Appfire seeks a highly skilled Senior Security Engineer to join our Appfire Information Security team. This Senior Security Engineer role will report to our CISO and work within our Security Engineering & Architecture team to handle diverse security engineering and architecture-related tasks for our rapidly growing company, including managing risk through a shared vision with Appfire’s business leaders.
While focusing on people, processes, systems, and metrics, and keeping up with the latest threats and trends in security, you will be tasked with understanding and resolving a variety of security requirements at Appfire. You will also handle the identification of risks and recommendations for threat mitigation. Activities will include engineering and architecture-focused tasks, supporting security reviews and audits, and verification of adherence to security policy (including cloud security policies).
You will be expected to engage in professional development to maintain continual growth in professional skills and knowledge essential to the position, thrive in a highly collaborative workplace,e and actively engage in helping create secure software applications.
Appfire is looking for a Senior Security Engineer. You will report to one of our Managers and be a member of the Information Security Team.
You can choose to work remotely from any location in Poland.
Your everyday tasks will include:
- Collaborate with Engineering, IT Operations, and DevOps to design, engineer, and support security within our cloud environments, products, and vendor solutions, while promoting DevSecOps.
- Perform security assessments and penetration testing (manage and perform) on web applications, mobile clients, etc.
- Enforce continuous security compliance for our Cloud apps and cloud infrastructure.
- Review and approve controls needed to protect data and technology assets in compliance with policies, regulations, and legal requirements.
- Support incident response and security operations.
- Ensure compliance with and support our vulnerability management program, including SCA, SAST, DAST, penetration testing, and bug bounty programs.
- Provide expertise in the integration efforts of Appfire acquisitions and alignment to information security standards and policies.
- Implement and maintain information security systems and services to support the Information Security team.
Skills and experience you'll need to succeed:
- Degree in Computer Science, Information Security, Engineering, or equivalent experience.
- 5+ years of experience working in cyber security engineering and/or architecture at a software company.
- Experience performing security work in a multi-cloud environment is preferred.
- Experience with at least one vulnerability scanning tool (e.g. Qualys, Rapid7, Wiz, etc.).
- Experience as a pen tester for web-based applications and familiarity with the OWASP top ten vulnerability categories.
- Working knowledge of at least one scripting language, Python preferred, and Linux concepts/command-line familiarity.
- Experience with basic SQL and manipulating large data files preferred.
- Understanding of key cryptography concepts such as symmetric/asymmetric keys, algorithms, and protocols (PKI, GPG, RSA, x509 certificates, and TLS/SSL).
- Knowledge of common information security frameworks such as CIS, NIST, ISO 27001 & SOC 2 a plus.
- Ability to work effectively within a fast-paced, changing environment with high growth.
- A self-starter with a demonstrated ability to take initiative, who can proactively identify issues/opportunities and recommend actions.
- Strategic analysis, creative problem-solving, and business judgment are required.
- Excellent interpersonal and communication skills, including writing skills.
Beyond the resume skills that match our culture and this role:
- You are dedicated to elevating client and co-worker experiences, knowing that exceptional work centers on serving others.
- You adapt swiftly to new business demands, understanding that change fuels collective and individual growth.
- You excel in communication, effectively connecting in remote/hybrid environments using tools like Slack, Zoom, and G Suite and through occasional in-person events.
- You have exceptional coaching, mentoring, and people development skills.
We offer:
Financial benefits
- Every Appfire employee is eligible for company equity.
- Home Office allowance – 200 PLN/month to cover your electricity and internet bills.
- MyBenefit Platform – 150 PLN/month to spend on shopping, culture and entertainment, Multisport, travel, and more.
- Lunch Card – 300 PLN/month to spend on groceries/restaurants (excluding alcohol and other excise duties items).
- You can apply for a 50% tax-deductible cost on creative works (AKUP/IP tax-deductible costs).
Skills development benefits
- Access to the Appfire University learning platform – a hub of knowledge, interactive resources, and engaging instructor-led courses designed to fuel your learning journey with unparalleled depth and accessibility.
- English language courses.
PTO, health & well-being
- 26 working days of paid annual leave, regardless of years of experience.
- Wellness Days – additional time off each month to recharge and take care of yourself.
- Private healthcare.
- Life Insurance.
Volunteering
- 3 fully paid days each year to participate in Appfire Town, Appfire’s Corporate Social Responsibility (CSR) Program.
Other
- Indefinite Employment contract from day one, no trial periods.