Pracuj.pl Hybrydowo Mid New

IT&D Application Security Engineer

Vestacy

⚲ Warszawa, Mokotów

Wymagania

  • Microsoft Azure
  • Linux
  • Windows

Opis stanowiska

Nasze wymagania: 6–8 years of professional experience in Information Security with a strong focus on application security and penetration testing. Hands-on experience conducting security assessments of applications across various types and architectures including web mobile and API based solutions. Practical experience performing penetration testing in cloud environments particularly Microsoft Azure as well as in on premises infrastructures. Proficiency with penetration testing and application security tools along with strong programming and scripting skills and solid knowledge of Linux and Windows operating systems. Strong analytical skills with the ability to develop security strategies actionable tactics and measurable implementation plans. High sense of urgency ownership mindset and focus on timely and high quality delivery. Mile widziane: Relevant industry certifications such as CEH with OSCP considered a strong advantage. Bachelor’s degree in computer science engineering or a related technical field. O projekcie: About IT and D In IT&D, you'll be a force for good, whether you're championing cyber security, defining how we harness the power of technology to improve our business, or working with data to guide the innovation of consumer loved products. Working globally across functions, you'll own your projects and process from start to finish, with the influence and visibility to achieve what needs to be done. And if you're willing to bring your ideas to the table, you'll get the support and investment to make them happen. Your potential will never be wasted. You'll get the space and support to take your development to the next level. Every day, there will be opportunities to learn from peers and leaders through working on exciting, varied projects with real impact. And because our work spans so many different businesses, from Research and Product Development to Sales, you'll keep learning exciting new approaches. About the role As an Application Security Engineer, you will play a key role in strengthening the organization’s security posture by delivering penetration testing services, overseeing vulnerability management, conducting security assurance activities, and supporting threat hunting initiatives. You will be responsible for evaluating existing cybersecurity controls, identifying gaps, and leading or driving remediation and continuous improvement efforts. This role requires a proactive mindset, strong communication skills, and the ability to operate effectively in a fast paced environment while safeguarding the organization’s digital assets. You should thrive in a rapidly evolving setting, adapting quickly to new challenges and opportunities. This position also offers the unique opportunity to shape and deliver new security capabilities. The ideal candidate is a self starter who is pragmatic, action oriented, and energized by complex challenges. You excel in dynamic environments and are driven by achieving tangible results. Zakres obowiązków: Conduct penetration testing across applications platforms and infrastructure to identify security weaknesses and validate controls. Oversee the vulnerability management service delivered by an external vendor including vulnerability scanning assessment prioritization and tracking of remediation activities. Assess and communicate the risk associated with identified vulnerabilities providing clear remediation guidance and coordinating retesting efforts. Perform security assurance activities including application design reviews source code reviews and deployment assessments using threat modeling SAST and DAST approaches. Define review and validate requirements for information security solutions and ensure alignment with security standards and best practices. Integrate security best practices into development workflows and provide expert security guidance to engineering and delivery teams. Lead and support threat hunting and cybersecurity investigation activities staying current with emerging threats tools and adversary techniques. Oferujemy: We believe great work deserves great rewards. That’s why we offer numerous local benefits and global benefits designed to help you grow and thrive, such as career mobility opportunities, a referral program, access to our online learning academy, mental wellbeing support, and short-term bonus incentives.