Application Security Engineer

Andersen Ukraine 2025-08-01 21:02:46

Описание


Summary

The IT company Andersen invites Application Security Engineer to join our team and contribute to the development of our company while maintaining its unique culture and atmosphere.

Andersen is a European pre-IPO software development company uniting over 3,500 top-class professionals: developers, architects, testers, analysts, and other specialists. Operating in the market since 2007, we have developed 1,000+ outstanding projects for the Financial sector, Healthcare, Logistics, Travel and Hospitality, Telecom, Automotive industry, etc.


Responsibilities

Leading secure development initiatives, integrating security into the SDLC through threat modeling, secure code reviews, and CI/CD pipeline security controls (SAST/DAST/SCA). Overseeing penetration testing engagements, coordinating internal red team exercises and external assessments to identify vulnerabilities in web/mobile apps, APIs, and cloud services. Mentoring junior AppSec engineers and developers, providing training on secure coding practices (OWASP Top 10, SANS 25) and remediation guidance for critical flaws. Defining and enforcing security standards, ensuring compliance with industry frameworks (NIST SSDF, ISO 27034) while balancing business agility and risk tolerance.

Requirements

Experience in Application Security, penetration testing, or DevSecOps, combining strong technical expertise with team leadership skills for 5+ years. Possession of advanced offensive security certifications such as OSCP, OSWE, or GWAPT, along with secure coding credentials like CSSLP or CASE. A degree in Computer Science, Cybersecurity, or Software Engineering. A background in software development is highly valued. Strong advocate of shift-left security, with hands-on experience integrating tools like Semgrep, SonarQube, and Checkmarx into CI/CD pipelines. Experience leading purple team exercises in collaboration with developers to simulate real-world attacks (e.g., API abuse, SSRF) and improve secure coding practices. Deep understanding of cloud-native AppSec, including securing serverless applications, containers (Kubernetes), and Infrastructure as Code (Terraform) against misconfigurations and supply chain threats. Ability to communicate technical risks to executive stakeholders, translating them into business impact to support security investment decisions. Active participation in bug bounty platforms (e.g., HackerOne, Bugcrowd), CTF competitions, and ongoing research into emerging threats such as AI-generated code vulnerabilities and WebAssembly security. A hybrid hacker-developer mindset: capable of exploiting vulnerabilities (e.g., using Burp Suite) and reviewing pull requests for security anti-patterns. Level of English – from Upper- Intermediate+ and above.

Reasons to join us

Experience in teamwork with leaders in FinTech, Healthcare, Retail, Telecom, and others. Andersen cooperates with such businesses as Samsung, Siemens, Johnson & Johnson, BNP Paribas, Ryanair, Mercedes, TUI, Verivox, Allianz, T-Systems, etc..The opportunity to change the project and/or develop expertise in an interesting business domain.Job conditions – you can work both fully remotely and from the office or can choose a hybrid variant.Guarantee of professional, financial, and career growth! The company has introduced systems of mentoring and adaptation for each new employee.The opportunity to earn up to an additional 1,000 EUR per month, depending on the level of expertise, which will be included in the annual bonus, by participating in the company's activities.Access to the corporate training portal, where the entire knowledge base of the company is collected and which is constantly updated.Bright corporate life (parties / pizza days / PlayStation / fruits / coffee / snacks / movies).Certification compensation (AWS, PMP, etc).Referral program.English courses.Private health insurance and compensation for sports activities.

Join us!

Apply to vacancy

Похожие вакансии

  • Safety & Security Officer (For nationals only)

    Save the Children , , 14 дней назад
    ... will insure the systematic application of safety and security management policies and procedures in ... to their safety and security concerns. Monitoring, Reporting and Evaluation • ... requested by the Safety & Security Coordinator within the context of ...
    ua.talent.com
  • Senior Application Security Engineer (#3708)

    N-iX , , месяц назад
    ... are looking for an experienced Application Security Engineer to join our clients project. ... North America and Europe. The Application Security Engineer will be participating in building the new application solutions, reviewing the architecture and ...
    ua.talent.com
  • Senior Security Engineer

    Softjourn 10 часов назад
    ... to date with the latest security and technology developments;Maintain the security appliances and services;Provide an active role in defining security practices for new and ongoing ...
    softjourn.com
  • Application Security Engineer

    Andersen Ukraine 16 дней назад
    ... IT company Andersen invites a Application Security Engineer to join its team for ... payment platform.RequirementsExperience as an Application Security Engineer for 3-5 years. Proven ...
    people.andersenlab.com
  • Security Infrastructure Engineer / DevSecOps (Kyiv,Lviv)

    LotusFlare, Inc. , Drohobych, 13 дней назад
    ... via getnomad.app. Overview: As Security Engineer on the Infrastructure Team at ... intrusion detection solutions and web application firewalls L7 proxies Experience in Server Application security concepts and security controls Hands-on experience with ...
    ua.talent.com
  • Senior Security Engineer

    Ciklum , , 9 дней назад
    ... looking for a Senior Security Engineer to join our team full ... role: As a Senior Security Engineer, become a part of a ... Define and refine security workflows and incident response strategies Design and implement advanced security use-cases Build and automate ...
    ua.talent.com
  • Field Security Officer - Ukraine (national position in Ukraine)

    iMMAP , Lviv, день назад
    ... is to help the Country Security Advisor (CSA) with all safety and security issues, as they relate to ... policies.• The FSO will conduct security induction briefs for new staff ... reporting line to the Global Security Advisor.• The FSO will stand ...
    ua.talent.com
  • Field Security Officer - Ukraine (national position in Ukraine)

    iMMAP , Lviv, 8 дней назад
    ... is to help the Country Security Advisor (CSA) with all safety and security issues, as they relate to ... policies.• The FSO will conduct security induction briefs for new staff ... reporting line to the Global Security Advisor.• The FSO will stand ...
    ua.talent.com
  • Cyber Security expert (SAP related) (#3806)

    N-iX , , 19 дней назад
    ... + years) working as a Cyber Security expert; Experience in Security Bridge application; Configuration, maintenance & monitoring of alerts;  ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Kyiv, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Sokil'nyky, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Kyiv, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Dnipro, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Dnipro, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Odesa, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Kharkiv, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Kharkiv, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Dnipro, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Kharkiv, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Sokil'nyky, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Odesa, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Kyiv, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Site Reliability Engineer ID38563 ($3,000 signing bonus)

    AgileEngine , Sokil'nyky, день назад
    ... THE ROLEWere looking for GRC Engineer to join our team and play a critical role in enhancing the security posture of our production. In ... Disaster Recovery Plans (DRP).- SaaS Application Security: Drive the migration and integration ...
    ua.talent.com
  • Middle Application Security Engineer

    SoftServe , , день назад
    ... -leading companies and experts in application security, security engineering and governance, risk, and ...
    ua.talent.com
  • Information Security Engineer

    Andersen Ukraine 16 дней назад
    ... IT company Andersen invites Information Security Engineer to join our team and ... a progression from analyst to engineer for 5+ years. Strong hands-on skills in malware analysis, digital forensics, and offensive security. Certifications such as GCIH, GCFA, ...
    people.andersenlab.com
  • Information Security Compliance Specialist

    Miratech , , месяц назад
    ... , audit, monitor, and improve information security across Miratech’s internal systems (back ... well as supplier and provider security (supply chain).Lead internal security projects and digital transformation initiatives, ...
    ua.talent.com
  • Cloud Security Specialist (#3709)

    N-iX , , месяц назад
    ... seeking an experienced Cloud Security Specialist to join a global ... policies. Develop and maintain security documentation, procedures, and guidelines. Requirements:  ... Architect or Professional Cloud Security Engineer). We offer*: Flexible working format - ...
    ua.talent.com
  • Security Information Event Manager Engineer

    Zoom , Dnipro, 4 дня назад
    ... , detect security events and enable security incident response.About the Team:As a Zoom SIEM Engineer, you will work in several security technology categories including Big Data ... data, application, systems and network security concepts and the tools used ...
    ua.talent.com
  • Security Systems Engineer in Security Team (#1010)

    Namecheap , , 9 дней назад
    ... Relevant certifications (e.g., CompTIA Security+, GSEC) Master’s degree in Computer ... involved into:  Configure and maintain security systems Participate in the design ... from various sources Perform regular security audits (e.g., workstation updates, ...
    ua.talent.com
  • Security Coordinator

    Première Urgence Internationale , , 25 дней назад
    ... humanitarian sector. An experience in security management or in a similar ... have a detailed knowledge of security information, a high standard of ... contact outside of the project Security Section. Languages English has no ...
    ua.talent.com
  • Security Operations Engineer

    Zoom , Dnipro, месяц назад
    ... , detect security events and enable security incident response.About the Team:As a Zoom SIEM Engineer, you will work in several security technology categories including Big Data ... data, application, systems and network security concepts and the tools used ...
    ua.talent.com
  • Information Security Risk Manager

    JTI 16 дней назад
    ... now  Learn more: jti.comInformation Security Risk ManagerPosition Purpose:We are seeking an experienced Information Security Risk Manager to play a ... cross-functional teams and communicating security concepts to non-technical stakeholders. ...
    jobs.jti.com
  • Head of Security

    Quantum- Systems GmbH , Kyiv, 6 дней назад
    ... and lead a multi-layered security team (internal and or external ... a plusBackground in military or security services — an advantageWhy Quantum-Systems: ...
    ua.talent.com
  • Head of Security

    Quantum- Systems GmbH , Kyiv, 6 дней назад
    ... and lead a multi-layered security team (internal and or external ... a plusBackground in military or security services — an advantageWhy Quantum-Systems: ...
    ua.talent.com
  • Application Engineer

    Linde Gas Ukraine , Dnipro, 11 дней назад
    ... applications and technologies LindeAs the Application Sales Engineer Manufacturing your target will be ... to identify those chances, match them with the best fitting gas, application or technology and develop ...
    ua.talent.com
  • Senior Security Management

    Customertimes Poland, Portugal, Croatia, Bosnia and Herzegovina, Montenegro, Serbia, Romania, Bulgaria, North Macedonia, Albania, Greece, Cyprus, Remote 10 часов назад
    ... and other relevant SAP security tools. Proven track record in ... . Participate actively in SAP security audits, implementing necessary security measures and addressing any deficiencies ... teams to implement SAP security strategies that align with business ...
    customertimes.com
  • Community-Based Protection Associate

    UNHCR , Kharkiv, 12 дней назад
    ... homes as soon as the security situation allows. The protection needs ... incumbent supports staff and the application of community-based protection standards, ... work in a highly dynamic security environment where unexpected events occur ...
    ua.talent.com
  • Junior/Middle Security Program Manager

    Raiffeisen Bank Ukraine , Kyiv, 2 дня назад
    ... Do• Follow up on all security program activities and action items.• ... penetration tests or assist with security testing.• Write or review source code.• Configure or manage security tools at a technical level.• ...
    ua.talent.com
  • Senior External Relations Assistant

    UNHCR , Kharkiv, 12 дней назад
    ... serious risks to their physical security and integrity, particularly in eastern ... homes as soon as the security situation allows. The protection needs ... work in a highly dynamic security environment where unexpected events occur ...
    ua.talent.com

Карточка вакансии:

  • Должность Application Security Engineer
  • Размещено: 2025-08-01 21:02:46
  • Город Ukraine
  • Зарплата:
  • Компания: Andersen