Senior Application Security Engineer

4 tygodni temu


Warsaw, Polska DataArt Pełny etat

Responsibilities

Create detailed process management workflows to ensure security engineering activities are tracked, processes reviewed, policies are followed, and audit requirements are met Build trusted relationships with product engineering teams, developers, and architects, establishing yourself as a security authority with deep understanding of their roadmap and priorities Build internal security tools that help fix security problems at scale Integrate security controls into all stages of the software development life cycle SDLC, including automating security measures into the CI/CD pipeline Collaborate on the implementation and management of SAST, SCA, DAST, and other scanning solutions to provide coverage for the application portfolio Conduct security architecture design reviews, application risk assessments and threat modeling to identify potential security risks Lead threat triaging from monitoring and response actions

Requirements

Minimum 7 years of overall experience in information security with technical experience in any combination of the following: threat modeling experience, application security risk assessment, secure coding or OWASP ASVS, OWASP Top Ten exploitation paths, secure identity management and authentication, software development, and network security Minimum 5 years of experience of application security engineering and preferably in one or more of the following languages Scala, Python, Typescript, Bash) Minimum 3 years of experience with cloud environments AWS preferred, Google Cloud, K8s, Containers, etc.) Extensive experience and strong understanding of AWS services and cloud security controls including but not limited to such as IAM, KMS, VPC, Security Groups, AWS Inspector, Guard Duty Technical knowledge on operating and cloud system security leveraging configuration standards such as CIS Extensive understanding of MITRE ATT&CK, NIST CSF, CVSS and CWE criteria, enumeration and scoring Experienced in security testing tools and techniques, such as vulnerability management, SAST, Secret scanning, SCA, and penetration testing Strong analytical skills with the ability to identify and mitigate security risks Experience securing CI/CD pipelines enabling strong security controls through the implementation of commercial and custom built tooling

Nice to have

Application security certifications Network optimization engineering experience with AWS and data streaming services Useful links

  • Warsaw, Polska Box Pełny etat

    WHAT IS BOX?Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such as AstraZeneca, JLL, and Nationwide), to protect their data, fuel collaboration, and power critical workflows with secure, enterprise AI.By...


  • Warsaw, Polska Box Pełny etat

    WHAT IS BOX?Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such as AstraZeneca, JLL, and Nationwide), to protect their data, fuel collaboration, and power critical workflows with secure, enterprise AI.By...


  • Warsaw, Polska Box Pełny etat

    WHAT IS BOX?Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such as AstraZeneca, JLL, and Nationwide), to protect their data, fuel collaboration, and power critical workflows with secure, enterprise AI.By...


  • Warsaw, Polska Box Pełny etat

    WHAT IS BOX?Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such as AstraZeneca, JLL, and Nationwide), to protect their data, fuel collaboration, and power critical workflows with secure, enterprise AI.By...

  • Senior Security Engineer

    4 godzin temu


    Warsaw, Polska MANGOPAY Pełny etat

    At Mangopay, our mission is to power the payment infrastructure and payment operations of the world's biggest and most exciting marketplaces & platforms. We provide marketplaces and platforms with powerful modular payment and regulatory solutions. Since 2013, we have enabled the success of some of the biggest names in e-commerce, retail, and cutting-edge...


  • Warsaw, Polska Appfire Pełny etat

    Job Description Appfire is seeking a highly skilled Senior Security Engineer to join our Appfire Information Security team. This Senior Security Engineer role will report to our CISO and work within our Security Engineering & Architecture team to handle diverse security engineering and architecture related tasks for our rapidly growing company, including...


  • Warsaw, Polska Goldman Sachs Pełny etat

    Business Unit Overview Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our...


  • Warsaw, Polska Goldman Sachs Pełny etat

    Business Unit Overview Led by the Chief Information Security Officer (CISO), Technology Risk secures Goldman Sachs against hackers and other cyber threats. We are responsible for detecting and preventing attempted cyber intrusions against the firm, helping the firm develop more secure applications and infrastructure, developing software in support of our...


  • Warsaw, Polska Box Inc. Pełny etat

    Application Security Tooling Engineer III *Our compensation structure is the base salary and equity in the form of restricted stock units. WHAT IS BOX? Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such...


