JustJoin.IT Praca zdalna Mid

Security Engineer (Product)

Coder

⚲ Warszawa

267 000 - 361 000 PLN netto (B2B)

Wymagania

  • CI/CD
  • Security

Opis stanowiska

Coder is looking for a Security Engineer focused on product security. In this role, you will help make secure development the default for our engineering teams and our customers. You will partner closely with Engineering to shape secure design, improve delivery workflows, and reduce product risk. You will turn findings into fixes, patterns into defaults, and security requirements into work teams that can ship. Note: B2B contract and permanent employment options available What you’ll do here • Partner with Engineering to build security into the software development lifecycle, including threat modeling, secure design reviews, and security requirements. • Triage findings from application security tooling, then guide remediation through clear priorities and practical fixes. • Define and maintain secure-by-default patterns for developers, including libraries, templates, and CI checks. • Improve supply chain security across build and release workflows, including signing, provenance, and policy enforcement. • Help teams ship secure changes quickly by making security guidance clear, repeatable, and easy to use. What we’re looking for • 3+ years of professional experience in product security, application security, or a similar engineering security role. • Strong application security fundamentals and familiarity with common vulnerability classes. • Hands-on experience securing CI/CD workflows, such as GitHub Actions, GitLab CI, or similar systems. • Familiarity with modern security tooling, including SAST, SCA, dependency scanning, and secret scanning. • Ability to collaborate effectively with engineers, explain tradeoffs clearly, and move secure changes through delivery. Bonus tacos if you have • (Tacos? If you need an ice-breaker, ask how we say thanks by giving tacos!) • Experience using AI tools to improve security workflows, developer productivity, or engineering velocity. • Ability to program in a general-purpose language, especially Go or Python.

🔍 Dekoder Ogłoszenia

🔴
help make secure development the default for our engineering teams and our customers
Twoim głównym zadaniem będzie promowanie i wdrażanie dobrych praktyk bezpieczeństwa, a niekoniecznie bezpośrednie ich egzekwowanie.
🟡
turn findings into fixes, patterns into defaults, and security requirements into work teams that can ship
Oczekuje się od Ciebie przekształcania problemów w rozwiązania i tworzenia powtarzalnych procesów, które zespoły deweloperskie będą w stanie samodzielnie wdrażać.
🟡
guide remediation through clear priorities and practical fixes
Będziesz odpowiedzialny za wskazywanie priorytetów i proponowanie rozwiązań, ale faktyczne naprawy będą należeć do zespołów deweloperskich.
🟡
Help teams ship secure changes quickly by making security guidance clear, repeatable, and easy to use.
Twoja rola będzie polegać na ułatwianiu zespołom wdrażania bezpieczeństwa poprzez tworzenie prostych i zrozumiałych wytycznych.