Senior Secure Software Engineer (Go/Java) | Poland
Brak informacji o wynagrodzeniu
SeniorFull-time
#452811·Dodano wczoraj·1
Źródło: nofluffjobs.comTech Stack / Keywords
GoJavaSecurityEnterprise softwareGolangMicroservicesDesign PatternsCD pipelinesGitHub ActionsGitLab CIJenkinsDockerKubernetesAWSAzureGoogle Cloud PlatformCISSP
Firma i stanowisko
Deloitte is hiring a Senior Secure Software Engineer to work on enterprise-grade platforms and applications with a focus on modern cloud-native applications and security challenges.
Wymagania
- 5+ years of experience in enterprise software engineering.
- Strong hands-on experience with Go (Golang) and Java.
- Experience designing distributed systems, microservices, and APIs.
- Strong understanding of software architecture and design patterns.
- Experience building and managing CI/CD pipelines using tools such as GitHub Actions, GitLab CI, or Jenkins.
- Knowledge of Secure Development Lifecycle (SDL) practices and secure coding principles.
- Experience with Docker and Kubernetes.
- Familiarity with AWS, Azure, or Google Cloud Platform.
- Understanding of software supply chain security concepts, including SBOMs, dependency management, and vulnerability management.
Nice to have:
- Experience with Software Composition Analysis (SCA) tools.
- Hands-on DevSecOps experience.
- Knowledge of Zero Trust architectures and policy-as-code concepts.
- Security certifications such as CISSP, CSSLP, or Security+.
Obowiązki
- Build modern enterprise applications.
- Design, develop, and maintain enterprise-grade solutions using Go (Golang) and Java.
- Create scalable, high-performing, and secure cloud-native applications.
- Contribute to architecture decisions, technical strategy, and engineering best practices.
- Lead code reviews and promote clean, maintainable code.
- Evaluate and integrate modern open-source technologies.
- Implement security controls across software dependencies, build systems, and deployment processes.
- Drive the adoption of Software Bill of Materials (SBOM) practices.
- Improve dependency management, artifact integrity, and vulnerability management processes.
- Partner with cybersecurity teams to reduce risks within open-source software components.
- Design and optimize CI/CD pipelines with integrated security controls.
- Implement automated testing, security scanning, and dependency analysis.
- Develop automation that improves software delivery, quality, and security.
- Promote Infrastructure-as-Code and modern platform engineering practices.
- Embed Secure Development Lifecycle (SDL) practices across projects and teams.
- Perform threat modeling and security design reviews.
- Support remediation of security findings and vulnerabilities.
- Help engineering teams adopt security-by-design principles.
Benefity
- Flexible working hours.
- Permanent employment or contract.
- Medical and health insurance.
- Multisport and other lifestyle benefits.
- Language courses.
- Friendly coworkers & team spirit.
- Multiple geographies and clients.
- Work for well-known brands.
- Exposure to trailblazing business and technology projects.
- Opportunities to influence business practices.
- Customized development path.
Elastyczne godziny
Opieka zdrowotna
Karta sportowa
Kursy językowe
Deloitte
80 aktywnych ofert