Capgemini Engineering

Application Security Engineer

Capgemini Engineering

Kyiv, UA; Lviv, UA; Odesa, UA; Rivne, UA (Remote)

Job Type Permanent
Experience Experienced Professionals
Posted 4 days 13 hours ago
Remote Friendly Experienced Professionals Level

At Capgemini Engineering, the world leader in engineering services, we bring together a global team of engineers, scientists, and architects to help innovative companies unleash their potential. Our digital and software technology experts provide R&D and engineering services across industries.

Job Description

As an Application Security Engineer, your responsibilities will include:

Security Engineering

  • Collaborate with development teams, Site Reliability Engineering, and other stakeholders to strengthen the adoption of security best practices throughout the SDLC.
  • Independently identify security improvements and implement them.

Vulnerability Management

  • Implement, manage, and automate vulnerability management processes.
  • Prioritize and remediate vulnerabilities discovered through internal scans, penetration tests, and bug bounties.

Security Assessments

  • Conduct threat modeling, code audits, and design reviews with engineers to ensure effective and secure development.
  • Collaborate in providing actionable recommendations to find workable solutions.

Threat Hunting

  • Establish a threat hunting capability and automate where appropriate.
  • Enhance logging capabilities related to security events.

Security Tools Integration and Management

  • Integrate and manage dynamic and static code analysis tools.
  • Ensure operation of security tools within the development pipeline.

Skills that will help you thrive in this role

  • 4+ years of experience in secure development or application security.
  • Deep knowledge of security concepts such as authentication and web architecture.
  • Experience with Node.js, Go, and similar technologies.
  • Experience running bug bounty, penetration testing, and vulnerability scanning programs.
  • Experience setting up and maintaining SAST, DAST, IAST, and SCA tooling.
  • Experience using assessment tools such as Burp, ZAP, Qualys, and Nessus.
  • Experience building and maintaining WAF solutions.
  • Familiarity with industry security practices, standards, and regulations such as FedRAMP, SOC 2, and HIPAA is a plus.
  • Familiarity with GCP, AWS, and Kubernetes infrastructure security is a plus.
  • Self-motivated and goal driven, able to find what needs to be done and do it.

Qualities that will set you up for success

  • Thinking outside of the box to respectfully challenge teammates and managers in pursuit of excellence.
  • Strong sense of urgency with an action-oriented mindset.
  • Ability to collaborate and adapt to shifting priorities as business needs evolve.
  • Comfort with asynchronous communication including Slack, email, and Zoom.

What you will have working here

Capgemini offers health insurance from the first days, regardless of the probationary period, Christmas holidays from December 25 to December 31, and cooperation with the Superhumans Center and Veteran HUB.

Capgemini is a global business and technology transformation partner with 340,000 team members in more than 50 countries. It delivers end-to-end services and solutions across strategy, design, engineering, AI, generative AI, cloud, and data.

Similar Job Openings