lime credit group

Главный инженер по информационной безопасности

Анализ защищенности информационных систем и бизнес-процессов.

lime credit group · На сервисе с: 29.09.26 12:24

Зарплата не указанаРоссияНовосибирскОфис

Чем предстоит заниматься:

  • Анализ защищенности информационных систем и бизнес-процессов.
  • Согласование проектной документации при внедрении новых информационных систем и СЗИ.
  • Участие в оценке рисков и выработке мероприятий по минимизации рисков информационной безопасности.
  • Организация мониторинга, анализ событий информационной безопасности.
  • Выявление, реагирование, расследование и координация действий работников по инцидентам информационной безопасности.
  • Подготовка отчетов для руководства.
  • Обучение персонала компании действиям по обнаружению, устранению последствий и предотвращению инцидентов информационной безопасности.
  • Разработка планов реагирования на инциденты информационной безопасности (playbook-и).

Что для нас важно:

  • Знание основы построения ИТ-инфраструктуры.

  • Навыки работы с ОС Windows и Linux.

  • Понимание принципов работы основных классов СЗИ (NGFW, SIEM, АВПО, IDS, DLP, WAF и др.) и актуальных угроз.

  • Понимание инцидент-менеджмента, принципов компьютерной и сетевой безопасности, безопасности web- приложений.

  • Опыт работы, установки, настройки систем мониторинга и управления событиями безопасности.

  • Понимание основ Cyber Kill Chain, MITRE ATT&CK в части векторов атак и защиты от них.

Мы гарантируем:

  • Атмосферу безопасности. Так как мы предлагаем трудоустройство в полном соответствии с ТК РФ;
  • График работы 5\2 с 09:00 до 18:00 (сб,вс - выходные);

  • Чувство устойчивости в настоящем и будущем, даже когда времена вокруг нас меняются. Помогут тебе в этом наши оздоровительные и финансовые бенефиты;

  • Комфорт в деталях: отсутствие дресс-кода, оборудованное рабочее место и возможность отдыха в неформальной обстановке.

  • Динамику профессионального развития.

Похожие вакансии Кибербезопасность

Сайты компаний
P

Application Security Engineer - Senior

plataНа сервисе с: 03.10.26 17:40↑ Вакансия с автоподнятием
Зарплата не указанаВесь мир

We are looking for an Application Security Engineer to join our Information Security team.

The Information Security team is responsible for protecting Plata’s products, systems, and data by embedding security throughout the technology lifecycle. We work closely with engineering teams to identify and mitigate security risks, strengthen application defenses, and ensure security is integrated into every stage of software development.

As an Application Security Engineer, you will serve as a key link between development and security teams, designing, implementing, and maintaining robust application security controls. You’ll help embed security across the entire software development lifecycle — from design and development to testing and deployment — while continuously improving our application security practices.

Challenges that await you:

  • Collaborate with Dev & Ops teams. Guide secure coding practices, participate in code reviews, and embed security seamlessly into the SDLC
  • Conduct security reviews & threat modeling. Analyze application architecture, define threat models, and drive proactive risk identification
  • Integrate security tools. Deploy and manage SAST, DAST, IAST, RASP, and SCA tools within CI/CD pipelines to automate early detection and remediation
  • Handle security incidents
  • Implement “shifting left” strategies, enforce continuous testing, fast remediation, and embed security culture across teams
  • Educate and train. Conduct workshops to elevate developer security awareness and promote adherence to OWASP, ASVS, and secure design standards

What makes you a great fit:

  • Proficient in programming languages (web/mobile)
  • Strong understanding of web architectures (microservices)
  • Deep knowledge of OWASP Top 10, threat modeling, and security testing frameworks
  • Familiarity with security tools such as ZAP, Dependency-Track, Burp
  • Strong analytical skills with precise and thorough attention to detail

Your bonus skills:

  • Security certifications (OSCP, OSWE, GWAPT, GCPN)
  • Contributions to or experience with bug bounty or ethical-hacking programs
  • SaaS or cloud-native environments experience
  • Familiarity with Kubernetes or container security

Our ways of working:

  • Innovative Spirit: A commitment to creativity and groundbreaking solutions
  • Honest Feedback: valuing open, transparent communication
  • Supportive Team: a strong, collaborative community
  • Celebrating Achievements: recognizing our wins together
  • High-Tech Environment: a team full of smart and revolutionary people who date to challenge the status quo of incumbent finances

Our benefits:

  • Relocation support to Kazakhstan, Cyprus, Serbia or Georgia with full visa & permit support to the employee and family
  • Flexible work from one of our offices or remote
  • Healthcare Coverage
  • Education Budget: Language lessons, professional training and certifications
  • Wellness Budget: Mental health and fitness activity reimbursements
  • Vacation policy: 20 days of annual leave and paid sick leave
Сайты компаний
D

Security Operation Engineer

DBeaverНа сервисе с: 03.10.26 15:39↑ Вакансия с автоподнятием
Зарплата не указанаВенгрияBudapestГибрид

At DBeaver, our vision is to seamlessly integrate data into the routines and decision-making processes of every professional. With a dedicated community of over 10+ million active users worldwide who constantly inspire us, our open-source approach fuels our innovation. Our passion for databases and dedication to crafting exceptional management tools has driven us to become the leading provider of cross-platform enterprise data and database software.

We are looking for a Security Operation Engineer to join our platform and infrastructure development team. This role focuses on cloud infrastructure, CI/CD security, vulnerability management, and enabling engineering teams to effectively build secure products. 

