emagine Polska is looking for an Application Security Engineer to join a telecommunications project focused on strengthening the organization's security posture. You will be responsible for analyzing vulnerabilities, driving remediation plans, and implementing modern security processes within a fully remote environment.
Key responsibilities
- Analyze the current security state of components using DefectDojo and collaborate with development teams on vulnerability mitigation.
- Drive the execution of remediation plans in coordination with Tech Leads and security profiles.
- Define and implement secrets management procedures while leveraging GitLab Ultimate security features.
- Contribute to the deployment of SCA and SAST solutions like SonarQube.
- Set up Power BI dashboards to provide high-level security reporting and visibility on the evolution of the security posture.
Requirements
- Proven experience with vulnerability management tools such as DefectDojo and familiarity with SCA/SAST tools like SonarQube.
- Strong knowledge of DevSecOps practices, CI/CD pipelines, and secure secrets management procedures.
- Proficiency with GitLab security features and experience working with major development languages including Java, Angular, Python, and Drupal.
- Familiarity with OWASP security recommendations, NIS2 compliance, and Agile Scrum methodology.
- Excellent reporting and data visualization skills using Power BI, along with experience in Jira and Confluence.
What we offer
- A fully remote working environment within a long-term project structure.
- Opportunity to influence the security strategy of a large-scale telecommunications organization.
- Collaboration with diverse technical teams in an English-speaking professional environment.