Application Security Team Lead

25k - 32k PLN/ mies.UoP
SeniorFull-time·Umowa o pracę
#424379·Dodano 3 dni temu·2
Źródło: nofluffjobs.com
Aplikuj teraz

Tech Stack / Keywords

SecurityPenetration TestingVulnerability classesAPIMicroservicesCloud

Firma i stanowisko

SmartRecruiters Inc. delivers an AI-powered hiring platform built for global scale, automating and optimizing the talent acquisition process. The company serves more than 4,000 customers worldwide and in 2025 joined SAP, the global leader in enterprise applications. The R&D structure is based on empowered product teams responsible for business outcomes and autonomy in problem-solving.

Wymagania

  • Significant professional experience in Application Security, Product Security, or Secure Software Development with proven leadership or mentoring skills
  • Deep understanding of common vulnerability classes (injection, broken access control, cryptographic failures, SSRF, etc.) and secure design principles
  • Strong hands-on experience with penetration testing of web applications, APIs, and cloud-native architectures
  • Solid knowledge of authentication, authorization, cryptography, and API security patterns
  • Experience building or maturing an application security program including processes, tooling strategy, and metrics
  • Experience with security testing methodologies and tools across SAST, DAST, IAST, and SCA
  • Familiarity with microservices architectures and cloud environments, particularly AWS
  • Excellent communication skills to articulate technical risks, translate security priorities, and build trust across teams

Obowiązki

  • Lead and grow a team of Application Security Engineers, setting direction, coaching, and owning the AppSec roadmap and KPIs
  • Drive end-to-end application security: threat modeling, design reviews, internal penetration testing, manual/automated code reviews, and security testing (SAST/DAST/IAST/SCA)
  • Own vulnerability management and bug bounty: define processes and SLAs, triage and validate findings, and drive remediation with engineering teams
  • Define and optimize the AppSec tooling stack, integrating security into CI/CD and developer workflows to “shift left” without slowing delivery
  • Secure AI/ML features and LLM integrations by assessing AI-specific risks and defining guardrails and best practices
  • Set secure coding standards (OWASP) and scale security culture through training, documentation, and security champion initiatives

Benefity

  • Sport subscription
  • Private healthcare
  • Small teams
  • International projects
  • Unlimited vacation days
  • Company shutdowns twice a year
  • Free coffee
  • Bike parking
  • Playroom
  • Shower
  • Free parking
  • In-house trainings
  • Modern office
  • Startup atmosphere
  • No dress code
  • Family events
  • Company parties
  • In-house hack days
Karta sportowa
Opieka zdrowotna
Szkolenia wewnętrzne

Inne informacje

You may be located anywhere in Poland and work remotely or out of the Cracow office.

SmartRecruiters Inc.

SmartRecruiters Inc.

10 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz