Key Responsibilities:
• Secure Software Development: Collaborate with development teams to integrate security into the software development lifecycle, ensuring secure coding practices and tools are effectively used.
• Vulnerability Assessment and Management: Conduct regular security assessments, including static and dynamic code analysis, and vulnerability scanning. Help teams identify, prioritize, and remediate security vulnerabilities in web and mobile applications.
• Security Architecture and Design: Work closely with architects and engineers to teach them how to design secure applications and systems, focusing on threat modeling, security patterns, and best practices.
• Incident Response: Provide expert support to the teams during potential security incidents, including analysis, containment, and remediation of security breaches and vulnerabilities.
• Security Awareness and Training: Develop and deliver security awareness training for development and engineering teams, promoting a culture of security-first development.
• Policy and Compliance: Ensure compliance with security policies, standards, and regulatory requirements across all stages of the software development lifecycle.
• Continuous Improvement: Stay current with emerging security threats and vulnerabilities, and continuously evaluate and improve security processes, tools, and technologies.
• Collaboration and Communication: Act as a liaison between development teams and security, fostering a culture of security awareness and best practices across the organization
Requirements:
• Educational Background: Bachelor’s or Master’s degree in Computer Science, Information Security, Cybersecurity, or a related field.
• Experience: 5+ years of experience in application security or a related field, with at least 2 years in a senior or lead role.
• Technical Skills:
o Proficiency in security assessment tools and scanners (e.g., BlackDuck, Nexus IQ, OWASP ZAP, Fortify, Sonarqube).
o In-depth knowledge of secure coding practices and security standards (e.g., OWASP, NIST).
o Experience with programming languages (e.g., Python, Java, .NET) and scripting.
o Familiarity with DevSecOps practices and tools (e.g., Jenkins, Docker, Kubernetes, CI/CD pipelines).
• Certifications: Relevant certifications such as CISSP, CEH, OSCP, or GWAPT are highly desirable.
• Soft Skills:
o Excellent communication and interpersonal skills.
o Strong problem-solving and analytical abilities.
o Ability to work collaboratively in a cross-functional team environment.
Mindset: Proactive, self-motivated, and passionate about staying current with the latest trends and threats in cybersecurity
Key Skills
Ranked by relevance
Related Jobs
3 roles aligned with this opportunity
Senior DevOps Engineer
2026-05-20
Cybersecurity Engineer (w/m/d)
2026-05-28
ServiceNow Scrum Master (f/m/x)
2026-05-26
- Posted
- Dec 21, 2024
- Type
- Full-time
- Level
- Mid-Senior
- Location
- Wrocław
- Company
- Avenga
Industries
Categories
Related Jobs
3 roles aligned with this opportunity
Senior DevOps Engineer
2026-05-20
Cybersecurity Engineer (w/m/d)
2026-05-28
ServiceNow Scrum Master (f/m/x)
2026-05-26