Job Description
Internal Platform is a pivotal foundation that accelerates product development by providing a reliable, scalable, and self-service ecosystem. It supports the entire software lifecycle and is meticulously tailored to meet the organization’s technological needs and strategic direction.
The platform enables development teams to operate autonomously in 80% of cases, reducing dependency on the Internal Platform team, and ensuring that compliance, security, and business continuity are integrated across the entire platform – defending general reliability of services and data integrity.
Overall, a platform engineering team plays a critical role in ensuring a company's technology infrastructure is reliable and scalable.
The Internal Platform team consists of 34 people including 27 individual contributors, 2 Staff Engineers, 4 Engineering Managers and a Head of Internal Platform. The team is organized in a way to efficiently address stakeholders’ needs.
Challenges
- Platform Security is a team within the Internal Platform. The team is a first point of contact for the Global Security Team. The team is responsible for security and integrity of the underlying infrastructure that supports the organization, safeguarding the platform from potential vulnerabilities, threats, and attacks.
- Developing and maintaining tools for Global Security in order to deliver vulnerability management platforms for application triaging and continuous compliance.
- The complexity of the Docplanner organization: Docplanner is a complex organization with multiple teams working on various products and services. One of the main challenges for the platform security engineer is to understand and integrate the diverse technology stacks used by different teams.
- Scalability and reliability of systems: As Docplanner grows and expands, the demand for the technology infrastructure also increases. The platform engineering team must ensure that the systems are designed to handle high traffic, are scalable, and secure.
Who will you work closely with?
- Global Security – as the main external stakeholder for security initiatives. You’ll collaborate on platform compliance, risk management, and act as a technical point of contact during escalated incidents such as DDoS or abuse cases.
- PMS (Practice Management Systems) teams – to audit existing systems, support secure migration to the central platform, and interpret global security and legal requirements in the context of PMS implementations.
- Core Team within Internal Platform – by consulting on technical compliance, networking standards, and resolving misconfigurations or vulnerabilities detected across platform components.
- Experience Teams – by providing guidance on infrastructure-related application security topics, secure encryption practices, and collaborating on secure CSP integrations.
- Legal – to ensure alignment with data protection regulations, encryption standards, and locality requirements. You’ll use their insights to assess and improve the security posture of the platform.
Impact on our mission
- Ensuring that our platform is compliant with the best industry practices and standards for security (ISO27001, C5, SOC2).
- Introducing security at every step of our platform lifecycle.
- Vigilantly understanding and mitigating security threats before they arise.
- Optimizing system scalability and cost efficiency.
- Developing, monitoring, and maintaining Kubernetes clusters across several continents.
- CI/CD development and maintenance.
- Ensuring all services are deployed in a highly available manner.
- Fixing urgent issues and optimizing performance.
- Supporting other team members in their daily work.
Qualifications
- At least 5 years of experience related with security.
- Vast experience with container orchestration platforms like Kubernetes and how to secure them (must-have).
- Experience maintaining and developing policy for security-focused CNI/Service Mesh (e.g., Calico, Cilium).
- Experience scanning for and managing vulnerabilities at scale.
- Experience with Hashicorp Vault.
- Knowledge of Terraform and popular CI/CD tools.
- Experience building scalable and secure production HA environments using AWS.
- Knowledge of AWS WAF/Cloudflare and network security services.
- Comfort in developing tools or scripts in Bash or Go to automate work.
- Fluency in English (spoken and written – B2 level).
- Ability to influence peers on security best practices.
Let’s talk money
- A salary adequate to your experience and skills.
True flexibility and work-life balance
- Remote or hybrid work model with or hub in Warsaw.
- Flexible working hours (fully flexible, as in most cases you only have to be on a couple of meetings weekly).
- 20/26 days of paid time off (depending on your contract).
- Additional paid day off on your birthday or work anniversary (you choose what you want to celebrate).
Health comes first
- Private healthcare plan with Signal Iduna for you and subsidized for your family.
- Multisport card co-financing for you to have access to sports facilities across Poland.
- Access to iFeel, a technological platform for mental wellness offering online psychological support and counseling.
Keep growing with us
- Free English and Spanish classes.
We promote and embrace equal opportunities in our hiring process, and also every day at work. When you apply for our roles you receive equal treatment regardless of age, disabilities, gender reassignment, marital or civil partner status, pregnancy or parental status, race, colour, nationality, ethnic or national origin, religion or belief, sex, sexual orientation or any other dimension of human difference. If you require additional support in your recruitment process, we kindly encourage you to let us know.