Application Security Engineer

Andersen Ukraine 2025-10-25 21:03:18

Описание


Summary

The IT company Andersen invites Application Security Engineer to join our team and contribute to the development of our company while maintaining its unique culture and atmosphere.

Andersen is a European pre-IPO software development company uniting over 3,500 top-class professionals: developers, architects, testers, analysts, and other specialists. Operating in the market since 2007, we have developed 1,000+ outstanding projects for the Financial sector, Healthcare, Logistics, Travel and Hospitality, Telecom, Automotive industry, etc.


Responsibilities

Leading secure development initiatives, integrating security into the SDLC through threat modeling, secure code reviews, and CI/CD pipeline security controls (SAST/DAST/SCA). Overseeing penetration testing engagements, coordinating internal red team exercises and external assessments to identify vulnerabilities in web/mobile apps, APIs, and cloud services. Mentoring junior AppSec engineers and developers, providing training on secure coding practices (OWASP Top 10, SANS 25) and remediation guidance for critical flaws. Defining and enforcing security standards, ensuring compliance with industry frameworks (NIST SSDF, ISO 27034) while balancing business agility and risk tolerance.

Requirements

Experience in Application Security, penetration testing, or DevSecOps, combining strong technical expertise with team leadership skills for 5+ years. Possession of advanced offensive security certifications such as OSCP, OSWE, or GWAPT, along with secure coding credentials like CSSLP or CASE. A degree in Computer Science, Cybersecurity, or Software Engineering. A background in software development is highly valued. Strong advocate of shift-left security, with hands-on experience integrating tools like Semgrep, SonarQube, and Checkmarx into CI/CD pipelines. Experience leading purple team exercises in collaboration with developers to simulate real-world attacks (e.g., API abuse, SSRF) and improve secure coding practices. Deep understanding of cloud-native AppSec, including securing serverless applications, containers (Kubernetes), and Infrastructure as Code (Terraform) against misconfigurations and supply chain threats. Ability to communicate technical risks to executive stakeholders, translating them into business impact to support security investment decisions. Active participation in bug bounty platforms (e.g., HackerOne, Bugcrowd), CTF competitions, and ongoing research into emerging threats such as AI-generated code vulnerabilities and WebAssembly security. A hybrid hacker-developer mindset: capable of exploiting vulnerabilities (e.g., using Burp Suite) and reviewing pull requests for security anti-patterns. Level of English – from Upper- Intermediate+ and above.

Reasons to join us

Experience in teamwork with leaders in FinTech, Healthcare, Retail, Telecom, and others. Andersen cooperates with such businesses as Samsung, Siemens, Johnson & Johnson, BNP Paribas, Ryanair, Mercedes, TUI, Verivox, Allianz, T-Systems, etc..The opportunity to change the project and/or develop expertise in an interesting business domain.Job conditions – you can work both fully remotely and from the office or can choose a hybrid variant.Guarantee of professional, financial, and career growth! The company has introduced systems of mentoring and adaptation for each new employee.The opportunity to earn up to an additional 1,000 EUR per month, depending on the level of expertise, which will be included in the annual bonus, by participating in the company's activities.Access to the corporate training portal, where the entire knowledge base of the company is collected and which is constantly updated.Bright corporate life (parties / pizza days / PlayStation / fruits / coffee / snacks / movies).Certification compensation (AWS, PMP, etc).Referral program.English courses.Private health insurance and compensation for sports activities.

Join us!

Apply to vacancy

Похожие вакансии

  • Senior Security Officer

    UNOPS , Kyiv, 3 дня назад
    ... Managers on all safety and security-related matters, including the potential ... in the domain of operations; security , physical security Draft and regularly update the Security Plan and its annexes Revise ...
    ua.talent.com
  • Cyber Security DevOps Manager

    JTI 18 часов назад
    ... foundation in cloud and container security, Secure SDLC, application security tooling (e.g., SAST, DAST, ... , such as static and dynamic application security testing (SAST DAST), and software ...
    jobs.jti.com
  • System Security Engineer

    Playtech , Kyiv, 11 дней назад
    ... an enthusiastic and experienced System Security Engineer to join our dynamic team. ... at the end of the application page (under your message to the hiring manager).Meet the TeamGlobal System Security Team – PlaytechJoin a close-knit, ...
    ua.talent.com
  • System Security Engineer

    Playtech , Kyiv, 11 дней назад
    ... -on experience as an Information Security Expert Engineer (we value both strong technical ... at the end of the application page (under your message to the hiring manager).Meet the TeamGlobal System Security Team – PlaytechJoin a close-knit, ...
    ua.talent.com
  • Application Security Engineer

    Andersen Ukraine 18 часов назад
    ... IT company Andersen invites a Application Security Engineer to join its team for ... payment platform.RequirementsExperience as an Application Security Engineer for 3-5 years. Proven ...
    people.andersenlab.com
  • Senior Security Engineer

    Softjourn 18 часов назад
    ... to date with the latest security and technology developments;Maintain the security appliances and services;Provide an active role in defining security practices for new and ongoing ...
    softjourn.com
  • Intermediate Security Engineer - OP01910

    Dev.Pro , , 12 дней назад
    ... talented, disciplined, and responsible Intermediate Security Engineer to join our global team at Dev.Pro. In this role, you’ll work on diverse projects across cloud, application, and infrastructure security, collaborating with skilled professionals to ...
    ua.talent.com
  • Intermediate Security Engineer - OP01910

    Dev.Pro , Lviv, 12 дней назад
    ... talented, disciplined, and responsible Intermediate Security Engineer to join our global team at Dev.Pro. In this role, you’ll work on diverse projects across cloud, application, and infrastructure security, collaborating with skilled professionals to ...
    ua.talent.com
  • Intermediate Security Engineer - OP01910

    Dev.Pro , Kyiv, 12 дней назад
    ... talented, disciplined, and responsible Intermediate Security Engineer to join our global team at Dev.Pro. In this role, you’ll work on diverse projects across cloud, application, and infrastructure security, collaborating with skilled professionals to ...
    ua.talent.com
  • DevSecOps Engineer

    Doctify , , месяц назад
    ... seeking a hands-on DevSecOps Engineer to join our agile and collaborative team. You will be responsible for embedding security into every stage of our ... passionate about helping shape the security culture and practices of a ...
    ua.talent.com
  • Information Security Engineer

    Andersen Ukraine 18 часов назад
    ... IT company Andersen invites Information Security Engineer to join our team and ... a progression from analyst to engineer for 5+ years. Strong hands-on skills in malware analysis, digital forensics, and offensive security. Certifications such as GCIH, GCFA, ...
    people.andersenlab.com
  • InfoSec (DevSecOps) Engineer

    LoopMe , Dnipro, месяц назад
    ... strong background in information security, familiarity with cloud environments like ... reviews). Ensure compliance with security standards (ISO IEC 27001, NIST, ... .g., CISSP, CISM, CompTIA Security+, GCP Security Engineer) are a plus.  Excellent communication ...
    ua.talent.com
  • InfoSec (DevSecOps) Engineer

    LoopMe , Lviv, месяц назад
    ... strong background in information security, familiarity with cloud environments like ... reviews). Ensure compliance with security standards (ISO IEC 27001, NIST, ... .g., CISSP, CISM, CompTIA Security+, GCP Security Engineer) are a plus.  Excellent communication ...
    ua.talent.com
  • Cybersecurity and Digital Resilience Strategist

    CRDF Global , Kyiv, 10 дней назад
    ... and Regulatory Management: Recommend security practices to the beneficiary that ... note, mitigation strategies, and security policy frameworks. Strong conceptual skills ... think like an attacker (offensive security mindset). Expertise in risk management. ...
    ua.talent.com
  • INFORMATION SECURITY RISK MANAGER

