Senior Security Specialist IAM
3 tygodni temu
technologies-expected :
- Google Cloud Platform
- Dockers
- Kubernetes
- AWS
about-project :
- The security architect provides expert guidance for addressing current security issues but has the foresight to see where the industry is headed and proactively deliver optimal secure solutions. The architect is expected to think like an adversary and identify how solutions should evolve as the threat landscape changes. A senior tech-level role, the architect possesses strong communication and organizational skills, and the ability to guide less experienced coworkers. The architect provides technical leadership to delivery and solution design team members and advises executive leadership regarding matters of significant importance to the organization.
responsibilities :
- Remain current with new security threats and assess systems to ensure they can defend the business.
- Conduct threat modelling and architectural assessments of applications to encompass all aspects of information security, ensuring security by design.
- Document identified threats and provide corresponding mitigation strategies.
- Evaluate technologies and solutions to enhance security capabilities.
- Identify security gaps and communicate associated business risks to relevant stakeholders.
- Provide solutions aligned with business needs, considering security and compliance requirements.
- Verify the effectiveness of security controls in mitigating identified risks.
- Assist engineering projects throughout the Secure Software Development Life Cycle (SSDLC) and collaborate to effectively prioritize product security elements.
requirements-expected :
- 5-10 years of experience in IT or IT Security.
- Strong knowledge of information security principles, security architectures, frameworks, standards, and emerging threats, with the ability to implement effective mitigation strategies.
- Deep understanding of network protocols, operating systems, databases, applied cryptography, least privilege, zero trust principles, identity & access management, and other core information security concepts.
- Familiarity with regulatory requirements and compliance standards (NIST, ISO 27001, GDPR, SOC2).
- Expertise in cloud computing and its associated best security practices, covering applications, infrastructure, storage, platforms, and data security.
- Hands-on experience in performing threat modelling for applications, identifying threats, and suggesting optimal mitigation strategies.
- Strong understanding of threat modelling methodologies (e.g., STRIDE, DREAD, PASTA).
- Proficiency in using threat modelling tools (e.g., Microsoft Threat Modelling Tool, Threat Modeler, OWASP Threat Dragon).
- In-depth knowledge of common security vulnerabilities (e.g., OWASP Top Ten, CVEs) and attack vectors.
- Must have experience in architecting and securing Cloud Computing Platforms such as Azure or AWS.
- Demonstrate a deep understanding of Google Cloud Platform(GCP) concepts and architectures, with a focus for how security controls are applied to cloud-based technologies. Architecture & Networking , Identity & Access Management, Securing the CI/CD Pipeline, Secrets and Data Protection, logging and monitoring and Security controls for Containers(e.g., Dockers, Kubernetes).
- Excellent communication and interpersonal skills, with the ability to interact with stakeholders at all levels and explain complex security concepts in an easily understandable manner.
- Constantly research capabilities of current and new disruptive solutions on the market and make recommendations to security leadership.
- Drive security efficiencies, enabling security team members to work on more advanced tasks.
- Perform engineering performance testing to stress the limitations of security solutions while at the same time ensuring business innovation and day-to-day processes are not negatively impacted.
- Experience in cloud computing technologies, including software-, infrastructure and platform-as-a-service, as well as public, private and hybrid environments.
- Extensive knowledge of traditional security controls and technologies, such as Security Information and Event Management (SIEM) systems, intrusion detection/prevention systems (IDS/IPS), public key infrastructure (PKI), identity and access management (IDAM) systems, antivirus and firewalls, in addition to newer offerings such as endpoint detection and response (EDR), threat intelligence platforms, security automation and orchestration, deception technologies and application controls.
- Analytical and problem-solving skills.
- Ability to work in cross functional teams, including remote and external resources.
- Ability to effectively communicate with technical resources.
- Works with minimal guidance and recognitions when guidance needed.
- Ability to understand and develop enterprise policy and technical standards with specific regard to data loss protection and secure configuration.
- Ability and willingness to learn new things about data loss protection management, exploits, hacker techniques, and overall security operations.
offered :
- Being part of a fast-growing, dynamic company, recognized as one of the foremost global packaging manufacturers.
- Great professional growth opportunities.
- Annual bonus.
- Private medical care & insurance plan for you to keep an eye on your health.
- MyBenefit program.
- Flexible and hybrid work arrangement: We offer a flexible hybrid work model – 2 days a week in the Krakow office, or fully remote if you're located elsewhere.
- Parking space for all employees.
