Applications Security Engineer III w Warszawa, Polska - Jobeax
Opis oferty
Applications Security Engineer III w Warszawa, Polska
HybrydowoPołączenie biura i pracy zdalnej
145196 zł PLN - 223379 zł PLN
Poland, Warszawa
Applications Security Engineer III w Warszawa, Polska is listed on Jobeax. Browse 110,000+ vacancies available.
Brightstar is an innovative, forward-thinking global leader in lottery that builds on our renowned expertise in delivering secure technology and producing reliable, comprehensive solutions for our customers. As a premier pure play global lottery company, our best-in-class lottery operations, retail and digital solutions, and award-winning lottery games enable our customers to achieve their goals, fulfill player needs and distribute meaningful benefits to communities. We have a longstanding commitment to Responsible Gaming (RG) that is engrained within our core business and the products we offer to customers and players worldwide. Brightstar has a well-established local presence and is a trusted partner to governments and regulators around the world, creating value by adhering to the highest standards of service, integrity, and responsibility. Brightstar has approximately 6,000 employees. For more information, please visit .
Overview
We are seeking an Application Security Engineer to drive the strategy, implementation, and maturity of our application security program.
They will lead initiatives across the secure software development lifecycle, integrating application security best practices and tooling into engineering workflows, and partnering closely with security, DevOps, and engineering leadership.
This is a high-impact role that requires technical depth, leadership capability, and a passion for scaling security across product teams.
Responsibilities
Participate in application security program, including tool selection, policy enforcement, developer engagement, and risk reporting.
Own integration of AppSec tooling into CI/CD pipelines to enable scalable, developer-friendly security controls.
Provide architectural guidance and secure design recommendations during development planning.
Oversee deployment and tuning of tools for SAST, SCA, secrets management, IaC scanning, and DAST (e.g., Tenable Web App Scanning).
Partner with product teams to embed secure coding practices, review threat models, and triage high-impact vulnerabilities.
Collaborate with GRC/compliance teams to ensure alignment with relevant standards (e.g., OWASP, FedRAMP).
Mentor and support other AppSec engineers and champion a security-first development culture.
Evaluate IAST and runtime protections as part of continuous improvement efforts.
Develop KPIs to measure security posture and tooling efficacy.
Qualifications
5–10 years of experience in Application Security or Secure Software Development.
Proven experience leading application security programs in a CI/CD-heavy engineering environment.
Deep expertise in securing cloud-native applications, and integrating AppSec tools such as Semgrep, Mend, GitHub Advanced Security, HCL AppScan, or equivalent.
Hands-on experience with CI/CD integrations using GitHub Actions, GitLab CI, Jenkins, or similar.
Strong communication and influencing skills; able to drive security adoption across diverse teams.
Knowledge of DAST tools (e.g., Tenable Web App Scanning) and Pentest methodologies (Burp Suite, Kali Linux).
Experience with security in modern SDLC environments using containers, microservices, and APIs.
IAST experience is a plus.
Success Profile
Building collaborative relationships
Decision making
Drive results
Foster innovation
Personal energy
Self-leadership
#LI-PZ1 #LI-Hybrid
This information reflects Brightstar Lottery’s good-faith estimate of compensation for this position at the time of publication. Actual compensation will be determined in accordance with the applicable collective agreement and internal compensation policies. Factors that we consider include, but are not limited to, role, career level, performance, skills, level of expertise, experience, location, market competitiveness, and internal equity. The estimated starting compensation range is 145,196 zł – 223,379 zł. The Company will comply with all local pay requirements and collective bargaining agreements, where applicable.
Other Benefits Offered:
Paid time off
Health insurance, life insurance, and disability insurance
Opportunities to volunteer your time to company-driven initiatives, employee networks or organizations of your choice
Variety of well-being programs
Retirement benefits
Additional benefits available depending on the seniority of the role
This position is governed by collective bargaining agreement, which regulates the main terms and conditions of employment, including minimum salary levels, classification, working hours, leave, and other employment rights.
Our hiring process is conducted in line with principles of pay transparency and equal pay. We do not request or rely on candidates’ salary history during the selection process.
All Brightstar employees have a role in information security. Annual training will be assigned and required as appropriate.
... Requirements: Bachelor’s degree in Computer Science, Software Engineering, or a related technical field is a plus 4–5 years of commercial experience as a Software Engineer Strong knowledge of C# and the .NET platform (.NET Framework, .NET Core, .NET 6+) Experience in developing and maintaining desktop applications (WinForms and/or ...
