WAF & Application Security SME @ Mindbox Sp.z.o.o.
7 days ago
Several years of experience in WAF management, tuning, and engineering (e.g., Akamai, F5, AWS, GCP – at least 3 solutions). Strong understanding of web application security principles and hands-on experience in SOC/CSIRT, AppSec, or Ethical Hacking. Proficiency in log analysis (e.g., Splunk, Wireshark, custom scripts). Ability to develop, test, and recommend WAF policies and rules tailored to various applications and environments. Experience working with DevSecOps teams and integrating security solutions. Competence in maintaining comprehensive documentation for WAF procedures and configurations. Proactive, detail-oriented, and able to thrive in a dynamic environment. Excellent communication skills – able to articulate technical concepts to both technical and non-technical stakeholders. Up-to-date knowledge of web security threats and trends. Creating an inspiring place to thrive for the talented, we use their expertise and courage to introduce the technology of the future into your business. - This is the foundation of Mindbox and the goal of our business and technology journey. We operate and develop in four areas: 🤖 Autonomous Enterprise - automation of business processes using RPA, OCR, and AI. 🌐Business Managment Systems ERP - we implement, adapt, optimize, and maintain flexible, safe, and open ERP of production and distribution companies worldwide. 🤝Talent Network - we provide access to the best specialists. ☁️ Modern Architecture - we build integrated, sustainable, and open CI / CD environments based on containers enabling safe and more frequent delivery of proven changes in the application code. We treat technology as a tool to achieve a goal. Thanks to our consultants' reliability and proactive approach, initial projects usually become long-term cooperation. For over 16 years, it has provided various services to support clients in digital transformation. #LI-Hybrid About the Role: Join a team of experts responsible for elevating the security of web applications at one of the world’s largest financial organizations. As a WAF & Application Security SME, you will play a key role in designing, testing, and implementing advanced Web Application Firewall (WAF) solutions, as well as enhancing the security posture of internet and internal applications and APIs. We Offer: Work in an international environment on innovative cybersecurity projects. Opportunities for professional growth and collaboration with experts from around the world. Remote or hybrid work model. Participation in projects with global impact and high organizational visibility. Interested candidates are invited to submit their CV in English. We will contact selected applicants. ,[Identify and craft complex custom WAF rules and features to mitigate security gaps., Design and execute efficacy testing for baseline and custom rules, integrating tests into CI/CD automation pipelines., Provide SME support for security testing, WAF Proofs of Concept, new features, and solutions., Analyze logs, detect and mitigate false positives, and optimize WAF rules for accuracy and performance., Document WAF tuning procedures, policies, and configurations., Collaborate with DevSecOps, engineering, SOC/CSIRT, and other technical teams., Conduct regular audits and assessments of WAF configurations for compliance with best practices and industry standards., Stay up-to-date with the latest web security threats and trends., Proactively identify and address threats and false positives., Support seamless integration of WAF solutions into existing security infrastructure. ] Requirements: WAF, Akamai, F5, AWS, GCP, Web application security, Splunk, Wireshark, Communication skills Additionally: Sport subscription, Private healthcare, International projects, Free coffee.
-
Kraków, Czech Republic Mindbox Sp.z.o.o. Full timeAt least 5 years of experience in Project Manager role Ability to work in fast paced environment and ever-changing priorities and having extremely flexible to manage workload Experience with Agile and its concepts and can use tools such as Jira and Confluence Able to support aggressive delivery timelines without compromising on quality Quick learner /...
-
Kraków, Warszawa, Czech Republic Antal Full timeUdokumentowana praktyka w obszarze Web Application Security, w tym wdrażanie i utrzymanie rozwiązań WAF w dużych, złożonych środowiskach. Znajomość podatności aplikacji webowych i wzorców ataków (OWASP, CRS) oraz metod ich neutralizacji. Doświadczenie w projektowaniu i implementacji strategii ochrony aplikacji webowych. Umiejętność...
-
Kraków, Czech Republic Mindbox Sp.z.o.o. Full timeStrong experience designing and building infrastructure in GCP (or another major cloud provider such as AWS/Azure). Excellent understanding of DevOps principles, CI/CD pipelines, and Infrastructure as Code methodologies. Hands-on experience with Terraform, Ansible, or similar automation frameworks. Strong scripting or programming skills in at least...
-
Kraków, Czech Republic Mindbox Sp.z.o.o. Full timeStrong experience designing and building infrastructure in GCP (or another major cloud provider such as AWS/Azure). Excellent understanding of DevOps principles, CI/CD pipelines, and Infrastructure as Code methodologies. Hands-on experience with Terraform, Ansible, or similar automation frameworks. Strong scripting or programming skills in at least one...
-
Kraków, Czech Republic Mindbox Sp.z.o.o. Full timeVery good knowledge of Java. Minimum 2 years of experience working with Adobe Experience Manager. Knowledge of Apache Sling, OSGI, JCR. Experience with REST Services. Ability to write unit tests (JUnit/AEM Mocks). Familiarity with Maven, GIT, SonarQube. Basic knowledge of HTML5, CSS, JavaScript. Excellent communication skills (verbal and written, also in...
-
Backend QA Engineer
5 days ago
Kraków, Czech Republic Mindbox Sp.z.o.o. Full time4+ years of experience as a Software Tester or QA Engineer, preferably in backend or API testing. Strong hands-on experience testing .NET backend code and services. 2+ years of experience in API testing and validation. Proficiency in SQL, including writing and executing complex queries and testing stored procedures will be beneficial. Solid understanding...
-
Senior Engineer
7 days ago
Kraków, Czech Republic Mindbox Sp.z.o.o. Full timeProven experience as a senior individual contributor and/or technical lead in a large-scale mobile engineering organization Expert-level knowledge of Android development and the Android ecosystem Proficiency in Java and Kotlin programming languages Strong experience with Android Studio, Android SDK, and related development tools Deep understanding of Android...
-
AEM Frontend developer @ Mindbox Sp.z.o.o.
5 days ago
Kraków, Czech Republic Mindbox Sp.z.o.o. Full timeMinimum 2 years of experience working with Adobe Experience Manager (AEM). Proficiency in HTML5, HTML4 (for emails), CSS (SASS/LESS), and JavaScript. Experience with AEM Core Components, HTL (Sightly), and ClientLibs. Familiarity with REST services and Maven. Understanding of web accessibility standards. Excellent verbal and written communication skills in...
-
Business Data Analyst @ Mindbox Sp.z.o.o.
3 days ago
Kraków, Czech Republic Mindbox Sp.z.o.o. Full timeDemonstrable experience of working in a data-related projects across areas like data governance/mgmt., data quality, information lifecycle management (ILM) 3 years of experience in business analysis role on complex projects across countries or regions Experience in Capturing, analysing and documenting of business user requirements Strong interpersonal...
-
Kraków, Czech Republic Mindbox Sp.z.o.o. Full time+5 years’ experience with software delivery in banking / finance / fintech Process Improvement: Experience in mapping, documenting, analysing process flows to identify opportunities for automation and optimization within a DevOps context. Independent worker with ‘can do’ attitude, ability to learn quickly, and strong sense of ownership to get the...