.
Application Security Engineer
  • Kraków
Application Security Engineer
Kraków, Kraków, Lesser Poland Voivodeship, Polska
EPAM Systems (Poland) sp. z o.o.
24. 3. 2025
Informacje o stanowisku

technologies-expected :


  • JavaScript
  • TypeScript
  • Terraform
  • Helm
  • CloudFormation
  • Python
  • Shell
  • Docker

technologies-optional :


  • Kubernetes
  • AWS

about-project :


  • We are seeking an Application Security Engineer to join our dedicated team, responsible for ensuring the secure design and compliance of our applications and cloud infrastructure.
  • This role requires a dynamic individual expert in integrating security practices within development pipelines and familiar with the latest security methodologies.
  • Please note that work from office 5 days per week is required.

responsibilities :


  • Collaborate across teams to accomplish complex security objectives
  • Design security architecture from cloud infrastructure to application implementing “secure by design” principles
  • Work with product managers, architects, and developers to implement security controls within our platform and products
  • Validate security implementations in infrastructure, application deployments, and CI/CD pipelines
  • Develop and enforce security policies, controls, and capabilities to protect products and environments
  • Automate threat model validations
  • Engage in product planning cycles and committees within engineering teams
  • Manage the migration of products and services to public cloud environments such as AWS
  • Serve as a cybersecurity advisor to product and application teams

requirements-expected :


  • Minimum of 2 years’ experience in Security Engineering
  • Demonstrated experience integrating security scanning and tooling into development pipelines
  • Proficiency in analyzing and securing microservices and applications using JavaScript and TypeScript
  • Skills in CI/CD pipelines and infrastructure-as-a-code models including Terraform, Helm, or CloudFormation
  • Hands-on experience in Python or shell scripting
  • Solid understanding of supply chain security, software integrity, and secure software delivery
  • Background in Docker and mesh technologies like ISTIO
  • Capability to conduct architecture and security reviews, threat modeling, and application risk assessments
  • Familiarity with Agile methodologies
  • Understanding of privacy laws and regulations, such as GDPR
  • Knowledge of industry regulations and frameworks such as PCI, ISO27001, and NIST
  • Upper-intermediate proficiency in English (B2+)

offered :


  • Engineering community of industry professionals
  • Friendly team and enjoyable working environment
  • Flexible schedule and opportunity to work remotely within Poland
  • Chance to work abroad for up to 60 days annually
  • Relocation within our 50+ offices
  • Outstanding career roadmap
  • Leadership development, career advising, soft skills, and well-being programs
  • Certification (GCP, Azure, AWS)
  • Unlimited access to LinkedIn Learning, Get Abstract, O’Reilly, Cloud Guru
  • Language classes in English and Polish for foreigners
  • Stable income (Employment Contract or B2B)
  • Participation in the Employee Stock Purchase Plan
  • Benefits package (health insurance, multisport, shopping vouchers)
  • Strategically located offices featuring entertainment and relaxation zones, table tennis and football, free snacks, fantastic coffee, and more
  • Referral bonuses
  • Corporate, social and well-being events

benefits :


  • private medical care
  • life insurance
  • remote work opportunities
  • flexible working time
  • fruits
  • no dress code
  • video games at work
  • coffee / tea
  • parking space for employees
  • leisure zone
  • employee referral program
  • charity initiatives

  • Praca Kraków
  • Chief security officer Kraków
  • Kraków - Oferty pracy w okolicznych lokalizacjach


    74 104
    7 008