  • Warsaw, Polska Appfire Pełny etat

    Job Description Appfire is seeking a highly skilled Senior Security Engineer to join our Appfire Information Security team. This Senior Security Engineer role will report to our CISO and work within our Security Engineering & Architecture team to handle diverse security engineering and architecture related tasks for our rapidly growing company, including...

  • Senior Security Engineer

    1 tydzień temu


    Warsaw, Polska Appfire Technologies, LLC Pełny etat

    technologies-expected : Python Linux SQL about-project : Appfire is seeking a highly skilled Senior Security Engineer to join our Appfire Information Security team. This Senior Security Engineer role will report to our CISO and work within our Security Engineering & Architecture team to handle diverse security engineering and architecture related tasks for...

  • Security Engineer

    7 dni temu


    Warsaw, Polska T-Mobile Pełny etat

    Security Engineer - Security Tribe Miejsce pracy: Warszawa Technologies we use Expected AWS Python Bash PowerShell About the project T-Mobile Poland is a leader in telecommunication, dedicated to providing innovative solutions that drive growth and efficiency for our clients. Our commitment to security and integrity is at the forefront of our operations,...

  • Security Engineer

    1 tydzień temu


    Warsaw, Polska T-Mobile Pełny etat

    technologies-expected : AWS Python Bash PowerShell about-project : T-Mobile Poland is a leader in telecommunication, dedicated to providing innovative solutions that drive growth and efficiency for our clients. Our commitment to security and integrity is at the forefront of our operations, and we are seeking a talented Security Engineer to join our team. As...


  • Warsaw, Polska Sportradar Pełny etat

    Job DescriptionJoin Our Team as a Senior Security Engineer at Sportradar! Are you ready to elevate your career in one of the fastest-growing sectors in the digital sports environment? At Sportradar, we provide a platform for you to gain international recognition for your expertise while working alongside industry leaders. This is more than just a job –...


  • Warsaw, Polska Robert Bosch Sp. z o.o. Pełny etat

    technologies-expected : Python Ansible Git responsibilities : Senior Network Security Engineer responsible for implementing and operating solutions to meet our internal customers needs Responsible for operations and optimization of Bosch''s worldwide Loadbalancer, Secure Web gateway(Proxy) and Web Application Firewall Infrastructure Be a part of a strategic...


  • Warsaw, Polska T-Mobile Polska S.A. Pełny etat

    Opis stanowiska: ·        Identify opportunities to automate and standardize application security controls and cooperate with the CICD team ·        Analyze source code to mitigate identified weaknesses and vulnerabilities ·        Create guidelines and application security standards ·        Review and check...


  • Warsaw, Polska Bosch Pełny etat

    Job Description Senior Network Security Engineer responsible for implementing and operating solutions to meet our internal customers needs Responsible for operations and optimization of Bosch''s worldwide Loadbalancer, Secure Web gateway(Proxy) and Web Application Firewall Infrastructure Be a part of a strategic agile project to develop the future...


  • Warsaw, Polska Bosch Group Pełny etat

    Job DescriptionSenior Network Security Engineer responsible for implementing and operating solutions to meet our internal customers needsResponsible for operations and optimization of Bosch''s worldwide Loadbalancer, Secure Web gateway(Proxy) and Web Application Firewall InfrastructureBe a part of a strategic agile project to develop the future network for a...


  • Warsaw, Polska Bosch Group Pełny etat

    Job DescriptionSenior Network Security Engineer responsible for implementing and operating solutions to meet our internal customers needsResponsible for operations and optimization of Bosch''s worldwide Loadbalancer, Secure Web gateway(Proxy) and Web Application Firewall InfrastructureBe a part of a strategic agile project to develop the future network for a...


  • Warsaw, Polska Bosch Pełny etat

    Job Description Senior Network Security Engineer responsible for implementing and operating solutions to meet our internal customers needs Responsible for operations and optimization of Bosch''s worldwide Loadbalancer, Secure Web gateway(Proxy) and Web Application Firewall Infrastructure Be a part of a strategic agile project to develop the future...