HSBCJP00058469 (Cybersecurity) Security Engineer
180 - 220 PLN/ godz.B2B
SeniorFull-time·B2B
#404146·Dodano 8 dni temu·5
Źródło: nofluffjobs.comTech Stack / Keywords
Information Security EngineeringIAMZero Trust ArchitectureAuthentication & AuthorizationWorkload and Machine Identity SecuritySecrets ManagementCryptographyGCPKubernetesService meshAPI SecurityOPADevSecOpsSSDLCThreat Modelling
Firma i stanowisko
The project is a long-term strategic transformation program within the financial services sector focused on modernizing Identity and Access Management (IAM) capabilities. It aims to deliver next-generation identity security solutions, strengthen Zero Trust adoption, and enhance security controls across cloud-native platforms and enterprise environments. The role is part of an international technology team responsible for designing and implementing secure, scalable identity solutions for both human and non-human identities in a highly regulated environment.
Wymagania
- Strong experience in Information Security Engineering.
- Expertise in Identity and Access Management (IAM).
- Knowledge of Zero Trust Architecture.
- Experience with Authentication & Authorization.
- Expertise in Workload and Machine Identity Security.
- Experience with PKI and Certificate Management.
- Secrets Management skills.
- Strong understanding of Cryptography.
- Experience with Cloud Security, specifically GCP.
- Knowledge of Kubernetes Security.
- Experience with Service Mesh Security.
- Skills in API Security.
- Experience with Policy-as-Code using OPA.
- Knowledge of DevSecOps.
- Familiarity with Secure Software Development Lifecycle (SSDLC).
- Experience in Threat Modelling.
- Vulnerability Management experience.
- Skills in Security Monitoring and SIEM.
- Knowledge of Security Compliance and Governance.
- Experience with Incident Response.
Obowiązki
- Design and implement security controls across modern IAM platforms.
- Embed Secure by Design principles throughout solution delivery.
- Implement and maintain Zero Trust security controls.
- Configure authentication and authorization mechanisms.
- Secure service-to-service communication using mTLS.
- Implement security controls for workload, human, and machine identities.
- Develop Policy-as-Code solutions using OPA and related technologies.
- Integrate secrets management, PKI, and certificate lifecycle services.
- Support cryptographic key management and certificate rotation processes.
- Conduct security reviews, threat modeling, and risk assessments.
- Identify and remediate security vulnerabilities.
- Support vulnerability management and security patching initiatives.
- Define security standards, baselines, and hardening guides.
- Implement cloud security controls within GCP and Kubernetes environments.
- Configure monitoring, logging, alerting, and audit capabilities.
- Support identity governance and privileged access management.
- Participate in penetration testing and remediation activities.
- Contribute to DevSecOps practices and automated security testing.
- Collaborate with security operations and incident response teams.
- Produce security documentation and operational procedures.
Benefity
- Opportunity to work on a large-scale international transformation program.
- Long-term cooperation in a modern cloud and security environment.
- Exposure to cutting-edge IAM, Zero Trust, and DevSecOps technologies.
- Collaboration with global engineering, architecture, and security teams.
- Benefits package including private medical care (LuxMed) and Multisport card.
- Employment options: B2B or permanent employment contract via Antal.
Opieka zdrowotna
Karta sportowa
Inne informacje
Work location hybrid in Kraków, Poland, with 6-8 days per month required in the office.
Antal
968 aktywnych ofert