Product Security Engineer
2 miesięcy temu
technologies-expected :
JavaScript
HTML
CSS
Java
Python
responsibilities :
Review technical architecture and delivery for web and other client delivery platforms.
Review current system security measures and recommend or implement enhancements.
Review and contribute to application designs and solutions.
Identify and define application security requirements and security baselines.
Support application security team with static and dynamic code analysis.
Perform manual and automated penetration tests and retests of web and mobile applications.
Review developers’ code, provide feedback and perform security assessments for consumer-facing applications, services and future technology.
Triage risk of identified vulnerabilities and findings.
Work with external penetration testers, oversee ongoing pentests and exercises, work with application engineering teams on remediation of found vulnerabilities.
Participate (as a subject matter expert) in information security operations duties, including occasional incident response escalations.
Evaluate, deploy and support application security technologies, processes and workflows on multiple platforms (server, client, mobile, tablet etc.).
Work collaboratively and proactively across the organization (e.g., Technical Architects, Engineering Leads, Product Owners etc.) to support and remediate security gaps.
requirements-expected :
3+ years of product/application security work experience.
Knowledge of common security principles for web application architectures.
Knowledge of practical threat modeling for consumer applications.
Experience in code reviews, business logic assessment, and application security testing.
Solid understanding of security protocols, cryptography, data security, networking, access control, client and server-side protections.
Broad knowledge of security technologies, processes, and techniques and a strong understanding of application security leading practices including OWASP and CWE.
Familiarity with HTML/CSS, JavaScript and UI/UX design and software quality assurance principles.
Hands-on experience working with DevOps and Agile driven product teams.
Familiarity with application security tools like BurpSuite Pro, SAST/DAST, nmap, Metasploit, and Kali Linux.
Experience in secure software development principles in various languages (Java, Go, JavaScript, Python etc.).
Excellent communication and presentation abilities with great attention to detail.
Demonstrated ability to explain risks and vulnerabilities to both technical and non-technical audiences.
Languages: Fluent English and Polish.
offered :
Contract of employment
Hybrid work model (3 days from the office, 2 days from home)
Free access to Max
Benefit package: private medical health care, life insurance, MyBenefit cafeteria including sport card, social funds, retirement pension plans, recognition platform, employee referral program
Work-life balance initiatives: wellbeing platform, yoga, educational webinars, Employee Assistance Program, internal media initiatives
Training & development: sharing the cost of English lessons, Employee Resource Groups, Bridge learning platform, sharing sessions with experts
CSR activities: volunteering, eco & social initiatives
Casual dress code
Parking available for booking
benefits :
private medical care
life insurance
flexible working time
corporate products and services at discounted prices
no dress code
parking space for employees
employee referral program
charity initiatives
Cafeteria benefit system
partial home office
-
Product Security Engineer
4 tygodni temu
Warsaw, Polska myGwork Pełny etatThis job is with Warner Bros. Discovery, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Welcome to Warner Bros. Discovery... the stuff dreams are made of. Who We Are... When we say, "the stuff dreams are made of," we're not just referring to the...
-
Product Security Engineer
4 tygodni temu
Warsaw, Polska myGwork Pełny etatThis job is with Warner Bros. Discovery, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. Welcome to Warner Bros. Discovery... the stuff dreams are made of. Who We Are... When we say, "the stuff dreams are made of," we're not just referring to the...
-
Product Security Specialist
4 tygodni temu
Warsaw, Polska myGwork Pełny etatProduct Security EngineerWarner Bros. Discovery is seeking a highly skilled Product Security Engineer to join our Global Information and Content Security team. As a key member of our team, you will work closely with Direct to Consumer (DTC) teams to design and deploy appropriate, risk-based application security safeguards and technical application security...
-
Principal Security Engineer
6 miesięcy temu
Warsaw, Polska JPMorgan Chase & Co. Pełny etatWe know that people want great value combined with an excellent experience from a bank they can trust, so we launched our digital bank, Chase, to revolutionise mobile banking with seamless journeys that our customers love. We're already trusted by millions in the US and we're quickly catching up in the United Kingdom – but how we do things here is a...
-
Product Security Specialist
4 tygodni temu
Warsaw, Polska myGwork Pełny etatProduct Security SpecialistWarner Bros. Discovery is seeking a Product Security Specialist to join our Global Information and Content Security team. As a key member of our team, you will work closely with Direct to Consumer (DTC) teams to design and deploy appropriate, risk-based application security safeguards and technical application security controls to...
-
Security Tooling Engineer II
6 miesięcy temu
Warsaw, Polska Box Pełny etatWHAT IS BOX?Box is the world’s leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders across deeply regulated industries (such as AstraZeneca, JLL, and Nationwide), to protect their data, fuel collaboration, and power critical workflows with secure, enterprise AI.By...
-
Senior Information Security Engineer
6 dni temu
Warsaw, Polska Sportradar Pełny etatJob DescriptionJoin Our Team as a Senior Security Engineer at Sportradar! Are you ready to elevate your career in one of the fastest-growing sectors in the digital sports environment? At Sportradar, we provide a platform for you to gain international recognition for your expertise while working alongside industry leaders. This is more than just a job –...
