Senior Security Engineer (AppSec)
HelloFresh
⚲ Warszawa, Wola
21 750–33 300 zł netto (+ VAT) / mies.
Wymagania
- AWS
- Python
- Azure DevOps
- Go
Opis stanowiska
Nasze wymagania: t you’ll bring: The Ingredients 4-7 years of professional experience demonstrating advanced proficiency in at least four of the following: Network, Wireless, Cloud, Web, Mobile, API Assessments, Source Code Review, Red Teaming, or Social Engineering. Thorough technical understanding of network protocols, client-server models, application architecture, and diverse classes of security flaws. Proven proficiency in a modern scripting language such as Python or Go. Relevant offensive security certifications, such as OSWE, GWAPT, or equivalent mobile/web penetration testing credentials. Active participation in web hacking challenges, security competitions, or public bug bounty programs. Experience in the development of tools or plugins specifically for security testing and analysis. Ability to develop, extend, or modify exploits, shellcode, or associated exploit tools. Expertise in performing source code reviews for control flow analysis and security flaws. Strong command of industry-standard tools used for cloud, wireless, web, and network security testing. Zakres obowiązków: Perform network and cloud penetration testing, web and mobile application security assessments, and source code reviews. Conduct specialized threat analysis, wireless network assessments, and social-engineering simulations. Develop comprehensive technical reports and presentations tailored for both technical stakeholders and executive leadership. Communicate findings and remediation strategies effectively to primary stakeholders, including technical staff and legal counsel. Utilize formal project management methodologies for the planning, tracking, and reporting required to close the remediation loop. Safely employ attacker tools, tactics, and procedures (TTPs) to identify vulnerabilities and analyze system weaknesses. Develop custom scripts, tools, and methodologies to enhance the efficiency of the Vulnerability Management Program. Oferujemy: Global collaboration at scale: Collaborate with experienced engineers and product partners across HelloTech’s international teams, in a culture of active knowledge sharing. Technology with real-world impact: Build and operate modern systems at global scale, supporting 6+ millions of customers and complex supply chain operations. Technical/Product/Design leadership: Drive best practices and influence architecture/design, quality, and ways of working in an autonomous, product-led setup. End-to-end development/delivery: Drive decisions from problem definition to production, improving systems and enabling long-term scalability. Access to workspace at Warsaw Centre Point: The hub offers modern facilities including showers, breakout zones, outdoor space, cycle parking, and refreshments (coffee, soft drinks, and fruit).