emagine Polska is looking for an experienced Application Security Engineer to strengthen our security posture and support our engineering teams. You will play a key role in identifying vulnerabilities, integrating security tools into development workflows, and fostering a culture of secure coding across the organization.
Key responsibilities
- Plan and conduct penetration tests on internal applications and deliver detailed, actionable security reports.
- Integrate SAST, DAST, and SCA scanning tools into CI/CD pipelines and train development teams on their effective use.
- Troubleshoot and resolve technical issues related to security scanning, including pipeline configuration and scanner failures.
- Support engineering teams with threat modeling, security reviews, and pre-release assessments to resolve blockers before launch.
- Define and standardize security engagement procedures to ensure seamless collaboration between security and development teams.
Requirements
- Proven experience in performing penetration tests on web applications and APIs.
- Hands-on expertise with SAST, DAST, and SCA tools and their integration into CI/CD environments.
- Strong working knowledge of CI/CD platforms, particularly Jenkins, including pipeline troubleshooting.
- Solid understanding of common vulnerability classes, such as the OWASP Top 10, and effective remediation techniques.
- Excellent written communication skills with the ability to produce clear reports for both technical and non-technical stakeholders.
What we offer
- A fully remote work environment that supports independent work and professional initiative.
- Flexible working hours to help you manage your professional and personal commitments effectively.
- The opportunity to act as a trusted security partner and influence secure development practices within a dynamic engineering team.