-
Cloud Security Engineer
2 tygodni temu
Warsaw, Polska Fusion Consulting Pełny etatJob DescriptionSecurity / Cloud Security EngineerWe are looking for a dedicated Security / Cloud Security Engineer to safeguard our cloud and on-premise infrastructures, ensuring they meet top-tier security standards and comply with regulatory and company policies. This role involves implementing security best practices across both environments, managing...
-
Cloud Product Manager
2 miesięcy temu
Warsaw, Polska Arrow Electronics, Inc. Pełny etatPosition: Cloud Product Manager - Microsoft Security Job Description: Arrow ECS (Enterprise Computing Solutions) is a global powerhouse in technology distribution and value-added services. We connect the world's leading technology suppliers with a vast network of resellers, systems integrators, and service providers, ensuring that the market is equipped to...
-
Cloud Product Manager
2 tygodni temu
Warsaw, Polska Arrow Electronics, Inc. Pełny etatPosition: Cloud Product Manager - Microsoft Security Job Description: Arrow ECS (Enterprise Computing Solutions) is a global powerhouse in technology distribution and value-added services. We connect the world's leading technology suppliers with a vast network of resellers, systems integrators, and service providers, ensuring that the market is equipped to...
-
Cyber Security Engineer
4 tygodni temu
Warsaw, Polska myGwork Pełny etatJob Title: Lead Cyber Security EngineerJohnson & Johnson is seeking a highly skilled Lead Cyber Security Engineer to join our team. As a member of the Operational Technology Cybersecurity Engineering team, you will be responsible for leading the development, deployment, and support of global OT Security platforms, solutions, and services.Key...
-
Information Security Engineer
2 miesięcy temu
Warsaw, Polska Sportradar Pełny etatJob DescriptionOVERVIEW: The Security Engineering squad is a group of security engineers with the clear mission to enable IT Security and Information Security processes by internally providing specialized services. The squad acts as an internal service provider supporting both security focused teams and other business units. As Subject Matter Experts...
-
Senior Security Analyst
6 miesięcy temu
Warsaw, Polska Opera Software Pełny etatLocation: Wrocław/ Warszawa About the job Have you ever dreamed of making a real impact on the way people access the web? Well, then working at Opera should be exactly right for you! Here, the innovations you create get implemented quickly and delivered to our users. What we offer is the possibility to join an energetic team developing products...
-
Application Security Tooling Engineer III
1 miesiąc temu
Warsaw, Polska myGwork Pełny etatThis job is with Box, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly. WHAT IS BOX? Box is the world's leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500 and leaders...
-
Information Security Engineer
6 dni temu
Warsaw, Polska Sportradar Pełny etatJob DescriptionOVERVIEW: The Security Engineering squad is a group of security engineers with the clear mission to enable IT Security and Information Security processes by internally providing specialized services. The squad acts as an internal service provider supporting both security focused teams and other business units. As Subject Matter Experts...
-
SAP Security
3 tygodni temu
Warsaw, Polska Bosch Group Pełny etatJob DescriptionTasks:Developing clear vision and strategy for SAP ETD product /solution, aligned with organizational goals and security policies and stakeholders' requirements;Defining the roadmap of SAP ETD products to the team and all stakeholders;Consulting on emerging technologies, such as AI, to drive innovation within the teams;Supporting the...
-
SAP Security
3 tygodni temu
Warsaw, Polska Bosch Pełny etatJob Description Tasks: Developing clear vision and strategy for SAP ETD product /solution, aligned with organizational goals and security policies and stakeholders' requirements; Defining the roadmap of SAP ETD products to the team and all stakeholders; Consulting on emerging technologies, such as AI, to drive innovation within the teams; ...
-
Senior Cloud Application Security Engineer
4 tygodni temu
Warsaw, Polska Sportradar Polska Sp. z o.o. Pełny etatAbout the RoleWe are seeking a highly skilled Senior Cloud Application Security Engineer to join our team at Sportradar Polska Sp. z o.o. The successful candidate will be responsible for ensuring the security of our cloud-based applications and infrastructure.Key ResponsibilitiesRespond to identified vulnerabilities in our applications and cloud environments...
-
Application Security Tooling Engineer III
4 tygodni temu
Warsaw, Polska myGwork Pełny etatJob DescriptionThis role is with Box, an inclusive employer and a member of myGwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.What is Box?Box is the world's leading Content Cloud. We are trusted by more than 115K organizations around the world today, including nearly 70% of the Fortune 500...
-
Senior Cloud Application Security Engineer
1 miesiąc temu
Warsaw, Polska Sportradar Pełny etatJob DescriptionSenior Cloud Application Security EngineerLocation: Warsaw (Hybrid) or Anywhere from Poland (Remote)Sportradar is the leading global provider of sports data and entertainment products and services. Since 2001, we have occupied a unique position at the intersection of the sports, media and betting industries; providing sports federations, news...