Copy of Senior Cloud Application Security Engineer

2 miesięcy temu


Warsaw, Polska Sportradar Pełny etat
Job Description

Senior Cloud Application Security Engineer

Location: Warsaw (Hybrid) or Anywhere from Poland (Remote)

Sportradar is the leading global provider of sports data and entertainment products and services. Since 2001, we have occupied a unique position at the intersection of the sports, media and betting industries; providing sports federations, news media, consumer platforms and sports betting operators with a range of solutions to help grow their business.

The Information Security group provides services to ensure confidentiality, integrity and availability of information and systems owned by Sportradar and its subsidiaries.

The Product Security unit within Information Security works primary with the Engineering group to ensure that the products & services developed by its Tribes are Secure-by-Design and remain Secure-in-Production. This includes coaching developers on secure development practices, building products for our cloud environment that help developers prevent vulnerabilities and misconfigurations arising over time, and managing the attack surface so that engineers can focus their remediation efforts on the highest criticality vulnerabilities specific to Sportradar’s risk profile. We also run an external Bug-Bounty programme for in-scope applications, as well as a Security Champions community across Sportradar.

ROLE OVERVIEW:

The Senior Cloud Application Security Development professional will be part of the Secure Software Development team within Product Security, dedicated to fixing identified application-level vulnerabilities whilst coaching Tribe members in secure development practices. The successful candidate will work in a consultative capacity across multiple tribes, so should be comfortable in dipping in to help solve different problems with different teams, nationalities, and locations. Excellent technical, interpersonal and communications skills are key to this role.

In addition to working with Tribes, the successful candidate should also be comfortable in developing tools and utilities to improve the security of cloud resources whilst not hindering developer productivity.

The role will report into the Senior Manager, Product Security and will be part of a multidisciplinary team of developers with experience in Secure Software Development (SSD) and Attack Surface Management (ASM) to deliver initiatives and guiding principles that will help identify and mitigate vulnerabilities within the products that Sportradar develops. The Senior Cloud Application Security Development professional will also work closely with 3rd parties (e.g. Bug Bounty programme) as well as other teams within the wider Security group (e.g. GRC, SOC, etc.).

THE CHALLENGE:

  • Respond to identified vulnerabilities in our applications and cloud environments without jeopardizing product roadmap.
  • Evangelize and coach engineers on secure design & development practices through threat modelling and help remediate findings through pair-programming sessions.
  • Cross pollination of secure development techniques and best practices across engineering tribes.
  • Collaborate across both SSD and ASM teams in Product Security to ensure unit initiatives are successfully delivered.
  • Be on-hand to assist colleagues as part of our incident response process should this be required.

YOUR PROFILE:

Personal Requirements:

  • You get excited by challenges, and have a positive, can-do attitude in working with different teams, locations and technologies to achieve the best outcome.
  • You are interested in cloud and application security and thrive on having multiple problems to solve, together with a continuous learning mindset.
  • You enjoy diving in and figuring the crux of a problem quickly and helping provide a pragmatic solution to the team, whilst efficiently communicating the outcome to techies and managers alike.
  • You are comfortable with mentoring others and taking a lead role for an initiative to help deliver the intended outcomes.

Professional Requirements:

  • Degree in software development, or other relevant experience.
  • 10+ years of experience as a software developer or DevOps professional.
  • Ability to manage, prioritize, remediate vulnerabilities like those on the OWASP Top10 list.
  • Excellent knowledge in at least one of the object-orientated programming languages like Java, .NET, and scripting languages like Python, JavaScript, etc.
  • Experience with AWS cloud services, especially their security products.
  • Experience with modern technologies like Kubernetes, Protobuf, gRPC, and GraphQL.
  • Experience with automated deployments and containerized application management.
  • Experience with message brokers (e.g. Kafka), and relational databases (e.g. MySQL.
  • A keen interest in continuous professional learning across software engineering, cloud, and application security domains.
  • Working in agile development teams in a fast-paced environment.
  • Excellent inter-personal and communication skills with fluency in English (written & spoken).
  • Ability to take a lead role in the team, supervising and/or mentoring others.

