Application Product Security Engineer

2 tygodni temu


Kraków małopolskie, małopolskie, Polska ABB Business Services Pełny etat
Application Product Security EngineerMiejsce pracy: KrakówTechnologies we useExpected
  • Java
  • C#
  • Python
  • JavaScript
  • AWS
  • Azure
  • Google Cloud
  • Docker
  • Kubernetes
About the project

We are an international pioneering technology leader that is writing the future of industrial digitalization. At the forefront is our Corporate Technology Center which provides industry leading software and deep domain expertise to help the world’s most asset-intensive industries solve their biggest challenges.

To strengthen our team in IIoT Platform and Applications stream, we are looking for a Application/Product Security Engineer, who is an effective team player with excellent communication skills. As an IIoT P&A stream we are developing unified approach for software which consists of set of services and apps with individual lifecycles hosted on top of ABB common platforms for on-prem execution and cloud. Seize this unique opportunity and see your work transformed into a hive of tangible products.

As an Application/Product Security Engineer you will be working with cross-functional and agile teams which operates in an international environment.

Your responsibilities
  • Security Assessments: Conduct regular security assessments, including threat modeling, At-tack Surface Analysis, Critical Analysis.
  • Security Architecture: Design and implement security architecture and controls for new and existing products.
  • Code Review: Review source code for security vulnerabilities and provide actionable feedback to development teams.
  • Secure Coding Practices: Educate and advocate for secure coding practices among development teams through workshops, training sessions, and documentation.
  • Tool Implementation: Evaluate and implement application security tools (e.g., static and dynamic analysis tools) to automate security testing processes.
  • Incident Response: Assist in incident response activities related to application security breaches, including root cause analysis and remediation strategies.
  • Collaboration: Work closely with cross-functional teams, including software developers, DevOps, and IT security, to ensure security considerations are integrated into the development process.
  • Monitoring and Reporting: Monitor application security metrics and provide regular reports to management on security posture and compliance.
Our requirements
  • University degree in Computer Science or similar field
  • Understanding of programming languages such as Java, C#, Python, or JavaScript.
  • Strong understanding of application security principles and secure coding practices.
  • Strong understanding of application security principles like network security, encryption, access management and their best practices
  • Experience with security tools and processes such as SAST, DAST, SCA, and vulnerability scanners (e.g., SonarQube, OWASP ZAP, Nessus, Invicti)
  • Knowledge of security frameworks (e.g., OWASP Top Ten, NIST, ISO 27001), cloud platforms (e.g., AWS, Azure, Google Cloud) and their security features
  • Hands on experience with containerization and orchestration tools such as Docker and Kubernetes
  • Fluency in English
  • Certifications: Relevant certifications such as Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP), or Offensive Security Certified Professional (OSCP) are a plus
Benefits
  • sharing the costs of sports activities
  • private medical care
  • sharing the costs of foreign language classes
  • sharing the costs of professional training & courses
  • life insurance
  • remote work opportunities
  • flexible working time
  • corporate products and services at discounted prices
  • integration events
  • corporate sports team
  • saving & investment scheme
  • corporate library
  • coffee / tea
  • employee referral program
  • charity initiatives
  • family picnics
Recruitment stages
  • Phone Screening
  • Interview with Recruiter and / or Manager
  • * Additional technical / language check
  • Congrats
ABB Business Services

Take your next career step at ABB with a global team that is energizing the transformation of society and industry to achieve a more productive, sustainable future.

At ABB, we have the clear goal of driving diversity and inclusion across all dimensions: gender, LGBTQ+, abilities, ethnicity and generations. Together, we are embarking on a journey where each and every one of us, individually and collectively, welcomes and celebrates individual differences.



  • Kraków, małopolskie, Polska Motorola Solutions Pełny etat 18 zł

    The Senior Software Security Engineer will be responsible for analysing software designs and implementations from a security perspective, identifying and proposing remediations to security issues throughout the software development lifecycle (SDLC).This role is primarily hybrid, with occasional travel to our Krakow office.ResponsibilitiesSecurity Design and...


  • Kraków, małopolskie, Polska ITDS Pełny etat 27 zł - 300 zł

    Join us, and protect critical applications from evolving cyber threats!Kraków - based opportunity with hybrid work model (6 days/month in the office).As a WAF & Application Security SME, you will be working for our client, a leading global financial institution strengthening its web and API security posture. You will be designing, tuning, and optimizing Web...


  • Kraków, małopolskie, małopolskie, Polska Sii Sp. z o.o. Pełny etat

    Google SecOps Security ArchitectMiejsce pracy: KrakówTechnologies we useExpectedGoogle SecOpsGoogle ChronicleGoogle Cloud PlatformOptionalPythonTerraformAbout the projectWe are looking for an experienced Security Architect with strong expertise in Google SecOps (formerly Google Chronicle) to lead and support our SIEM Transformation initiative. The...


  • Kraków, małopolskie, Polska Codepole Pełny etat 20 zł

    Join Codepole as Cloud & Infrastructure Security Engineer and work with clients such as Scania, Warner Bros, Klarna, and Spotify.ClientAre you a hands-on security professional passionate about protecting modern IT environments? Do you thrive in an operational role, diving deep into the technical aspects of security across cloud platforms, enterprise IT, and...

  • Senior Software Engineer

    2 tygodni temu


    Kraków, małopolskie, małopolskie, Polska Google Pełny etat

    Senior Software Engineer - RCSMiejsce pracy: KrakówTechnologies we useExpectedJavaAbout the projectGoogle's software engineers develop the next-generation technologies that change how billions of users connect, explore, and interact with information and one another. Our products need to handle information at massive scale, and extend well beyond web search....

  • Senior Software Engineer

    2 tygodni temu


    Kraków, małopolskie, małopolskie, Polska Google Pełny etat

    Senior Software Engineer - RCSMiejsce pracy: KrakówTechnologies we useOperating systemWindowsAbout the projectGoogle's software engineers develop the next-generation technologies that change how billions of users connect, explore, and interact with information and one another. Our products need to handle information at massive scale, and extend well beyond...


  • Kraków, małopolskie, Polska HSBC Service Delivery Pełny etat

    Some careers shine brighter than others.If you’re looking for a career that will help you stand out, join HSBC, and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further.Your career opportunityThe Cloud...

  • Senior Software Engineer

    2 tygodni temu


    Kraków, małopolskie, małopolskie, Polska Google Pełny etat

    Senior Software Engineer - Messages on Wear (Android)Miejsce pracy: KrakówTechnologies we useExpectedAndroidKotlinJavaAbout the projectGoogle's software engineers develop the next-generation technologies that change how billions of users connect, explore, and interact with information and one another. Our products need to handle information at massive...


  • Kraków, małopolskie, małopolskie, Polska CANPACK Group Pełny etat

    Senior Security Specialist IAMMiejsce pracy: KrakówTechnologies we useExpectedGoogle Cloud PlatformDockersKubernetesAWSAbout the projectThe security architect provides expert guidance for addressing current security issues but has the foresight to see where the industry is headed and proactively deliver optimal secure solutions. The architect is expected to...


  • Kraków, małopolskie, małopolskie, Polska Capgemini Polska Pełny etat

    Application Operations Engineer with FrenchMiejsce pracy: KrakówTechnologies we useExpectedKubernetesTerraformCI/CD (GitLab)and AnsibleOptionalPowershellBashPythonOperating systemWindowsLinuxAbout the projectWe are looking for an experienced Application Operations Engineer to join our team. The successful candidate will be responsible for administering...