Security Engineer (DevSecOps)

co.brick

Gliwice

Hybrid

PLN 180,000 - 260,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Emporix is seeking a Security Engineer in Poland to conduct a hands-on security audit of our cloud stack and remediate findings across GCP, GKE, Apigee, and MongoDB Atlas.

You’ll own security improvements from audit to implementation, collaborate with developers, and help shape security practices from the ground up. Remote-friendly with monthly Gliwice visits; fluent Polish and English are required; 4+ years in security engineering.

Qualifications

  • 4+ years of experience in security engineering, cloud security, or DevSecOps.
  • Degree in Computer Science, Computer Engineering, or related field (or equivalent).
  • Hands-on with Cloud Providers and audited Kubernetes environments.
  • Strong Kubernetes security knowledge: RBAC, Pod Security Standards, network policies, OPA/Gatekeeper.
  • Deep API security understanding - preferably with Apigee or similar gateway.
  • Experience securing Cloud NoSQL databases: access controls, encryption, audit logging.
  • Ability to write/ Review Terraform or Helm charts for fixes.
  • Solid grasp of OAuth 2.0, JWT, mTLS, and secret lifecycle management.
  • Polish and English communication (min B2); self-starter and accountable.
  • Bonus: CKS, SAST/DAST tools, ISO27001 or SOC 2 familiarity.

Responsibilities

  • Conduct a comprehensive internal security audit of our cloud stack (GCP, GKE, Apigee, MongoDB Atlas).
  • Review network architecture, IAM policies, secrets management, and workload isolation.
  • Assess API security: authentication flows, rate limiting, token scoping, gateway policies.
  • Audit GKE hardening: RBAC, Pod Security Standards, node pools, admission controllers, image supply chain.
  • Identify vulnerabilities and prioritize findings with clear severities.
  • Implement fixes directly - IaC changes (Terraform/Helm), policy updates, and security gates.
  • Analyze root causes and implement long-term structural improvements.

Skills

Security engineering
Cloud security
DevSecOps
Kubernetes security

Education

Bachelor's degree in Computer Science or Computer Engineering

Tools

Terraform
Helm
Apigee
GKE
MongoDB Atlas

Job description

We are looking for a skilled Security Engineer to join our team in Poland, with hands-on experience in cloud security and a pragmatic approach to finding and fixing real problems. This is not a consulting engagement - you'll conduct a thorough technical security audit and then stay with us to remediate every finding you uncover. You'll work closely with our engineers, shaping security practices from the ground up.

You can work from our modern office in Gliwice or remotely from anywhere in Poland, with a visit to the office at least once per month to meet the team.

