As a Senior Application Security Engineer, you will lead complex web app audits, improve architecture, and help teams fix vulnerabilities. You will also run security initiatives such as incident response, CTFs, and attack simulations. The role fits a hands-on AppSec expert with solid SDLC knowledge and experience introducing new tools and processes.
- Conduct complex web application security audits.
- Participate in decision-making at the cybersecurity architectural committee.
- Work with development teams to fix vulnerabilities and implement new security features.
- Implement new processes such as source code secret scanning and incident investigation.
- Consult development teams on complex security issues.
- Investigate cybersecurity incidents.
- Organize large-scale security awareness activities such as CTFs.
- Lead projects involving two or more teams, including hacker attack simulations.
- Higher education in IT, preferably in information security.
- Knowledge of at least one high-level programming language, preferably Golang.
- Understanding of all types of web and mobile vulnerabilities.
- Understanding of key protocols used in development and security.
- Proven experience handling various AppSec tasks and learning from failures.
- Successful track record in implementing new tools and processes.
- High level of independence and ability to plan and deliver large projects.
- Basic knowledge of infrastructure security, including proxy servers, Docker, Kubernetes, and CI/CD.
- Practical understanding of the SDLC.
- Ability to write complex SQL queries to identify database anomalies
- Stable salary, official employment
- Health insurance
- Hybrid work mode and flexile schedule
- Discount club membership
- Diverse internal training programs
- Partially or fully payed additional training courses
- All necessary work equipment