Desirable requirements:

  • Cloud-native development and/or experience with other public & hybrid cloud services (GCP, OCI, etc).
  • Hands-on experience with Cloud & Software Security and DevSecOps tooling such as CNAPP, SAST and SCA.
  • Experience with maintaining large-scale and fault-tolerant distributed systems in production.
  • Experience with test-driven development.

 

OUR OFFER:

  • The opportunity to work and develop within an inspiring and fast-growing company, with different teams working on different products in different locations.
  • The possibility to directly contribute to the security of products used by our clients in the global sports business.
  • Consultative role with multiple teams across different geographies and product lines, where no one problem is the same.
  • A collaborative environment with colleagues from all over the world (engineering offices across Europe, in Asia and the US).
  • Competitive salary and benefits (e.g. retirement pension and insurance plan).

 


Additional Information

At Sportradar, we celebrate our diverse group of hardworking employees. Sportradar is committed to ensuring equal access to its programs, facilities, and employment opportunities. All qualified applicants will receive consideration for employment without regard to age, race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. We encourage you to apply even if you only meet most of the requirements (but not 100% of the listed criteria) – we believe skills evolve over time. If you’re willing to learn and grow with us, we invite you to join our team


  • Cloud Security Consultant

    3 tygodni temu


    Warsaw, Polska JUARA IT SOLUTIONS Pełny etat

    Job Description: Cloud Security Consultant (Business Enablement Layer) Location: Poland Position Type: Full-time Overview: We are seeking a highly skilled Cloud Security Consultant to join our team and strengthen the security framework of our Business Enablement Layer. The ideal candidate will have a strong background in designing and implementing robust...

  • Cloud Security Engineer

    2 miesięcy temu


    Warsaw, Polska Fusion Consulting Pełny etat

    Job DescriptionSecurity / Cloud Security EngineerWe are looking for a dedicated Security / Cloud Security Engineer to safeguard our cloud and on-premise infrastructures, ensuring they meet top-tier security standards and comply with regulatory and company policies. This role involves implementing security best practices across both environments, managing...


  • Warsaw, Polska Goldman Sachs Pełny etat

    Business Unit Overview Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our...


  • Warsaw, Polska Box Pełny etat

    WHAT IS BOX?Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such as AstraZeneca, JLL, and Nationwide), to protect their data, fuel collaboration, and power critical workflows with secure, enterprise AI.By...


  • Warsaw, Polska b2bnetwork Pełny etat

    Project DescriptionThe EDP team is building an internal platform for Elia Group software product developers to accelerate thedevelopment and delivery of software products to tackle the massive challenges facing the energy sector. TheEDP Platform is a service oriented, cloud-native platform that is being built to provide application teams with...

  • Senior Cloud Engineer

    7 miesięcy temu


    Warsaw, Polska Bayer Pełny etat

    Senior Cloud Engineer  For Digital Hub Warsaw, we are looking for: Senior Cloud Engineer Key Tasks & Responsibilities: Show an advanced understanding of cloud technologies, cloud platform operations and cloud governance with a focus on automation, analysis, modification and testing of cloud services Design, build, implement and maintain cloud automation in...

  • AWS Cloud Security Architect

    3 miesięcy temu


    Warsaw, Polska Infotree Global Solutions Pełny etat

    A global technology company that develops safer, greener, and more connected solutions for the future of mobility, currently is looking for a talented AWS Cloud Security Architect to join their team in Krakow, Poland. In this role, you will be responsible for designing and implementing comprehensive security solutions for large-scale, distributed...


  • Warsaw, Polska Sportradar Pełny etat

    Job DescriptionJoin Our Team as a Senior Security Engineer at Sportradar! Are you ready to elevate your career in one of the fastest-growing sectors in the digital sports environment? At Sportradar, we provide a platform for you to gain international recognition for your expertise while working alongside industry leaders. This is more than just a job –...


  • Warsaw, Polska Simon-Kucher Pełny etat

    Senior In-house Cloud Engineer In Poland - Warsaw Are you looking for an opportunity in a fast-growing, global IT team where collaboration, innovation, and a stakeholder-centric approach are priority? As part of Simon-Kucher, our IT works globally as a trusted partner in the company’s journey toward success and navigates the ever-changing...


