Application Security Engineer

Brak informacji o wynagrodzeniu
MidFull-time
#400690·Dodano 5 miesięcy temu·0
Źródło: Starburst
Aplikuj teraz

Tech Stack / Keywords

SecurityAIApacheSoftware DevelopmentCI/CDArchitectureOWASPGit

Firma i stanowisko

Starburst delivers enterprise intelligence at scale by providing organizations with secure, governed access to all their data across distributed environments. It enables enterprises to power AI and analytics using open standards including Trino and Apache Iceberg, helping avoid vendor lock-in. The company serves leading global enterprises trusted for AI, analytics, and enterprise intelligence.

Wymagania

  • Bachelor’s degree in Computer Science, Engineering, MIS, or equivalent experience.
  • 2–5 years of experience in application security, product security, or security-focused software engineering.
  • Strong understanding of application vulnerabilities and mitigation (e.g., OWASP Top 10, CWE).
  • Experience with CI/CD tooling, Git workflows, and modern development practices.
  • Familiarity with cloud security and experience with at least one cloud platform (AWS, Azure, or GCP).
  • Experience with programming languages such as Python, Go, Java, JavaScript/TypeScript, or Ruby; Java and Python preferred.
  • Experience with application security tools like OWASP ZAP, Burp Suite, SAST/DAST, SCA, or dependency scanning.
  • Knowledge of secure coding principles, API security, authentication, authorization, and secrets management.
  • Strong problem-solving and communication skills.
  • Understanding of agile development and team collaboration.
  • Willingness to travel approximately 25% for onboarding, offsites, customer engagements, and company events.

Obowiązki

  • Integrate application security best practices into the development lifecycle and enable automated security checks within CI/CD pipelines.
  • Support and maintain Application Security tooling including SAST, DAST, SCA, and secrets scanning.
  • Conduct secure code reviews, threat modeling, and application architecture assessments.
  • Develop and maintain security automation, guardrails, and reusable components.
  • Assist in defining secure coding standards and application hardening.
  • Support monitoring and detection by improving application logging, telemetry, and alerting.
  • Assist in incident response related to application vulnerabilities.
  • Stay current on emerging threats, vulnerabilities, and best practices.
  • Contribute to security documentation and remediation playbooks.
  • Participate in internal security reviews, compliance assessments, and architectural walkthroughs.
  • Develop and maintain application security tools, pipelines, and workflows.
  • Collaborate with engineering and product teams for secure deployment and continuous improvement of applications.

Benefity

  • Competitive pay.
  • Attractive stock grants.
  • Flexible paid time off.
  • Supportive Total Rewards program.

Inne informacje

This role requires approximately 25% in-person travel for onboarding, offsites, customer engagements, and other company events. The position is based in Warsaw with a hybrid work model expecting 1-2 days onsite per week. Starburst provides equal employment opportunities without discrimination as per applicable laws.

Starburst

Starburst

4 aktywne oferty

Zobacz wszystkie oferty
Aplikuj teraz