AppSec Expert

IDEMIA Group

Łódź

On-site

PLN 133,920 - 200,880

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IDEMIA Group in Łódź, Poland, seeks a cybersecurity expert to implement security measures protecting against cyber-attacks. You will define and maintain security solutions, provide expertise during cybersecurity incidents, and advise on secure architecture.

The ideal candidate has experience in programming languages like Java and Scala, is familiar with security frameworks, and can effectively communicate with both technical and non-technical audiences. A focus on continuous learning and adaptability is essential.

Qualifications

  • Experience in programming languages relevant to backend and frontend development.
  • Knowledge of secure coding practices to guide R&D teams.
  • Experience with security frameworks and standards.

Responsibilities

  • Collaborate with R&D teams to integrate security in software development.
  • Conduct regular security reviews and threat modeling.
  • Respond to security incidents promptly.

Skills

Programming languages (Java, Scala, Kotlin, Typescript, Angular)
Secure coding practices
Security frameworks and standards (OWASP, ISO)
Communication skills
Problem-solving skills
Critical thinking
Adaptability

Tools

Security tools (firewalls, IDS, encryption, penetration testing)
Cloud security tools

Job description

Purpose

This role puts in place security measures to protect the company and customers against cyber-attacks.

Key Missions
  • Defines and maintains Solution, IT and Cloud Security solutions for protection, detection, response and recovery in line with the business needs, cyber threat evolution and compliance
  • Defines and maintains cybersecurity architecture blueprint for Solution, IT, Cloud or hybrid environments
  • Advises on the choice of technical solutions and advocate for secure architectures for one or a set of information systems and ensures regulatory compliance where applicable
  • Acs as level 3 support (expert) on all security solutions operated by IDEMIA
  • Investigates and analyzes existing Solution, IT and Cloud Security solutions and creates new and enhanced security methods that will enhance the security of cloud-based environments
  • Defines and maintains Solution, IT and Cloud Security technical guidelines and procedures
  • Supports projects for integration of cybersecurity requirements (security by design) and ensures the compliance with standards and regulation that apply (GSMA, PCI-DSS, PCI-CP, NIST…)
  • Performs and delivers risk analyses (EBIOS Risk Manager, ISO / CEI 27005) for complex projects
  • Reviews regularly existing architecture, identifies gaps and make recommendations for cybersecurity improvement
  • Analyzes the security risks associated with the introduction of new technologies or new information systems
  • Conducts regularly audit systems to verify compliance with Global Security Policies
  • Understands customers’ needs and summarizes the needs to propose a complex security design and solution in alignment with security standards and regulation in full autonomy
  • Participates to the strategy and policies definition for cybersecurity architecture
  • Provides expertise for cybersecurity incidents
  • Proposes and Applies cybersecurity best practices
  • Coaches less experience cybersecurity Architect
Profile & Other Information
Necessary Skills
  • Experience in programming languages (Backend: Java, Scala, Kotlin, Frontend: Typescript, Angular)
  • Knowledge of secure coding practices - to guide R&D teams how to avoid vulnerabilities and security flaws in code
  • Experience with security frameworks and standards (OWASP Top Ten, ISO)
  • Experience working with certifications requirements and supporting R&D team answer security related questions
  • Good understanding of web application architecture but also of low levels communication protocols
  • Proficiency with security tools and technologies (e.g. firewalls, intrusion detection systems, encryption,static analysis tools, dynamic analysis tools, and penetration testing tools)
  • Experience in assuring security for cloud deployed applications and knowledge about security tools available in the cloud
  • Good communication skills as you will be working with technical but also non-technical audience
  • Problem-solving skills
  • Critical thinking
  • Continues learning and adaptability
Responsibilities
  • Close collaborating with R&D teams to integrate and assure security at every stage in the software development lifecycle
  • Regular security reviews and threat modeling of our applications
  • Integrating security tools into processes and proactively introduce changes in case of any gaps
  • Responding to security incidents
  • Rise awareness among teams about application security (secure coding practices, security standards, security threats and countermeasures)
  • Ensure applications are aligned with certifications requirements in scope of security (e.g. SAS SM, PCI DSS)
  • Ensure teams are following internal and external security standards
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AppSec Expert
AppSec Expert

IDEMIA • Łódź

On-site
PLN 180,000 - 240,000
Cybersecurity Architect
Cybersecurity Architect

Vector Synergy • Warszawa

On-site
PLN 100,000 - 130,000
Cyber Security Risk Analyst
Cyber Security Risk Analyst

Euroclear • Poland

On-site
PLN 190,000 - 297,000
Cyber Security Risk Analyst
Cyber Security Risk Analyst

Euroclear • Kraków

On-site
PLN 254,000 - 383,000
Cyber Security Engineer
Cyber Security Engineer

Interact Software • Poland

On-site
PLN 120,000 - 180,000
Application Security Engineer - Senior
Application Security Engineer - Senior

SOFTSWISS • Warszawa

On-site
PLN 210,000 - 270,000
Private health insurance
Sports benefits
Mental Health Program
+6
Information Security Architect
Information Security Architect

Unit4 • Wrocław

On-site
PLN 220,000 - 320,000
Remote working opportunities
Flexible leave policy
Wellbeing days
+1
Technical Manager
Technical Manager

DataLock Consulting Group • Poland

Remote
PLN 100,000 - 120,000
Competitive salary
Health insurance
Professional development opportunities
Network Security Architect
Network Security Architect

EPAM • Poland

On-site
PLN 106,000 - 170,000
Application Security Engineer
Application Security Engineer

SOFTSWISS • Warszawa

Hybrid
PLN 60,000 - 90,000
Full-time remote work opportunities
Private insurance
Additional 1 Day Off per calendar year
+5