Security Engineer

16 hours ago


Kraków, Czech Republic LotusFlare Full time

REQUIREMENTS

  • 3+ years of DevOps or DevSecOps experience
  • Experience securing CI/CD pipelines Familiarity with modern DevSecOps tooling (SAST, DAST, SCA, IaC scanning)
  • Bachelor's degree
  • Cloud-native infrastructure stack experience with tools like Terraform, Ansible and etc;
  • Experience in the implementation of security controls and familiarity with SCAP and continuous security monitoring solutions
  • Knowledge in the development and implementation of the following concepts:
    - Network Security Concepts
    - Linux System Security and System Hardening
    - Data Classification and Data Security Concepts
    - Cloud Security, particularly AWS
  • Ability to analyze and resolve complex infrastructure resource and application deployment issues
  • Minimum Intermediate level of English

​​​​​Nice to have:

  • Experience with intrusion detection solutions and web application firewalls/L7 proxies
  • Experience in Server Application security concepts and security controls
  • Hands-on experience with Qualys
  • Scripting and automation skills, implementing in Python, Go and similar languages
  • Understanding of various user access controls, SSO, user profile integrity and access management controls
POSITION SUMMARY

As Security Engineer on the Infrastructure Team at LotusFlare you will be responsible to drive the overall IT security standards across our cloud native Digital Network Operator stack. This incorporates security policies and domain security concepts along with the implementation and the lifecycle of security technologies in LotusFlare’s infrastructure.

As Senior Security Engineer you will be reporting to the VP of Infrastructure and engage directly with infrastructure and product engineering teams. Our office is located in the vibrant area of Krakow, at Aleja Pokoju 18. We encourage you to join us in the office to collaborate, connect, and contribute to our team's success.

WE OFFER

  • Hybrid work environment; 
  • Yearly bonus; 
  • Paid lunches; 
  • Private medical insurance; 
  • The company covers accountant assistance expenses; 
  • ZUS coverage; 
  • Paid sick leaves; 
  • 21 working days of vacation, public holidays; 
  • Training and workshops. 
,[Actively managing the security of our cloud-native runtime environment, Clearly and promptly communicate and negotiate security technical topics with both technical and non-technical audiences, Drive security improvements to production cloud environments, Perform targeted offensive security testing, Implement continuous monitoring systems and tools to automatically identify potential security issues at the code, application and infrastructure layers, Review code and other production changes with the goal to maintain the security standards, Stay current on emerging security threats, vulnerabilities, and controls for the cloud, Working with backend engineering teams on architecting, profiling, and monitoring high-performance high availability product components as microservices, providing mission-critical real-time functionality on the control plane of mobile and fixed networks, Evolving the infrastructure and keeping our stack up to date with the latest technologies ] Requirements: Security, Cloud Native, Degree, NIST, Network Security, Linux, Cloud, AWS, Web application firewall, Audits, GDPR, GRC, Testing, High availability, Microservices, qualys, Python, Go, Firewall, SSO Tools: . Additionally: Private healthcare, Annual bonus, Sick days, Training budget, Lunch card, Yearly bonus, Assistance expenses, Unlimited sick leaves, Public holidays, Private Medical Insurance, ZUS Coverage, 21 working days of vacation, Trainings and workshops, Free coffee, Canteen, Free snacks, Free lunch, Modern office, Startup atmosphere.

  • Kraków, Lesser Poland, Czech Republic Antal Full time

    RequirementsStrong practical knowledge of enterprise email systems and protocols (SMTP, SPF/DKIM/DMARC)Hands-on experience with Proofpoint or similar enterprise email security platformsFamiliarity with phishing prevention, malware detection, DLP, and incident responseExperience with Microsoft Exchange Online and Microsoft 365 environmentsGood understanding...


  • Kraków, Lesser Poland, Czech Republic Hitachi Energy Full time

    Your background:BSc or MSc degree in IT, SW engineering, Telecommunication, Computer Science, Electronics or similar area Familiarity with cybersecurity principles, penetration testing and product security Understanding of common vulnerabilities and exploits Familiarity with cybersecurity tools such as Kali Linux, Metasploit and Nessus Knowledge of...


  • Kraków, Lesser Poland, Czech Republic ITDS Full time

    You're ideal for this role if you have:Proven experience in penetration testing and vulnerability assessment of distributed systemsProficiency in at least one programming language such as C++, Python, or GoDeep understanding of security principles and best practicesFamiliarity with container technologies such as Docker and KubernetesExperience working with...


  • Kraków, Lesser Poland, Czech Republic beBeeCybersecurity Full time 800,000 - 1,200,000

    Job Title: Cybersecurity SpecialistJob Description:We are seeking a highly skilled cybersecurity professional to join our Infrastructure Team. As a key member of our Digital Network Operator stack, you will be responsible for driving overall IT security standards.This includes implementing and maintaining security policies, domain security concepts, and...


  • Kraków, Czech Republic Antal Full time

    Requirements Strong practical knowledge of enterprise email systems and protocols (SMTP, SPF/DKIM/DMARC) Hands-on experience with Proofpoint or similar enterprise email security platforms Familiarity with phishing prevention, malware detection, DLP, and incident response Experience with Microsoft Exchange Online and Microsoft 365 environments Good...


  • Kraków, Lesser Poland, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this roleStrong experience in working in at least one Cloud Provider (AWS preferred) and have experience working with CSP native WAF solutions or equivalent - Akamai in use of WAF Rules and DDoS protection.  Experience working at scale in the use at least one CSP native WAF solutions or equivalent Ability to demonstrate...


  • Kraków, Lesser Poland, Czech Republic HSBC Technology Poland Full time

    What you need to have to succeed in this roleProven experience of successful operational management, utilizing relevant tools and techniques to ensure consistent delivery Experience in IT Service Management, ITIL methodologies mostly in the area of Service Continuity, Change and Incident Management.Strong product knowledge including knowledge of past...


  • Kraków, Czech Republic Hitachi Energy Full time

    Your background: BSc or MSc degree in IT, SW engineering, Telecommunication, Computer Science, Electronics or similar area  Familiarity with cybersecurity principles, penetration testing and product security  Understanding of common vulnerabilities and exploits  Familiarity with cybersecurity tools such as Kali Linux, Metasploit and Nessus  Knowledge of...


  • Kraków, Lesser Poland, Czech Republic beBeeCloudSecurity Full time 6,500,000 - 8,500,000

    Cloud Security Specialist - Google CloudThe role involves overseeing the security posture of a global financial services organization's cloud estate, ensuring ongoing compliance with regulatory processes and best practices.About the JobThis is an exciting opportunity to join our Global Cloud Services team and contribute to the development of cutting-edge...


  • Kraków, Lesser Poland, Czech Republic beBeeSecurity Full time

    Job Title: Software Security EngineerWe are seeking an experienced Software Security Engineer to join our team in Warsaw. This role involves safeguarding the security of distributed systems and core infrastructure.About the Role:Conduct penetration testing and vulnerability assessments across distributed platforms.Identify and analyze security...