AppSec Expert

IDEMIA

Łódź

On-site

PLN 180,000 - 240,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IDEMIA in Łódź seeks a senior cybersecurity architect to define and maintain security solutions across Solution, IT, and Cloud environments. You will lead security by design, advise on architectures, and support compliance with standards.

You will collaborate with R&D, integrate security tools into SDLC, conduct risk analyses, and coach less experienced architects while driving incident response and threat modeling.

Qualifications

  • Experience with programming languages and secure coding practices.
  • Experience with security frameworks and standards (OWASP, ISO).
  • Experience with certifications requirements and R&D support.
  • Understanding of web app architecture and low-level protocols.
  • Proficiency with security tools across networks and apps.
  • Experience securing cloud deployed applications.
  • Strong communication across technical and non-technical stakeholders.
  • Strong problem-solving, critical thinking and adaptability.

Responsibilities

  • Collaborate with R&D to integrate security across the software lifecycle.
  • Conduct regular security reviews and threat modeling of applications.
  • Integrate security tools into processes and drive changes to close gaps.
  • Respond to security incidents.
  • Raise awareness on secure coding, standards and threats.
  • Ensure applications meet security certifications (e.g., SAS SM, PCI DSS).
  • Ensure teams follow internal and external security standards.

Skills

Java
Scala
Kotlin
Typescript
Angular
Secure coding
OWASP

Education

Bachelor's degree in CS

Tools

Firewalls
IDS
Encryption
Static analysis
Dynamic analysis
Penetration testing
Cloud security tools

Job description

Purpose

This role puts in place security measures to protect the company and customers against cyber-attacks.

Key Missions
  • Defines and maintains Solution, IT and Cloud Security solutions for protection, detection, response and recovery in line with the business needs, cyber threat evolution and compliance
  • Defines and maintains cybersecurity architecture blueprint for Solution, IT, Cloud or hybrid environments
  • Advises on the choice of technical solutions and advocate for secure architectures for one or a set of information systems and ensures regulatory compliance where applicable
  • Acs as level 3 support (expert) on all security solutions operated by IDEMIA
  • Investigates and analyzes existing Solution, IT and Cloud Security solutions and creates new and enhanced security methods that will enhance the security of cloud-based environments
  • Defines and maintains Solution, IT and Cloud Security technical guidelines and procedures
  • Supports projects for integration of cybersecurity requirements (security by design) and ensures the compliance with standards and regulation that apply (GSMA, PCI-DSS, PCI-CP, NIST…)
  • Performs and delivers risk analyses (EBIOS Risk Manager, ISO / CEI 27005) for complex projects
  • Reviews regularly existing architecture, identifies gaps and make recommendations for cybersecurity improvement
  • Analyzes the security risks associated with the introduction of new technologies or new information systems
  • Conducts regularly audit systems to verify compliance with Global Security Policies
  • Understands customers’ needs and summarizes the needs to propose a complex security design and solution in alignment with security standards and regulation in full autonomy
  • Participates to the strategy and policies definition for cybersecurity architecture
  • Provides expertise for cybersecurity incidents
  • Proposes and Applies cybersecurity best practices
  • Coaches less experience cybersecurity Architect
Profile & Other Information

Necessary Skills:

  • Experience in programming languages (Backend: Java, Scala, Kotlin, Frontend: Typescript, Angular)
  • Knowledge of secure coding practices - to guide R&D teams how to avoid vulnerabilities and security flaws in code
  • Experience with security frameworks and standards (OWASP Top Ten, ISO)
  • Experience working with certifications requirements and supporting R&D team answer security related questions
  • Good understanding of web application architecture but also of low levels communication protocols
  • Proficiency with security tools and technologies (e.g. firewalls, intrusion detection systems, encryption,static analysis tools, dynamic analysis tools, and penetration testing tools)
  • Experience in assuring security for cloud deployed applications and knowledge about security tools available in the cloud
  • Good communication skills as you will be working with technical but also non-technical audience
  • Problem-solving skills
  • Critical thinking
  • Continues learning and adaptability

Responsibilities:

  • Close collaborating with R&D teams to integrate and assure security at every stage in the software development lifecycle
  • Regular security reviews and threat modeling of our applications
  • Integrating security tools into processes and proactively introduce changes in case of any gaps
  • Responding to security incidents
  • Rise awareness among teams about application security (secure coding practices, security standards, security threats and countermeasures)
  • Ensure applications are aligned with certifications requirements in scope of security (e.g. SAS SM, PCI DSS)
  • Ensure teams are following internal and external security standards
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AppSec Expert
AppSec Expert

IDEMIA Group • Łódź

On-site
Cybersecurity Architect
Cybersecurity Architect

Vector Synergy • Warszawa

On-site
PLN 100,000 - 130,000
Cyber Security Risk Analyst
Cyber Security Risk Analyst

Euroclear • Poland

On-site
PLN 190,000 - 297,000
Cyber Security Risk Analyst
Cyber Security Risk Analyst

Euroclear • Kraków

On-site
PLN 254,000 - 383,000
Application Security Engineer - Senior
Application Security Engineer - Senior

SOFTSWISS • Warszawa

On-site
PLN 210,000 - 270,000
Private health insurance
Sports benefits
Mental Health Program
+6
Information Security Architect
Information Security Architect

Unit4 • Wrocław

On-site
PLN 220,000 - 320,000
Remote working opportunities
Flexible leave policy
Wellbeing days
+1
Cyber Security Engineer
Cyber Security Engineer

Interact Software • Poland

On-site
PLN 120,000 - 180,000
Network Security Architect
Network Security Architect

EPAM • Poland

On-site
PLN 106,000 - 170,000
Technical Manager
Technical Manager

DataLock Consulting Group • Poland

Remote
PLN 100,000 - 120,000
Competitive salary
Health insurance
Professional development opportunities
Application Security Engineer
Application Security Engineer

SOFTSWISS • Warszawa

Hybrid
PLN 60,000 - 90,000
Full-time remote work opportunities
Private insurance
Additional 1 Day Off per calendar year
+5