We love well-structured processes and live in a work-life balance mode.

Location: This role can be based either remotely in Europe or hybrid in our offices in Belgrade, Serbia, or Budapest, Hungary.

What You'll Do

  • Design, implement, and maintain secure cloud and on-premise infrastructure.
  • Integrate security controls into CI/CD pipelines and development workflows.
  • Automate security checks, compliance validation, and vulnerability management processes.
  • Secure containerized environments and Kubernetes clusters.
  • Implement and maintain secrets management, identity, and access control solutions.
  • Monitor infrastructure and applications for security threats and vulnerabilities.
  • Collaborate closely with developers, QA engineers, and platform teams to promote DevSecOps best practices.
  • Participate in security reviews, architecture discussions, and threat modeling activities.
  • Contribute to security standards, policies, and technical documentation.

What You Bring

  • 3+ years of experience in DevOps, DevSecOps, Cloud Security, or Infrastructure Engineering.
  • Hands-on experience with Docker and Kubernetes.
  • Experience working with cloud platforms such as AWS, Azure, or GCP.
  • Deep understanding of CI/CD platforms such as Jenkins or similar.
  • Experience working with infrastructure tools in the form of code, such as Terraform
  • Understanding of application and infrastructure security principles.
  • Experience implementing vulnerability scanning, dependency management, and container security controls.
  • Knowledge of networking fundamentals, IAM, secrets management, and secure authentication mechanisms.
  • Knowledge of English (B2 level).

Bonus Skills

  • Knowledge of security frameworks and standards such as ISO 27001 or NIST.
  • Experience with SIEM, monitoring, and observability platforms.
  • Security certifications such as AWS Security Specialty, CKS, CISSP, CCSP, or similar.
  • Experience contributing to open-source projects.
  • Understanding of database security concepts and data protection practices.

We Use the Following Tools

  • AWS
  • Kubernetes
  • Docker
  • Terraform 
  • GitHub
  • Prometheus
  • Grafana
  • ELK Stack

About DBeaver

DBeaver Corporation provides a full-featured data solution that easily adapts to users' needs, from open-source tools to all-in-one enterprise software. Our mission is to make it possible for all kinds of people and organizations to leverage all kinds of data.

We are committed to creating a diverse and inclusive workplace where everyone feels welcomed and valued.

Сайты компаний
D

Security Operation Engineer

DBeaverНа сервисе с: 03.10.26 15:39↑ Вакансия с автоподнятием
Зарплата не указанаСербияBelgradeГибрид

At DBeaver, our vision is to seamlessly integrate data into the routines and decision-making processes of every professional. With a dedicated community of over 10+ million active users worldwide who constantly inspire us, our open-source approach fuels our innovation. Our passion for databases and dedication to crafting exceptional management tools has driven us to become the leading provider of cross-platform enterprise data and database software.

We are looking for a Security Operation Engineer to join our platform and infrastructure development team. This role focuses on cloud infrastructure, CI/CD security, vulnerability management, and enabling engineering teams to effectively build secure products. 

We love well-structured processes and live in a work-life balance mode.

Location: This role can be based either remotely in Europe or hybrid in our offices in Belgrade, Serbia, or Budapest, Hungary.

What You'll Do

  • Design, implement, and maintain secure cloud and on-premise infrastructure.
  • Integrate security controls into CI/CD pipelines and development workflows.
  • Automate security checks, compliance validation, and vulnerability management processes.
  • Secure containerized environments and Kubernetes clusters.
  • Implement and maintain secrets management, identity, and access control solutions.
  • Monitor infrastructure and applications for security threats and vulnerabilities.
  • Collaborate closely with developers, QA engineers, and platform teams to promote DevSecOps best practices.
  • Participate in security reviews, architecture discussions, and threat modeling activities.
  • Contribute to security standards, policies, and technical documentation.

What You Bring

  • 3+ years of experience in DevOps, DevSecOps, Cloud Security, or Infrastructure Engineering.
  • Hands-on experience with Docker and Kubernetes.
  • Experience working with cloud platforms such as AWS, Azure, or GCP.
  • Deep understanding of CI/CD platforms such as Jenkins or similar.
  • Experience working with infrastructure tools in the form of code, such as Terraform
  • Understanding of application and infrastructure security principles.
  • Experience implementing vulnerability scanning, dependency management, and container security controls.
  • Knowledge of networking fundamentals, IAM, secrets management, and secure authentication mechanisms.
  • Knowledge of English (B2 level).

Bonus Skills

  • Knowledge of security frameworks and standards such as ISO 27001 or NIST.
  • Experience with SIEM, monitoring, and observability platforms.
  • Security certifications such as AWS Security Specialty, CKS, CISSP, CCSP, or similar.
  • Experience contributing to open-source projects.
  • Understanding of database security concepts and data protection practices.

We Use the Following Tools

  • AWS
  • Kubernetes
  • Docker
  • Terraform 
  • GitHub
  • Prometheus
  • Grafana
  • ELK Stack

About DBeaver

DBeaver Corporation provides a full-featured data solution that easily adapts to users' needs, from open-source tools to all-in-one enterprise software. Our mission is to make it possible for all kinds of people and organizations to leverage all kinds of data.

We are committed to creating a diverse and inclusive workplace where everyone feels welcomed and valued.

HireSeeker собирает вакансии со всех площадок и присылает только релевантные. Бесплатно.