  • Warsaw, Polska Circle K Pełny etat

    JOB DESCRIPTION Job Description Circle K Business Center is a professional software development hub, responsible for delivering software solutions used by external private and business Circle K customers across the globe. Our software is used on a real scale, Circle K is the global company with over 16.000 stores in 26 countries, serving more than 6...

  • Security Tooling Engineer II

    7 miesięcy temu


    Warsaw, Polska Box Pełny etat

    WHAT IS BOX?Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such as AstraZeneca, JLL, and Nationwide), to protect their data, fuel collaboration, and power critical workflows with secure, enterprise AI.By...


  • Warsaw, Polska GFT Technologies SE Pełny etat

    What will you do?   Cloud Engineer tasks will include e xecution of tasks related to the analysis and implementation of updates and improvements to existing public cloud environments and Infrastructure as Code (IaC) solutions – Terraform. Execution of tasks recognized and addressed by the Bank in the area of public clouds and...


  • Warsaw, Polska Bosch Pełny etat

    Job Description Senior Network Security Engineer responsible for implementing and operating solutions to meet our internal customers needs Responsible for operations and optimization of Bosch''s worldwide Loadbalancer, Secure Web gateway(Proxy) Be a part of a strategic agile project to develop the future network for a large enterprise Take part and...

  • Senior Security Risk Analyst

    2 miesięcy temu


    Warsaw, Polska Snowflake Pełny etat

    Build the future of the AI Data Cloud. Join the Snowflake team. We’re at the forefront of the data revolution, committed to building the world’s greatest data and applications platform. Our ‘get it done’ culture allows everyone at Snowflake to have an equal opportunity to innovate on new ideas, create work with a lasting impact, and excel in a...

  • Cloud Operations Engineer

    4 miesięcy temu


    Warsaw, Polska Simon-Kucher & Partners Pełny etat

    Cloud Operations Engineer In Poland - Warsaw We are at the forefront of innovation in our space, inventing business models, algorithms, solutions, and methodologies. Our end-to-end solutions deliver sustained top-line impact for our clients. Are you interested in working in a team of digital evangelists with a can-do attitude? Want to experience the...

  • Senior IT Engineer

    7 miesięcy temu


    Warsaw, Polska Ecovadis Pełny etat

    Description As a Senior IT Engineer in Application and Endpoint Management, you will be called to manage SaaS applications, work with system owners to define best practices and procedures governing the management of those applications and also manage the company's collaboration and communication suite. You will be part of a dynamic international team and...


  • Warsaw, Polska Infotree Global Solutions Pełny etat

    As a Security Architect, you will play a key role in our client’s “Cloud First” strategy, creating concepts and designs of highly complex cloud solutions to enhance the security of the cloud  infrastructure.You will challenge existing solutions to bring them to the next level and will lead the conception of entirely new and game-changing solutions.To...


  • Warsaw, Polska Duck Creek Technologies Pełny etat

    Helping careers take flight. Reshaping an industry. Enable your career to be Made on Duck Creek. WHO WE ARE:  Duck Creek Technologies is the intelligent solutions provider defining the future of the property and casualty (P&C) and general insurance industry. We are the platform upon which modern insurance systems are built, enabling the industry to...

  • IT Security Specialist

    4 tygodni temu


    Warsaw, Polska Allegro sp. z o.o. Pełny etat

    Opis oferty pracyThe hybrid work model requires a minimum of one day per week of in-office work (Warsaw)What will your work involve?Designing and supporting the implementation of security architectures for cloud solutions on platforms such as GCP and AzureCollaborating with project/engineering teams to define and enforce security requirements for various...

  • Senior Cloud Data Engineer

    5 miesięcy temu


    Warsaw, Polska hirely Pełny etat

    Spółkę HIRELY tworzą profesjonaliści, którzy posiadają wiele lat doświadczenia w takich obszarach jak: IT, BI, zarządzanie projektami i przedsiębiorstwami. Cechuje nas wysoka jakość i efektywność realizowanych projektów poprzez właściwe dopasowanie kandydata do profilu poszukiwanego stanowiska i kultury organizacyjnej panującej w...