Senior Application Security Testing Engineer
Brak informacji o wynagrodzeniu
SeniorFull-time
#443656·Dodano 7 dni temu·1
Źródło: justjoin.it⚠️Uwaga: ta oferta może już nie być aktualna. Sprawdź na stronie pracodawcy, czy rekrutacja jest nadal otwarta.
Tech Stack / Keywords
application security testingOWASP ASVSSecure Code ReviewAWSNode.jsCryptographyAuthentication
Firma i stanowisko
EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.
Wymagania
- Bachelor's Degree in Information Systems, Computer Science, or related technical field
- Minimum 3 years of experience in manual security testing
- Understanding of security protocols, cryptography, authentication, and authorization
- Knowledge of at least one object-oriented programming language, such as Node.js or TypeScript
- Experience with security technologies and processes in hybrid cloud environments, especially AWS
- Expertise in OWASP concepts and practical application
- Understanding of IT operations and service support processes
- Excellent communication skills to translate technical security concepts for non-technical stakeholders
- English language proficiency at B2 level or higher
Nice to have:
- Relevant security certifications such as CISSP, GIAC, CEH, Security+, or CSSLP
- Experience in product-led or e-commerce technology environments
- Familiarity with automated security scanning and CI/CD pipeline integration
Obowiązki
- Conduct regular scanning and manual security testing of web applications to identify vulnerabilities
- Track identified issues through to remediation, working closely with development teams
- Perform code-level reviews to identify insecure coding practices and recommend improvements
- Support and strengthen IaaS security across cloud environments, focusing on AWS
- Assess cloud configurations against security best practices and industry benchmarks
- Implement and operate security technologies and controls in a hybrid cloud environment
- Research emerging security threats, vulnerabilities, and exploit techniques relevant to the technology stack
- Respond promptly to newly identified threats and support implementation of new security requirements
- Contribute to incident response activities while maintaining confidentiality
- Provide technical guidance on secure coding practices and application security standards
- Champion OWASP principles across the organization in solution design and development
- Collaborate with cross-functional teams to promote a security-first mindset
Benefity
- Hybrid work model with opportunity to work remotely within Poland
- Chance to work abroad up to 60 days annually
- Business-driven relocation opportunities
- Career development programs including mentoring, soft skills, and well-being
- Certification support (Anthropic, Gemini, GCP, Azure, AWS)
- English language classes
- Stable pay and participation in Employee Stock Purchase Plan with 15% discount
- Benefits package including health insurance, multisport, shopping vouchers
- Referral bonuses up to $2,000
- Offices with relaxation zones, table tennis, football, free snacks and coffee
- Corporate, social, and well-being events
Elastyczne godziny
Pakiet relokacyjny
Budżet konferencyjny
Dofinansowanie szkoleń
Kursy językowe
Karta sportowa
Opieka zdrowotna
Premie
Darmowe przekąski
Napoje w biurze
Inne informacje
By applying, you consent to the processing of your personal data by EPAM Systems (Poland) sp. z o.o. for recruitment purposes in accordance with their Privacy Policy. Benefits listed are available to employees only. Open to working with Contractors under individually agreed B2B agreements. Only selected candidates will be contacted.
EPAM Systems
1347 aktywnych ofert