind A software house that provides software development services to boost product engineering and digital transformation capabilities. View company page We are Software Mind, an awesome team of engineers who are ready to ramp up any top-notch company's projects Our aim? To always be one step ahead. Become part of a multicultural company in...

  • Solution Architect

    2 tygodni temu


    Kraków, Lesser Poland ITDS Business Consultants Pełny etat

    Join us, and pioneer advanced cybersecurity solutionsKrakow-based opportunity with the possibility to work 100% remotelyAs a Solution Architect, you will be working for our client, a leading financial institution with a dedicated Cyber Security department. This project involves enhancing and streamlining their vulnerability management systems, integrating...

  • Inżynier DevSecOps

    1 miesiąc temu


    Kraków, Polska Comarch Pełny etat

    Inżynier DevSecOps1316Obowiązki Doświadczenie zawodowe w roli DevSecOps lub podobnejPraktyczna znajomość Linux (rodzina RedHat, Debian) oraz doświadczenie w hardeninguDobra znajomość języka angielskiego pozwalająca na czytanie dokumentacji technicznejWiedza z zakresu konfiguracji i administracji:serwerów WWW (Apache,...

  • Inżynier DevSecOps

    4 tygodni temu


    Kraków, Polska Comarch Pełny etat

    Inżynier DevSecOps1316Obowiązki Doświadczenie zawodowe w roli DevSecOps lub podobnejPraktyczna znajomość Linux (rodzina RedHat, Debian) oraz doświadczenie w hardeninguDobra znajomość języka angielskiego pozwalająca na czytanie dokumentacji technicznejWiedza z zakresu konfiguracji i administracji:serwerów WWW (Apache,...

  • POD Tech Lead

    2 tygodni temu


    centrum, Kraków, Polska ITDS Pełny etat

    Join us, and transform application security with cutting-edge solutionsKrakow-based opportunity with the possibility to work 100% remotelyAs a POD Tech Lead, you will be working for our Client, a major financial institution focusing on enhancing application security through comprehensive security scans and vulnerability management. This mature project...

  • Network Security Analyst

    1 miesiąc temu


    Kraków, Polska HAYS Pełny etat

    Network Security AnalystKrakówNR REF.: 1186235OFFICE LOCATION: KRAKÓWWORK MODEL: REMOTECONTRACT TYPE: CONTRACT OF EMPLOYMENTWe are currently looking for an experienced Security Analyst specialized in network security to join Security Operations Center of our client - a front-running fund services platform providing innovative fund solutions for asset...

  • Network Security Analyst

    4 tygodni temu


    Kraków, Polska HAYS Pełny etat

    Network Security AnalystKrakówNR REF.: 1186235OFFICE LOCATION: KRAKÓWWORK MODEL: REMOTECONTRACT TYPE: CONTRACT OF EMPLOYMENTWe are currently looking for an experienced Security Analyst specialized in network security to join Security Operations Center of our client - a front-running fund services platform providing innovative fund solutions for asset...


  • Kraków, Polska Brown Brothers Harriman Pełny etat

    At BBH we value diverse backgrounds, so if your experience looks a little different from what we've outlined and you think you can bring value to the role, we will still welcome your application! What You Can Expect At BBH: If you join BBH you will find a collaborative environment that enables you to step outside your role to add value wherever you can....

  • Network Security Analyst

    2 tygodni temu


    Kraków, Lesser Poland HAYS POLAND Sp. z o.o. Pełny etat

    Network Security Analystlokalizacja: Kraków (małopolskie)numer referencyjny:forma zatrudnienia: Pełny etatOFFICE LOCATION:KRAKÓWWORK MODEL:REMOTECONTRACT TYPE:CONTRACT OF EMPLOYMENTWe are currently looking for an experienced Security Analyst specialized in network security to join Security Operations Center of our client - a front-running fund services...

  • Information Security

    1 miesiąc temu


    Kraków, Polska Motorola Solutions Pełny etat

    Job Description We are seeking an experienced and highly skilled Security Risk Analyst to join our Information Security team. The Security Risk Analyst will be responsible for identifying, assessing, and mitigating potential security control gaps and vulnerabilities within our products. This role requires a deep understanding of information security...

  • Information Security

    4 tygodni temu


    Kraków, Polska Motorola Solutions Pełny etat

    Job Description We are seeking an experienced and highly skilled Security Risk Analyst to join our Information Security team. The Security Risk Analyst will be responsible for identifying, assessing, and mitigating potential security control gaps and vulnerabilities within our products. This role requires a deep understanding of information security...


  • Kraków, Lesser Poland Westinghouse Electric Company LLC. Pełny etat

    An Information Security Analyst III **will be responsible for** identifying, assessing, and mitigating vulnerabilities in an organization's systems and applications as part of **our Vulnerability Management team**. The identified candidate will work closely with **other members of the IT and various business units** to provide expertise to help identify and...


  • Kraków, Polska Westinghouse Electric Company LLC. Pełny etat

    An Information Security Analyst III will be responsible for identifying, assessing, and mitigating vulnerabilities in an organization’s systems and applications as part of our Vulnerability Management team. The identified candidate will work closely with other members of the IT and various business units to provide expertise to help identify and prioritize...


  • Kraków, Polska Westinghouse Electric Company LLC. Pełny etat

    An Information Security Analyst III will be responsible for identifying, assessing, and mitigating vulnerabilities in an organization’s systems and applications as part of our Vulnerability Management team. The identified candidate will work closely with other members of the IT and various business units to provide expertise to help identify and prioritize...


  • Kraków, Lesser Poland Cloudsecurityexpo Pełny etat

    An Information Security Analyst III will be responsible for identifying, assessing, and mitigating vulnerabilities in an organization's systems and applications as part of our Vulnerability Management team. The identified candidate will work closely with other members of the IT and various business units to provide expertise to help identify and prioritize...

  • Security Analyst

    2 miesięcy temu


    Kraków, Polska Brown Brothers Harriman Pełny etat

    At BBH we value diverse backgrounds, so if your experience looks a little different from what we've outlined and you think you can bring value to the role, we will still welcome your application! What You Can Expect At BBH: If you join BBH you will find a collaborative environment that enables you to step outside your role to add value wherever you can....

  • Security Analyst

    4 tygodni temu


    Kraków, Polska Brown Brothers Harriman Pełny etat

    At BBH we value diverse backgrounds, so if your experience looks a little different from what we've outlined and you think you can bring value to the role, we will still welcome your application! What You Can Expect At BBH: If you join BBH you will find a collaborative environment that enables you to step outside your role to add value wherever you can....