HSBCJP00058469 (Cybersecurity) Security Engineer

180 - 220 PLN/ godz.B2B
SeniorFull-time·B2B
#404146·Dodano 8 dni temu·5
Źródło: nofluffjobs.com
Aplikuj teraz

Tech Stack / Keywords

Information Security EngineeringIAMZero Trust ArchitectureAuthentication & AuthorizationWorkload and Machine Identity SecuritySecrets ManagementCryptographyGCPKubernetesService meshAPI SecurityOPADevSecOpsSSDLCThreat Modelling

Firma i stanowisko

The project is a long-term strategic transformation program within the financial services sector focused on modernizing Identity and Access Management (IAM) capabilities. It aims to deliver next-generation identity security solutions, strengthen Zero Trust adoption, and enhance security controls across cloud-native platforms and enterprise environments. The role is part of an international technology team responsible for designing and implementing secure, scalable identity solutions for both human and non-human identities in a highly regulated environment.

Wymagania

  • Strong experience in Information Security Engineering.
  • Expertise in Identity and Access Management (IAM).
  • Knowledge of Zero Trust Architecture.
  • Experience with Authentication & Authorization.
  • Expertise in Workload and Machine Identity Security.
  • Experience with PKI and Certificate Management.
  • Secrets Management skills.
  • Strong understanding of Cryptography.
  • Experience with Cloud Security, specifically GCP.
  • Knowledge of Kubernetes Security.
  • Experience with Service Mesh Security.
  • Skills in API Security.
  • Experience with Policy-as-Code using OPA.
  • Knowledge of DevSecOps.
  • Familiarity with Secure Software Development Lifecycle (SSDLC).
  • Experience in Threat Modelling.
  • Vulnerability Management experience.
  • Skills in Security Monitoring and SIEM.
  • Knowledge of Security Compliance and Governance.
  • Experience with Incident Response.

Obowiązki

  • Design and implement security controls across modern IAM platforms.
  • Embed Secure by Design principles throughout solution delivery.
  • Implement and maintain Zero Trust security controls.
  • Configure authentication and authorization mechanisms.
  • Secure service-to-service communication using mTLS.
  • Implement security controls for workload, human, and machine identities.
  • Develop Policy-as-Code solutions using OPA and related technologies.
  • Integrate secrets management, PKI, and certificate lifecycle services.
  • Support cryptographic key management and certificate rotation processes.
  • Conduct security reviews, threat modeling, and risk assessments.
  • Identify and remediate security vulnerabilities.
  • Support vulnerability management and security patching initiatives.
  • Define security standards, baselines, and hardening guides.
  • Implement cloud security controls within GCP and Kubernetes environments.
  • Configure monitoring, logging, alerting, and audit capabilities.
  • Support identity governance and privileged access management.
  • Participate in penetration testing and remediation activities.
  • Contribute to DevSecOps practices and automated security testing.
  • Collaborate with security operations and incident response teams.
  • Produce security documentation and operational procedures.

Benefity

  • Opportunity to work on a large-scale international transformation program.
  • Long-term cooperation in a modern cloud and security environment.
  • Exposure to cutting-edge IAM, Zero Trust, and DevSecOps technologies.
  • Collaboration with global engineering, architecture, and security teams.
  • Benefits package including private medical care (LuxMed) and Multisport card.
  • Employment options: B2B or permanent employment contract via Antal.
Opieka zdrowotna
Karta sportowa

Inne informacje

Work location hybrid in Kraków, Poland, with 6-8 days per month required in the office.

Antal

Antal

968 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz