-
Avenga

Application Security Engineer

Avenga
Poland · Full-time · Mid-Senior

Key Responsibilities:

• Secure Software Development: Collaborate with development teams to integrate security into the software development lifecycle, ensuring secure coding practices and tools are effectively used.

• Vulnerability Assessment and Management: Conduct regular security assessments, including static and dynamic code analysis, and vulnerability scanning. Help teams identify, prioritize, and remediate security vulnerabilities in web and mobile applications.

• Security Architecture and Design: Work closely with architects and engineers to teach them how to design secure applications and systems, focusing on threat modeling, security patterns, and best practices.

• Incident Response: Provide expert support to the teams during potential security incidents, including analysis, containment, and remediation of security breaches and vulnerabilities.

• Security Awareness and Training: Develop and deliver security awareness training for development and engineering teams, promoting a culture of security-first development.

• Policy and Compliance: Ensure compliance with security policies, standards, and regulatory requirements across all stages of the software development lifecycle.

• Continuous Improvement: Stay current with emerging security threats and vulnerabilities, and continuously evaluate and improve security processes, tools, and technologies.

• Collaboration and Communication: Act as a liaison between development teams and security, fostering a culture of security awareness and best practices across the organization


Requirements:

• Educational Background: Bachelor’s or Master’s degree in Computer Science, Information Security, Cybersecurity, or a related field.

• Experience: 5+ years of experience in application security or a related field, with at least 2 years in a senior or lead role.


• Technical Skills:

o Proficiency in security assessment tools and scanners (e.g., BlackDuck, Nexus IQ, OWASP ZAP, Fortify, Sonarqube).

o In-depth knowledge of secure coding practices and security standards (e.g., OWASP, NIST).

o Experience with programming languages (e.g., Python, Java, .NET) and scripting.

o Familiarity with DevSecOps practices and tools (e.g., Jenkins, Docker, Kubernetes, CI/CD pipelines).

• Certifications: Relevant certifications such as CISSP, CEH, OSCP, or GWAPT are highly desirable.


• Soft Skills:

o Excellent communication and interpersonal skills.

o Strong problem-solving and analytical abilities.

o Ability to work collaboratively in a cross-functional team environment.

Mindset: Proactive, self-motivated, and passionate about staying current with the latest trends and threats in cybersecurity

Key Skills

Ranked by relevance

owasp vulnerability assessment incident response cybersecurity kubernetes jenkins python docker cissp nexus java oscp cicd ceh
Login to Apply
Posted
Dec 21, 2024
Type
Full-time
Level
Mid-Senior
Location
Wrocław
Company
Avenga

Industries

IT Services IT Consulting

Categories

Information Technology

Related Jobs

3 roles aligned with this opportunity

View all jobs
View Job Details
Avenga
Related

Senior DevOps Engineer

2026-05-20

Full-time
Mid-Senior
Argentina
IT Services
Information Technology
View Job Details
Stuhlberger IT GmbH
Related

Cybersecurity Engineer (w/m/d)

2026-05-28

Full-time
Associate
Austria
IT Services
Information Technology
View Job Details
Sii Poland
Related

ServiceNow Scrum Master (f/m/x)

2026-05-26

Full-time
Mid-Senior
Poland
IT Services
Engineering