Application Security Engineer: Secure-by-Design, CI/CD Focus

AXA IT Solutions

Warszawa

Hybrid

PLN 180,000 - 240,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

The opportunity to influence product方向
Ambitious projects with high autonomy
Hybrid work model

Job summary

AXA IT Solutions is seeking an Application Security Engineer to embed security across the software development lifecycle. You will partner with engineers, DevOps and security teams to automate controls, improve secure-by-design practices, and strengthen CI/CD security for modern web apps and APIs.

In this role you’ll drive security posture, triage findings, and design scalable protections while aligning with OWASP/NIST standards.

Qualifications

  • Deep knowledge of OWASP Top 10 and common web attack vectors.
  • Experience securing modern web apps, REST APIs, and auth mechanisms.
  • Experience implementing SAST, DAST, SCA and pen-testing programs.
  • Ability to automate security controls in CI/CD pipelines.
  • Strong secure-by-design practices and software engineering know-how.
  • Ability to drive strategic security improvements over remediation-only tasks.
  • Excellent stakeholder management and communication skills.
  • Motivated, collaborative, and able to work independently.
  • Analytical thinker with attention to detail and business focus.
  • Influence technical decisions in fast-paced environments.

Responsibilities

  • Own and improve application security posture across SDLC.
  • Monitor, assess, prioritise, and manage vulnerabilities from testing and scanning.
  • Triages findings with justified remediation and risk assessment.
  • Design and implement scalable security controls and automation.
  • Shift-left security by integrating automated testing into CI/CD.
  • Identify recurring patterns and implement preventative guardrails.
  • Liaise with external pen-test providers and ensure timely remediation.
  • Collaborate with Group Security to align risk ratings and actions.
  • Provide guidance on securing web apps, APIs, and cloud-native architectures.
  • Promote secure design principles across delivery teams.
  • Maintain OWASP/NIST-aligned security standards and processes.
  • Monitor threats and share data-driven insights with governance groups.
  • Deliver secure coding guidance to developers and architects.
  • Report posture, trends, and risk reduction to leadership forums.

Skills

OWASP Top 10
Web security
CI/CD security
Vulnerability management
SAST/DAST
OAuth2/JWT

Job description

AXA IT Solutions is seeking an Application Security Engineer to embed security across the software development lifecycle. You will partner with engineers, DevOps and security teams to automate controls, improve secure-by-design practices, and strengthen CI/CD security for modern web apps and APIs.

In this role you’ll drive security posture, triage findings, and design scalable protections while aligning with OWASP/NIST standards.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer - Secure-by-Design & CI/CD
Application Security Engineer - Secure-by-Design & CI/CD

AXA IT Solutions • Poland

Hybrid
PLN 180,000 - 240,000
Personal development
International environment
English work environment
+9
Application Security Engineer (F/M)
Application Security Engineer (F/M)

AXA IT Solutions • Warszawa

Hybrid
PLN 180,000 - 240,000
The opportunity to influence product方向
Ambitious projects with high autonomy
Hybrid work model
Application Security Engineer: Secure SDLC & DevSecOps
Application Security Engineer: Secure SDLC & DevSecOps

emagine Polska • Warszawa

Hybrid
PLN 303,000 - 477,000
Application Security Engineer: Vulnerability & Compliance
Application Security Engineer: Vulnerability & Compliance

Accuris • Województwo pomorskie

Hybrid
PLN 318,000 - 393,000
Annual incentive plan
Comprehensive benefits
Application Security Engineer: CI/CD Security & Automation (Remote)
Application Security Engineer: CI/CD Security & Automation (Remote)

AgileEngine, LLC. • Warszawa

On-site
PLN 334,000 - 483,000
Professional growth
Competitive compensation
Exciting projects
+1
Application Security Engineer
Application Security Engineer

Adecco • Warszawa

Hybrid
PLN 180,000 - 280,000
Employment contract
Hybrid work in Warsaw (2-3 days/week)
Remote Application Security Engineer - CI/CD & DevSecOps
Remote Application Security Engineer - CI/CD & DevSecOps

AgileEngine • Warszawa

Hybrid
PLN 180,000 - 280,000
Professional growth
Competitive USD-based compensation
Exciting projects
+1
Remote Application Security Engineer (DevSecOps)
Remote Application Security Engineer (DevSecOps)

AgileEngine, LLC. • Wrocław

Hybrid
PLN 120,000 - 180,000
Professional growth
Competitive USD-based compensation
Exciting projects
+1
Application Security Engineer: DevSecOps & CI/CD Automation
Application Security Engineer: DevSecOps & CI/CD Automation

AgileEngine • Kraków

Hybrid
PLN 180,000 - 240,000
Professional growth
Competitive compensation (USD-based)
Exciting projects
+1
Application Security Engineer ID71662
Application Security Engineer ID71662

AgileEngine, LLC. • Województwo zachodniopomorskie

Hybrid
PLN 445,000 - 594,000
Professional growth
Competitive compensation
Exciting projects
+1