Security Engineer
Tech Stack / Keywords
Firma i stanowisko
Starburst is recruiting a Security Engineer focused on Application and Product Security to enhance the security posture of their applications, services, and development ecosystem.
Wymagania
- Bachelor’s degree in Computer Science, Engineering, MIS, or equivalent practical experience.
- 2–5 years of experience in application security, product security, or related technical roles.
- Strong understanding of application vulnerabilities and mitigation strategies including OWASP Top 10 and CWE.
- Experience with CI/CD tooling, Git-based workflows, and modern development practices.
- Familiarity with cloud security concepts and hands-on experience with at least one cloud platform (AWS, Azure, or GCP).
- Experience with programming languages such as Python, Go, Java, JavaScript, TypeScript, or Ruby (preference for Java and Python).
- Experience with application security tools like OWASP ZAP, Burp Suite, SAST/DAST tools, SCA, or dependency scanning.
- Knowledge of secure coding principles, API security, authentication, authorization, and secrets management.
- Strong problem-solving skills and ability to communicate technical issues clearly to developers and stakeholders.
- Understanding of agile development processes and team collaboration.
- Ability to travel up to 25% for onboarding, team events, customer engagements, and company events.
Obowiązki
- Integrate application security best practices into development lifecycle with engineering teams and automate security checks within CI/CD pipelines.
- Support and maintain Application Security tooling such as SAST, DAST, SCA, and secrets scanning, aiding developers in remediation.
- Conduct secure code reviews, threat modeling, and application architecture assessments to identify risks and propose mitigations.
- Develop and maintain security automation, guardrails, and reusable components.
- Define and improve secure coding standards and application hardening.
- Improve application-level logging, telemetry, and alerting for monitoring and detection.
- Assist incident response related to application vulnerabilities including verification, triage, and remediation.
- Stay informed on emerging threats, vulnerabilities, and best practices in application and product security.
- Contribute to security documentation including requirements, guidelines, and remediation playbooks.
- Participate in internal security reviews, compliance assessments, and architectural walkthroughs.
- Develop and maintain application security tools, pipelines, and workflows.
- Collaborate with engineering and product teams to ensure secure deployment and continuous improvement.
Inne informacje
Informujemy, że administratorem danych jest Starburst Data Polska sp. z o.o. z siedzibą w Warszawie ul. Plac Europejski 1/38P (dalej jako "administrator"). Masz prawo do żądania dostępu do swoich danych osobowych, ich sprostowania, usunięcia lub ograniczenia przetwarzania, prawo do wniesienia sprzeciwu wobec przetwarzania, a także prawo do przenoszenia danych oraz wniesienia skargi do organu nadzorczego. Dane osobowe przetwarzane będą w celu realizacji procesu rekrutacji. Podanie danych w zakresie wynikającym z ustawy z dnia 26 czerwca 1974 r. Kodeks pracy jest obowiązkowe. W pozostałym zakresie podanie danych jest dobrowolne. Odmowa podania danych obowiązkowych może skutkować brakiem możliwości przeprowadzenia procesu rekrutacji. Administrator przetwarza dane obowiązkowe na podstawie ciążącego na nim obowiązku prawnego, zaś w zakresie danych dodatkowych podstawą przetwarzania jest zgoda. Dane osobowe będą przetwarzane do czasu zakończenia postępowania rekrutacyjnego i przez okres możliwości dochodzenia ewentualnych roszczeń, a w przypadku wyrażenia zgody na udział w przyszłych postępowaniach rekrutacyjnych - do czasu wycofania tej zgody. Zgoda na przetwarzanie danych osobowych może zostać wycofana w dowolnym momencie. Odbiorcą danych jest serwis Just Join IT oraz inne podmioty, którym powierzyliśmy przetwarzanie danych w związku z rekrutacją.
Starburst
7 aktywnych ofert