IAM Engineer (PKI & Identity Infrastructure) About the role We are looking for an experienced IAM Engineer specializing in Public Key Infrastructure (PKI) and Identity Infrastructure to join a global IT organization. In this role, you will be responsible for designing, implementing, and maintaining enterprise PKI services ...
... cooperation with other development teams to improve overall testing processes Requirements At least 3 years of experience as a software tester of web and mobile applications Proficiency in API testing tools such as Postman and Swagger Experience with SQL databases and executing queries Familiarity with defect management tools ...
... Poszukujemy dojrzałej biznesowo i samodzielnej osoby, która będzie aktywnie pozyskiwać i sprzedawać usługi w takich obszarach jak: integracja infrastruktury IT, security, network, cloud & data center, SOC/NOC. Praca w elastycznym modelu hybrydowym we Wrocławiu lub Gdyni. Opis zadań: - Aktywne pozyskiwanie nowych klientów na ...
... and team members globally. Provide insights and contribute to the growth of the Offensive Security business. Participate in the development of new Offensive Security practice services and tools. Lead customer engagements. Present penetration testing and security assessment results to clients. Requirements Must have: Bachelor’s ...
... for our partners, we are currently looking for: Cyber Security Case Manager Responsibilities: Lead and coordinate investigation and remediation of identified security deficiencies Take ownership of assigned security cases from identification through remediation and closure Assess security deficiencies and associated risks ...
... expertiseWork within Agile environments to deliver continuous improvements to infrastructure and pipelines Requirements 5+ years of experience in IT application engineering with a focus on DevOps, SRE, or Platform EngineeringExperience in Linux system administration and supporting applications in Kubernetes-based environmentsUnderstanding ...
... Management About the project, As Case Manager, the candidate will be responsible for leading and driving investigation and remediation coordination of significiant security deficiencies found during Offensive Security Tests and from Operational Security work., , Case Manager’s responsibility is that the security deficiencies and ...
Poszukujemy doświadczonego Senior IAM / Security Architecta z praktycznym, popartym projektami doświadczeniem w zakresie projektowania i wdrażania rozwiązań tożsamościowych w środowiskach enterprise. Osoba na tym stanowisku będzie odpowiedzialna za przygotowanie rekomendacji architektury dla platformy, której kluczowym ...
... architecture and implementation Ensure security design compliance with financial regulations such as PSD2, SWIFT CSP, PCI DSS and local requirements Support engineering teams during implementation and resolve security-related technical challenges Requirements 7+ years of experience in network or security architecture roles, ...
... overall security posture of the organization, working closely with development teams to identify and address potential security vulnerabilities in software applications. Responsibilities Conduct secure code reviews to identify security vulnerabilities and ensure adherence to security standardsPerform security testing activities ...
... overall security posture of the organization, working closely with development teams to identify and address potential security vulnerabilities in software applications. Responsibilities Conduct secure code reviews to identify security vulnerabilities and ensure adherence to security standardsPerform security testing activities ...
... overall security posture of the organization, working closely with development teams to identify and address potential security vulnerabilities in software applications. Responsibilities Conduct secure code reviews to identify security vulnerabilities and ensure adherence to security standardsPerform security testing activities ...
We are seeking an experienced Atlassian Expert with strong security expertise to design, implement, and optimize enterprise-grade Atlassian platforms. In this role, you will lead complex implementation projects, architect secure integrations, and provide technical leadership to drive enterprise transformations and Agile/ITSM ...
... architecture and implementation Ensure security design compliance with financial regulations such as PSD2, SWIFT CSP, PCI DSS and local requirements Support engineering teams during implementation and resolve security-related technical challenges Requirements 7+ years of experience in network or security architecture roles, ...
... from scanning tools and security advisories (e.g., CVE-based data)., Manage the full remediation lifecycle: planning → execution → verification., Partner with engineering teams to implement fixes across OS, middleware, applications, containers, and cloud services., Prioritise remediation using risk-based factors (exploitability, ...
... next-generation software-defined vehicles. In this role, you will be responsible for the high-quality implementation of an Agentic Framework to support our AI applications. You will be responsible for writing the production-grade code that allows our AI applications to interact with millions of vehicles in real-time. We need ...
As a DevOps Engineer, you will hold responsibility for managing our cloud and on premises infrastructure ecosystems. You will help AXA’s drive on their strategic migration away from legacy monoliths to next-generation, cloud-native platforms, primarily in the area of Microsoft Azure and Kubernetes. Ensure developers can ...