Senior Application Security Architect & Automation Leader

Lever, Inc.

Warszawa

Hybrid

PLN 260,000 - 380,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Annual bonus
Medical Insurance
Hybrid work model

Job summary

Capital.com is seeking a Senior/Staff Application Security Engineer to elevate security across web, mobile, and cloud platforms. You will lead architecture reviews, threat modelling, and the design of scalable, self-service security tooling for multiple engineering teams.

You’ll drive secure design, automate checks into CI/CD, and apply AI/LLM tooling to security reviews, code checks, and vulnerability triage.

Qualifications

  • 5+ years in application or product security, or equivalent depth, with a track record of senior or staff-level impact.
  • Demonstrable experience leading security architecture reviews and threat modelling across multiple teams or products.
  • Proven ability to automate and scale security processes by building tooling, integrations, and self-service workflows that reduce manual effort.

Responsibilities

  • Lead security architecture reviews and threat modelling for new and existing systems, using AI tools to make reviews faster, more consistent, and scalable across teams.
  • Act as a security force multiplier by influencing the standards, patterns, and guardrails that let teams move fast and stay secure.
  • Design, build, and automate scalable security processes that engineering teams can self-serve, covering secure design review, threat modelling, testing, and remediation workflows.
  • Integrate and automate security checks across the SDLC and CI/CD pipelines (SAST, DAST, SCA, secrets, and IaC scanning), tuned for strong signal and low friction.
  • Own and evolve security tooling such as DefectDojo and SAST, DAST, and SCA platforms, maximising automation, coverage, and integration.
  • Apply AI and LLM-based tooling to architecture review, threat modelling, code review, and vulnerability triage, and help define how the team adopts these tools safely.
  • Conduct and oversee security assessments of web and mobile applications, APIs, and cloud infrastructure, including manual testing and PoC development.
  • Run vulnerability scans across internal infrastructure and the external perimeter, then analyse findings, define remediation, and track issues to closure.
  • Support and triage the Bug Bounty Program and external vulnerability reports, automating triage where possible.
  • Participate in and help lead red teaming and offensive security exercises.
  • Drive knowledge sharing on secure development, mentor engineers, and deliver training for development and QA teams.

Skills

Threat modelling
Security architecture
Automation & tooling
Code review
SAST/DAST/CI/CD
AI & LLM tooling
Security testing
REST & microservices
Kubernetes security
OWASP

Tools

DefectDojo
SCA platforms

Job description

Capital.com is seeking a Senior/Staff Application Security Engineer to elevate security across web, mobile, and cloud platforms. You will lead architecture reviews, threat modelling, and the design of scalable, self-service security tooling for multiple engineering teams.

You’ll drive secure design, automate checks into CI/CD, and apply AI/LLM tooling to security reviews, code checks, and vulnerability triage.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior App Security Engineer — Lead Secure-by-Design, Hybrid
Senior App Security Engineer — Lead Secure-by-Design, Hybrid

Capital • Warszawa

Hybrid
PLN 320,000 - 460,000
Hybrid work model
Medical insurance
Pension fund
+4
Senior AppSec Architect: Hybrid Work + Generous Benefits
Senior AppSec Architect: Hybrid Work + Generous Benefits

Capital • Warszawa

Hybrid
PLN 250,000 - 400,000
Annual bonus
Generous annual leave
Medical insurance
+4
Senior Application Security Engineer
Senior Application Security Engineer

Lever, Inc. • Warszawa

On-site
PLN 260,000 - 380,000
Annual bonus
Medical Insurance
Hybrid work model
Senior Application Security Engineer
Senior Application Security Engineer

Capital • Warszawa

Hybrid
PLN 320,000 - 460,000
Hybrid work model
Medical insurance
Pension fund
+4
Hybrid AppSec Architect: Secure-by-Design at Scale
Hybrid AppSec Architect: Secure-by-Design at Scale

Lever, Inc. • Warszawa

Hybrid
PLN 260,000 - 380,000
Annual bonus
Generous annual leave
Medical insurance
+5
Application Security Architect
Application Security Architect

Capital • Warszawa

Hybrid
PLN 250,000 - 400,000
Annual bonus
Generous annual leave
Medical insurance
+4
Application Security Engineer
Application Security Engineer

Papaya Global • Kraków

On-site
PLN 300,000 - 420,000
Application Security Architect
Application Security Architect

Lever, Inc. • Warszawa

On-site
PLN 260,000 - 380,000
Annual bonus
Generous annual leave
Medical insurance
+5
Global AppSec Architect: SSDLC & AI Security Leader
Global AppSec Architect: SSDLC & AI Security Leader

Arrive • Łódź

On-site
PLN 260,000 - 360,000
Application Security Engineer: Secure SDLC & DevSecOps
Application Security Engineer: Secure SDLC & DevSecOps

emagine Polska • Warszawa

Hybrid
PLN 303,000 - 477,000