4-6 years experience in application and cloud security.
Strong experience with AWS security services (IAM, KMS, GuardDuty, CloudTrail, etc.).
Hands-on knowledge of OWASP Top 10, secure coding, threat modeling, and secure design reviews.
Understanding of auth protocols (OAuth, OIDC, SAML), cryptography (TLS, hashing, encryption), and common security controls.
Experience with vulnerability assessments, penetration testing, and modern web stacks.
Ability to clearly communicate security risk to both engineers and management.
Nice-to-Haves
Kubernetes, mobile app security, Azure/GCP security.
AI/ML risk assessments.
Infrastructure-as-code (Terraform, CloudFormation, CDK).
Payments/trading platform security and compliance (e.g., PCI DSS).
Security certifications (AWS/GCP/Azure).
Perform cybersecurity design and architecture reviews, including AI/ML solutions, to validate secure-by-design principles.
Advise development teams on secure application and AWS cloud architectures, especially web applications.
Analyze penetration testing, code review, and bug bounty findings and guide remediation.
Communicate risk clearly to business and technical stakeholders and recommend mitigation strategies.
Develop and promote security patterns and best practices across the organization.
Mentor junior security professionals.
Jesteśmy Devire – firmą rekrutacyjną, której celem jest łączenie świetnych ludzi ze świetnymi pracodawcami.
Niezależnie czy rozglądasz się za nową pracą na stałe czy projektem w formie współpracy B2B – możesz polegać na naszym wsparciu na każdym kroku.
Współpracujemy z pracodawcami z terenu całej Polski i realizujemy rekrutacje we wszystkich kluczowych obszarach technologicznych.