Senior Application Security Testing Engineer

Brak informacji o wynagrodzeniu
SeniorFull-time
#443648·Dodano 3 dni temu·0
Źródło: justjoin.it
Aplikuj teraz

Tech Stack / Keywords

Application SecuritySecurity testingOWASPCode ReviewCryptographyAuthenticationAWSNode.js

Firma i stanowisko

EPAM is a global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, they empower clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.

Wymagania

  • Bachelor's Degree in Information Systems, Computer Science, or related technical discipline
  • Minimum 3 years of experience in manual security testing
  • Understanding of security protocols, cryptography, authentication, authorization, and application security requirements
  • Knowledge of at least one object-oriented programming language such as Node.js or TypeScript
  • Experience with security technologies and processes in hybrid cloud environments, particularly AWS
  • Expertise in OWASP concepts and their application
  • Understanding of IT operations and service support processes
  • Excellent communication skills to explain technical security concepts to non-technical stakeholders

Nice to have:

  • Relevant security certifications such as CISSP, GIAC, CEH, Security+, or CSSLP
  • Experience in fast-paced, product-led, or e-commerce technology environments
  • Familiarity with automated security scanning and CI/CD pipeline integration

Obowiązki

  • Conduct regular scanning and manual security testing of web applications to identify vulnerabilities
  • Track identified issues through to remediation, working closely with development teams to ensure timely fixes
  • Perform code-level reviews to identify insecure coding practices and recommend improvements
  • Support and strengthen IaaS security across cloud environments, focusing on AWS
  • Assess cloud configurations against security best practices and industry benchmarks
  • Work within a hybrid cloud environment to implement and operate security technologies and controls
  • Research emerging security threats, vulnerabilities, and exploit techniques relevant to the technology stack
  • Respond promptly to newly identified threats and support new security requirement implementation
  • Contribute to incident response activities while maintaining confidentiality
  • Provide technical guidance to developers on secure coding practices and application security standards
  • Champion OWASP principles throughout the organization
  • Collaborate closely with cross-functional teams to promote a security-first mindset

Benefity

  • Opportunity to work remotely within Poland and hybrid mode
  • Chance to work abroad for up to 60 days annually
  • Business-driven relocation opportunities
  • Career development programs including mentoring and thought leadership
  • Certification support (Anthropic, Gemini, GCP, Azure, AWS)
  • English classes
  • Stable pay with participation in Employee Stock Purchase Plan with 15% discount
  • Benefits package including health insurance, multisport, shopping vouchers
  • Referral bonuses up to $2,000
  • Offices with entertainment and relaxation zones, including table tennis, football, free snacks and coffee
  • Corporate, social, and well-being events
Elastyczne godziny
Pakiet relokacyjny
Budżet konferencyjny
Szkolenia wewnętrzne
Kursy językowe
Udział w zyskach
Premie
Karta sportowa
Opieka zdrowotna
Darmowe przekąski
Napoje w biurze
Spotkania integracyjne

Inne informacje

Benefits are available only to employees. EPAM is open to working with contractors with individually agreed terms of B2B cooperation agreements. Selected candidates will be contacted exclusively. By applying, candidates consent to personal data processing by EPAM Systems (Poland) sp. z o.o. according to Privacy Policy.

EPAM Systems

EPAM Systems

931 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz