Senior Application Security Specialist
19000 - 24000 złEcoVadis
- Praca zdalna
Required Qualifications
- Experience: 3+ years of professional experience in Application Security, Penetration Testing, or Secure Software Development.
- Cloud & SaaS Knowledge: Practical experience with Azure cloud solutions and securing SaaS platforms.
- AI Security Knowledge: Familiarity with the OWASP Top 10 for LLM Applications and common risks associated with Generative AI and Machine Learning models.
- Technical Knowledge: Understanding of common web and mobile application vulnerabilities (e.g., OWASP Top 10, SANS Top 25) and how to remediate them using industry-standard methodologies (e.g., OWASP WSTG).
- Tooling: Hands-on experience with application security tools.
- DevSecOps: Experience integrating security checks into CI/CD pipelines (e.g., Azure DevOps).
- Education: Bachelor’s or Master’s degree in Computer Science, Cyber Security, or a related technical field.
- Communication: Excellent English communication skills to explain complex security, AI, and pentesting risks to various stakeholders.
- Communication: Excellent communication, facilitation, and negotiation skills, with the ability to explain complex security, AI, and pentesting risks to various stakeholders.
- Language: Fluency in English (written and verbal).
Additional Qualifications
- Certifications: Professional certifications such as OSCP, OSWE, or specific cloud/AI security credentials.
- Application Resilience: Basic understanding of application performance monitoring (APM) and observability concepts.
- AI/ML Security Frameworks: Experience with frameworks such as MITRE ATLAS or NIST AI RMF.
- Contingency Planning: Experience contributing to Business Continuity (BCP) or Disaster Recovery (DR) strategies.
- Cloud & Container Security: Experience securing applications in Azure, AWS, or GCP and knowledge of Kubernetes.
Personal Attributes
- Proactivity & Autonomy: High level of proactivity and autonomy in managing security initiatives.
- Organization: Strong planning, prioritization, and organizational skills.
- Collaborative Spirit: Comfortable challenging assumptions and existing processes while remaining highly collaborative.
As an Application Security Specialist, you will play a critical role in ensuring that our software products (including web and mobile applications) are designed, built, and deployed with security as a core principle. You will bridge the gap between Security and Development, acting as a subject matter expert who empowers engineering teams to deliver high-quality, secure, and robust code.
In this role, you will specifically focus on the intersection of Application Security and Artificial Intelligence. Your mission is to integrate security into the entire Software Development Life Cycle (SDLC) while addressing the unique challenges of AI-driven applications. Additionally, you will be responsible for conducting and coordinating penetration testing activities and performing high-level monitoring of application resilience.
Offer available only for candidates eligible to work and live in Poland
Location: Hybrid in Warsaw (4 days per month in the office) / Full remote from Poland
In return for your expertise, we offer:
- Support with all the necessary office and IT equipment
- Flexible working hours
- Wellness allowance for mental and physical wellbeing
- Access to professional mental health support
- Referral bonus policy
- Learning and development
- Sustainability events and community involvement
- Peer recognition program
- Employee-led resource groups
- Optional (fully covered or co-financed) health care and life insurance
- Multisport card
- Multikafeteria
- Lunch card
- Hybrid work organization
- Remote work from abroad policy
- Internet and Electricity bill allowance
- Additional day for community service when volunteering
- specjalista ochrony roślin Zdalna
- specjalista ds. systemów bezpieczeństwa Zdalna
- security testing expert Zdalna
- security specialist Zdalna
- senior application security analyst Zdalna
- senior security devops specialist Zdalna
- specjalista ds. ochrony Zdalna
- specjalista ds. bezpieczeństwa systemów IT Zdalna
- security analyst Zdalna
- information security specialist Zdalna