- Comfortable working environment (library, relaxation area with a view of the Wawel castle and city center, casual dress code).
benefits :
- sharing the costs of sports activities
- private medical care
- sharing the costs of foreign language classes
- sharing the costs of professional training & courses
- life insurance
- remote work opportunities
- flexible working time
- retirement pension plan
- corporate library
- parking space for employees
- leisure zone
- extra social benefits
- charity initiatives
-
Senior Security Specialist IAM
7 dni temu
Kraków, Lesser Poland CANPACK Group Pełny etat 80 000 zł - 120 000 zł rocznieSenior Security Specialist IAMThe security architect provides expert guidance for addressing current security issues but has the foresight to see where the industry is headed and proactively deliver optimal secure solutions. The architect is expected to think like an adversary and identify how solutions should evolve as the threat landscape changes. A senior...
-
Senior Security Specialist IAM
1 tydzień temu
Kraków, małopolskie, małopolskie, Polska CANPACK Group Pełny etatSenior Security Specialist IAMMiejsce pracy: KrakówTechnologies we useExpectedGoogle Cloud PlatformDockersKubernetesAWSAbout the projectThe security architect provides expert guidance for addressing current security issues but has the foresight to see where the industry is headed and proactively deliver optimal secure solutions. The architect is expected to...
-
Specialist Engineering Security Solution Architect
2 tygodni temu
Kraków, Polska Antal Sp. z o.o. Pełny etatSecurity Solution Architect / Specialist Engineering (Cybersecurity) Location: Kraków or Warsaw (hybrid – 6 days/month onsite) Contract type: B2B Role overview: The Security Solution Architect is responsible for designing and delivering end-to-end IT security solutions aligned with business and reference architecture standards. The role involves technical...
-
IAM Engineer I
5 dni temu
- Kraków, Polska Motorola Solutions Pełny etat 42 000 zł - 90 000 zł rocznieCompany OverviewAt Motorola Solutions, we believe that everything starts with our people. We're a global close-knit community, united by the relentless pursuit to help keep people safer everywhere. Our critical communications, video security and command center technologies support public safety agencies and enterprises alike, enabling the coordination that's...
-
IAM Engineer I
5 dni temu
Kraków, Lesser Poland Motorola Solutions Pełny etat 60 000 zł - 90 000 zł rocznieCompany OverviewAt Motorola Solutions, we believe that everything starts with our people. We're a global close-knit community, united by the relentless pursuit to help keep people safer everywhere. Our critical communications, video security and command center technologies support public safety agencies and enterprises alike, enabling the coordination that's...
-
IAM Engineer II
5 dni temu
- Kraków, Polska Motorola Solutions Pełny etat 53 000 USD - 110 000 USD rocznieCompany OverviewAt Motorola Solutions, we believe that everything starts with our people. We're a global close-knit community, united by the relentless pursuit to help keep people safer everywhere. Our critical communications, video security and command center technologies support public safety agencies and enterprises alike, enabling the coordination that's...
-
IAM Cloud and Audit Senior Analyst
7 dni temu
Kraków, małopolskie, Polska HSBC Service Delivery Pełny etatYour career opportunityHSBC's Global IT Organisation ranks among the largest technology functions worldwide. It is imperative that IT processes are not only appropriately embedded but also operate with maximum efficiency. This is crucial for maintaining the organisation's effectiveness and sustaining its leadership position in the market.IAM Cloud & Audit...
-
IAM Engineer II
5 dni temu
Kraków, Lesser Poland Motorola Solutions Pełny etat 60 000 € - 120 000 € rocznieCompany OverviewAt Motorola Solutions, we believe that everything starts with our people. We're a global close-knit community, united by the relentless pursuit to help keep people safer everywhere. Our critical communications, video security and command center technologies support public safety agencies and enterprises alike, enabling the coordination that's...
-
Senior Manager IAM Enterprise Security
7 dni temu
Kraków, Lesser Poland Genuine Parts Company Pełny etat 120 000 zł - 180 000 zł rocznieCompany Background:Established in 1928, Genuine Parts Company is a leading global service provider of automotive and industrial replacement parts and value-added solutions. Our Automotive Parts Group operates across the U.S., Canada, Mexico, Australasia, France, the U.K., Ireland, Germany, Poland, the Netherlands, Belgium, Spain and Portugal, while our...
-
Senior Manager IAM Enterprise Security
1 dzień temu
Kraków, Lesser Poland Genuine Parts Company Pełny etatCompany BackgroundGenuine Parts Company founded in 1928 and based in Atlanta, Georgia, is a leading specialty distributor engaged in the distribution of automotive and industrial replacement parts and value-added services. The Company operates a global portfolio of businesses with more than 10,000 locations across the world, employing 63,000 people.The GPC...