What You'll Be Doing
Security Audit & Assessment
  • Conduct a comprehensive internal security audit of our GCP infrastructure, GKE clusters, Apigee API gateway, and MongoDB Atlas deployments
  • Review network architecture, IAM policies, secrets management, and workload isolation across all environments
  • Assess API security: authentication flows, rate limiting, token scoping, and gateway policies in Apigee
  • Audit GKE hardening: RBAC, pod security standards, node pool configuration, admission controllers, and container image supply chain
  • Identify and prioritise vulnerabilities, misconfigurations, and compliance gaps with clear severity ratings
Remediation & Hands-On Fixes
  • Implement fixes directly - not just write reports - including Infrastructure as a Code changes (Terraform / Helm), policy updates, and pipeline security gates
  • Analyse root causes of security gaps and implement long-term structural improvements
About You
  • You have 4+ years of experience in security engineering, cloud security, or DevSecOps
  • You hold a degree in Computer Science, Computer Engineering, or a related technical field (or equivalent practical experience).
  • You are comfortable working hands-on with Cloud Providers and have audited managed Kubernetes environments
  • You have solid knowledge of Kubernetes security: RBAC, Pod Security Standards, network policies, and OPA/Gatekeeper
  • You understand API security deeply - preferably with Apigee or a comparable gateway
  • You know how to secure Cloud Managed NoSQL databases: access controls, encryption, and audit logging
  • You can write and review Terraform or Helm charts to implement your own fixes
  • You have a strong grasp of OAuth 2.0, JWT, mTLS, and secret lifecycle management
  • You communicate effectively in both Polish and English (minimum B2 level)
  • You are a self-starter who takes ownership of findings and sees them through to resolution
Bonus Points (What Else Might Help You Succeed?)
  • GCP Professional Security Engineer or CKS (Certified Kubernetes Security Specialist) certification
  • Experience with SAST/DAST tooling such as Semgrep, Trivy, or OWASP ZAP
  • Familiarity with headless commerce architectures
  • Knowledge of ISO27001 or SOC 2 compliance requirements
  • Bug bounty or penetration testing background
Why You'll Love It Here
  • Meaningful Impact: Your work will directly shape the security posture of a cutting-edge commerce platform used by global enterprises - from finding the first issue to shipping the fix.
  • Hands-On Ownership: This is not a reporting role. You audit, you fix, you monitor. If you want to see the direct results of your work, this is the place.
  • Collaborative Culture: Work with experienced engineers in a supportive environment that values knowledge sharing and practical solutions over bureaucracy.
  • Flexible Work Setup: Enjoy a remote/hybrid work model that promotes flexibility and personal well-being while encouraging meaningful team connections. Meet in our Gliwice office at least once a month.

Come as you are: We are building an AI-driven future for commerce, and that requires a variety of perspectives. Emporix is an equal opportunity employer where your collaborative spirit, communication, and pragmatic approach to problem-solving are what matter most. We encourage candidates of all genders and backgrounds to apply. Even if you don't check every single box, but you are passionate about security and making systems genuinely safer, we'd love to meet you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer – DevSecOps
Security Engineer – DevSecOps

Emporix • Gliwice

Hybrid
PLN 211,000 - 297,000
Flexible work setup
Collaboration with experienced engineers
Meaningful impact on security posture
DevSecOps Security Engineer - Remote/Poland
DevSecOps Security Engineer - Remote/Poland

co.brick • Gliwice

Hybrid
PLN 180,000 - 260,000
DevOps Engineer - Remote friendly
DevOps Engineer - Remote friendly

Emporix • Gliwice

Hybrid
PLN 240,000 - 320,000
Remote DevSecOps Security Engineer – Cloud & API
Remote DevSecOps Security Engineer – Cloud & API

Emporix • Gliwice

Hybrid
PLN 211,000 - 297,000
Flexible work setup
Collaboration with experienced engineers
Meaningful impact on security posture
Lead Security Testing Engineer
Lead Security Testing Engineer

EPAM Systems • Łódź

Hybrid
PLN 180,000 - 280,000
Hybrid work model
Relocation opportunities
Employee stock purchase plan
+5
Security Engineer (SecOps)
Security Engineer (SecOps)

inFakt • Kraków

Hybrid
Private medical care for you and your family/partner
MultiSport Benefit card for you and a loved one
Daily lunches, fresh fruit, and good coffee
+2
Java Backend Developer (f/m/x)
Java Backend Developer (f/m/x)

Emporix • Poland

Hybrid
PLN 151,000 - 251,000
Hybrid work model
Office in Gliwice
Fullstack Developer (f/m/x) - Remote Friendly
Fullstack Developer (f/m/x) - Remote Friendly

Emporix • Gliwice

Hybrid
PLN 120,000 - 180,000
Hybrid work model
Office in Gliwice
Remote work from anywhere in Poland
+1
Application Security Engineer
Application Security Engineer

AXA IT Solutions • Poland

Hybrid
PLN 180,000 - 240,000
Personal development
International environment
English work environment
+9
Java Developer (f/m/x)
Java Developer (f/m/x)

Emporix • Gliwice

On-site
PLN 151,000 - 301,000
Hybrid work model
Monthly Gliwice office visit