.
Application Security Engineer
  • Warsaw
Application Security Engineer
Warszawa, Warsaw, Masovian Voivodeship, Polska
The Stepstone Group Polska sp. z o.o.
2. 10. 2024
Informacje o stanowisku

technologies-expected :


  • Python
  • Bash
  • AWS
  • Microsoft Azure
  • Google Cloud Platform

about-project :


  • As an Application Security Engineer, you will play a pivotal role in safeguarding our organizations applications and data. You will work closely with development teams to integrate security tools into our CI/CD pipelines, ensuring that security is baked into the development process from the outset. Additionally, you will be responsible for automating threat modeling, security testing, and vulnerability assessments to proactively identify and mitigate potential risks.

responsibilities :


  • CI/CD Integration: Develop and integrate security tools into our CI/CD pipelines to automate security testing, code analysis, and vulnerability scanning throughout the development lifecycle.
  • Threat Modeling Automation: Create and maintain automated threat modeling processes to identify and assess potential security risks in our applications.
  • Security Testing and Automation: Conduct and automate security testing activities, including vulnerability assessments, penetration testing, and code reviews, to identify and remediate security vulnerabilities.
  • Web Application Architecture: Demonstrate a deep understanding of web application architecture and design principles to effectively assess and mitigate security risks.
  • SDLC Knowledge: Apply knowledge of the Software Development Security Lifecycle (SDLC) to ensure security is integrated into all phases of the development process.
  • Development Skills: Possess proficiency in .NET and Node.js development to contribute to secure coding practices and understand application vulnerabilities.

requirements-expected :


  • Minimum 5 years of experience in application security or a related field.
  • Strong understanding of security principles, practices, and frameworks (e.g., OWASP, NIST).
  • Proficiency in scripting languages (e.g., Python, Bash).
  • Experience with security tools and technologies (e.g., vulnerability scanners, Web Application Firewalls).
  • Certification in cybersecurity (e.g., OSWE, OSCP, ).
  • Experience with cloud-based security (e.g., AWS, Azure, GCP).
  • Knowledge of DevOps practices and tools.

offered :


  • We’re a community here that cares as much about your life outside work as how you feel when you’re with us. Because your job shouldn’t take over your life, it should enrich it. Here are some of the benefits we offer:
  • Medical and dental care
  • Life insurance
  • Benefit platform budget
  • Employee Referral Program
  • Hackathons, Knowledge Sharing Hours
  • In-house projects
  • Events and integration parties
  • Charity initiatives, 2 extra volunteer days
  • English/German classes
  • Game room and chillout zone

benefits :


  • private medical care
  • life insurance
  • remote work opportunities
  • flexible working time
  • integration events
  • dental care
  • corporate library
  • no dress code
  • video games at work
  • parking space for employees
  • leisure zone
  • redeployment package
  • employee referral program
  • charity initiatives
  • Hackathons, Knowledge Sharing Hours
  • in-house projects

  • Praca Warszawa
  • Chief security officer Warszawa
  • Warszawa - Oferty pracy w okolicznych lokalizacjach


    116 108
    21 116