Senior Application Security Testing Engineer
Tech Stack / Keywords
Firma i stanowisko
EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.
Wymagania
- Bachelor's Degree in Information Systems, Computer Science, or related technical discipline
- Minimum 3 years of experience in manual security testing
- Understanding of security protocols, Cryptography, Authentication, and authorization
- Knowledge of at least one object-oriented programming language such as Node.js or TypeScript
- Experience with security technologies and processes in hybrid cloud environments, especially AWS
- Expertise in OWASP concepts and practical application
- Understanding of IT operations and service support processes
- Excellent communication skills, able to translate technical security concepts for non-technical stakeholders
- English proficiency at B2 level or higher
Nice to have:
- Security certifications such as CISSP, GIAC, CEH, Security+, or CSSLP
- Experience in product-led or e-commerce technology environments
- Familiarity with automated security scanning and CI/CD pipeline integration
Obowiązki
- Conduct regular scanning and manual security testing of web applications to identify vulnerabilities
- Track identified issues through to remediation, working closely with development teams
- Perform code-level reviews to identify insecure coding practices and recommend improvements
- Support and strengthen IaaS security in cloud environments, focusing on AWS
- Assess cloud configurations against security best practices and industry benchmarks
- Implement and operate security technologies and controls in a hybrid cloud environment
- Research emerging security threats, vulnerabilities, and exploit techniques
- Respond promptly to new threats and support implementation of new security requirements
- Contribute to incident response activities while maintaining confidentiality
- Provide technical guidance on secure coding and application security standards
- Champion OWASP principles throughout the organization
- Collaborate with cross-functional teams to embed a security-first mindset
Benefity
- Opportunity to work remotely within Poland and hybrid work mode
- Chance to work abroad up to 60 days annually
- Business-driven relocation opportunities
- Career development programs, mentoring, and well-being programs
- Certifications support (Anthropic, Gemini, GCP, Azure, AWS)
- English classes
- Stable pay and participation in Employee Stock Purchase Plan with 15% discount
- Benefits package including health insurance, multisport, and shopping vouchers
- Referral bonuses up to $2,000
- Office amenities: entertainment zones, relaxation areas, table tennis, football, free snacks and coffee
- Corporate, social, and well-being events
Inne informacje
Klikając w przycisk „Aplikuj” lub w inny sposób wysyłając zgłoszenie rekrutacyjne, zgadzasz się na przetwarzanie Twoich danych osobowych przez EPAM Systems (Poland) sp. z o.o. z siedzibą w: Fabryczna 1A, 31-553 Kraków (Pracodawca), jako administratora danych osobowych w celu przeprowadzenia rekrutacji na stanowisko wskazane w ogłoszeniu zgodnie Polityką Prywatności dostępną na stronie: https://www.epam.com/applicant-privacy-notice
EPAM Systems
938 aktywnych ofert