    JTI 18 часов назад
    ... now  Learn more: jti.comInformation Security Risk ManagerWe are seeking an experienced Information Security Risk Manager to play a ... cross-functional teams and communicating security concepts to non-technical stakeholders. ...
    jobs.jti.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Kharkiv, 21 день назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Sokil'nyky, 21 день назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Odesa, 21 день назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Kyiv, 21 день назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Dnipro, 20 дней назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Kharkiv, 24 дня назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Sokil'nyky, 24 дня назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Odesa, 24 дня назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Odesa, 25 дней назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Dnipro, 24 дня назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Sokil'nyky, 25 дней назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Dnipro, 25 дней назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Kyiv, 25 дней назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Kyiv, 24 дня назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • AWS/Security Networking Engineer (Senior/Lead) ID42040

    AgileEngine , Kharkiv, 25 дней назад
    ... leaders in areas like application development and AI ML, and ... as a Senior AWS Security Networking Engineer to shape secure, scalable cloud ... -on experience with AWS security services (IAM, KMS, GuardDuty, Security Hub, WAF, Shield, etc.); understanding ...
    ua.talent.com
  • Junior InfoSec (DevSecOps) Engineer

    LoopMe , Dnipro, месяц назад
    ... Unix administration. Understanding of information security principles (encryption, authentication, access control) ... motivation to grow in information security. Benefits: Competitive compensation package Flexible ...
    ua.talent.com
  • Static Security Officer

    GardaWorld , Kiev, 29 дней назад
    ... years full time service; Security experience: a minimum of 3 years in the security sector, and preferably with diplomatic ... ensure the safety and security of all client staff and ... are as follows: Ensuring the security of client buildings and staff ...
    ua.talent.com
  • Application Engineer

    Linde Gas Ukraine , Dnipro, 3 дня назад
    ... applications and technologies LindeAs the Application Sales Engineer Manufacturing your target will be ... to identify those chances, match them with the best fitting gas, application or technology and develop ...
    ua.talent.com
  • Senior Security Management

    Customertimes Poland, Portugal, Croatia, Bosnia and Herzegovina, Montenegro, Serbia, Romania, Bulgaria, North Macedonia, Albania, Greece, Cyprus, Remote 18 часов назад
    ... and other relevant SAP security tools. Proven track record in ... . Participate actively in SAP security audits, implementing necessary security measures and addressing any deficiencies ... teams to implement SAP security strategies that align with business ...
    customertimes.com
  • Information security consultant / IT audit manager

    TechMagic , Lviv, месяц назад
    ... providing expert guidance on their security and compliance journeys. This is ... : Strong knowledge of cloud security best practices on AWS Azure ... , taking ownership of their security roadmaps, risk registers, security awareness programs, and reporting to ...
    ua.talent.com
  • Information security consultant / IT audit manager

    TechMagic , , месяц назад
    ... providing expert guidance on their security and compliance journeys. This is ... : Strong knowledge of cloud security best practices on AWS Azure ... , taking ownership of their security roadmaps, risk registers, security awareness programs, and reporting to ...
    ua.talent.com
  • IT Engineer-Internship

    JTI 18 часов назад
    ... infrastructure solutions, maintains adherence to security protocols and business continuity plans, ... systems.servers, and virtual environments.-Security & Data: Knowledge of IT security best practices, backup, and disaster ...
    jobs.jti.com
  • Cyber Security Engineer on-site in Oman

    Andersen Ukraine 18 часов назад
    ... company Andersen invites a Cyber Security Engineer to join its team for ... for each project phase. Developing security policies for the Super App ... Detection and Response (EDR), and Application Security practices (SAST DAST). Familiarity with ...
    people.andersenlab.com
  • Static Security Officer

    GardaWorld , Kyiv, 5 дней назад
    ... to ensure the safety and security of all client staff and ... are as follows: Ensuring the security of client buildings and staff ... external patrols to ensure the security of the buildings.Immediately reporting ...
    ua.talent.com

Карточка вакансии:

  • Должность Application Security Engineer
  • Размещено: 2025-10-25 21:03:18
  • Город Ukraine
  • Зарплата:
  • Компания: Andersen