D

Security Operation Engineer

At DBeaver, our vision is to seamlessly integrate data into the routines and decision-making processes of every professional. With a dedicated community of over 10+ million active users worldwide who constantly inspire us, our open-source…

DBeaver · На сервисе с: 03.10.26 15:39

↑ Вакансия с автоподнятием
Зарплата не указанаСербияBelgradeГибрид

At DBeaver, our vision is to seamlessly integrate data into the routines and decision-making processes of every professional. With a dedicated community of over 10+ million active users worldwide who constantly inspire us, our open-source approach fuels our innovation. Our passion for databases and dedication to crafting exceptional management tools has driven us to become the leading provider of cross-platform enterprise data and database software.

We are looking for a Security Operation Engineer to join our platform and infrastructure development team. This role focuses on cloud infrastructure, CI/CD security, vulnerability management, and enabling engineering teams to effectively build secure products. 

We love well-structured processes and live in a work-life balance mode.

Location: This role can be based either remotely in Europe or hybrid in our offices in Belgrade, Serbia, or Budapest, Hungary.

What You'll Do

  • Design, implement, and maintain secure cloud and on-premise infrastructure.
  • Integrate security controls into CI/CD pipelines and development workflows.
  • Automate security checks, compliance validation, and vulnerability management processes.
  • Secure containerized environments and Kubernetes clusters.
  • Implement and maintain secrets management, identity, and access control solutions.
  • Monitor infrastructure and applications for security threats and vulnerabilities.
  • Collaborate closely with developers, QA engineers, and platform teams to promote DevSecOps best practices.
  • Participate in security reviews, architecture discussions, and threat modeling activities.
  • Contribute to security standards, policies, and technical documentation.

What You Bring

  • 3+ years of experience in DevOps, DevSecOps, Cloud Security, or Infrastructure Engineering.
  • Hands-on experience with Docker and Kubernetes.
  • Experience working with cloud platforms such as AWS, Azure, or GCP.
  • Deep understanding of CI/CD platforms such as Jenkins or similar.
  • Experience working with infrastructure tools in the form of code, such as Terraform
  • Understanding of application and infrastructure security principles.
  • Experience implementing vulnerability scanning, dependency management, and container security controls.
  • Knowledge of networking fundamentals, IAM, secrets management, and secure authentication mechanisms.
  • Knowledge of English (B2 level).

Bonus Skills

  • Knowledge of security frameworks and standards such as ISO 27001 or NIST.
  • Experience with SIEM, monitoring, and observability platforms.
  • Security certifications such as AWS Security Specialty, CKS, CISSP, CCSP, or similar.
  • Experience contributing to open-source projects.
  • Understanding of database security concepts and data protection practices.

We Use the Following Tools

  • AWS
  • Kubernetes
  • Docker
  • Terraform 
  • GitHub
  • Prometheus
  • Grafana
  • ELK Stack

About DBeaver

DBeaver Corporation provides a full-featured data solution that easily adapts to users' needs, from open-source tools to all-in-one enterprise software. Our mission is to make it possible for all kinds of people and organizations to leverage all kinds of data.

We are committed to creating a diverse and inclusive workplace where everyone feels welcomed and valued.

Похожие вакансии Кибербезопасность

Соц.сети
D

Security Engineer with Cedar Policy

dataartНа сервисе с: 04.10.26 10:08
Зарплата не указанаКазахстанУдалёнка

We’re hiring at DataArt KZ!

We’re currently looking for experienced professionals to join our team in Kazakhstan:

• Senior Security Engineer with Cedar Policy

• Security Engineer with Cedar Policy

• Python Developer with AWS AgentCore, Agent Gateway

• Security&Test Engineer with A2A Security

• Senior Cloud Security Developer with OAuth 2.0

• Python Developer with LangGraph

If you’re looking for your next challenge and would like to work on international projects with a global tech company, I’d be happy to connect.

Feel free to reach out to me directly via telegram https://t.me/Saya_Ice or check the open positions and apply through our website.

https://lnkd.in/dV5Xtg-t

https://lnkd.in/dXws6cZz

https://lnkd.in/dpnE3FXT

https://lnkd.in/dbXrUtpP

https://lnkd.in/d3u4SM4B

https://lnkd.in/dzFPcDZ8

Просмотр информации C2PA

hh.ru
Зарплата не указанаРоссияМоскваОфис
Обязанности:
  • Организовывать процессы выявления и реагирования на инциденты информационной безопасности;
  • Организовывать расследование событий информационной безопасности;
  • Организовывать дежурства, смены, потоковую обработку событий информационной безопасности;
  • Управлять сектором мониторинга и реагирования на инциденты информационной безопасности;
  • Выполнять и контролировать работы, позволяющие выявить потенциальные угрозы информационных систем и каналы утечки конфиденциально информации.
  • Реагировать на инциденты, координировать реагирование на инциденты безопасности, такие как кибератаки и утечки данных.
  • Организовывать проведение проверок по фактам подозрения в нарушении требований информационной безопасности
  • Участвовать в расследовании фактов, связанных с нарушением информационной безопасности.
Требования:
  • Высшее образование по направлению «Информационная безопасность», или высшее юридическое образование или высшее техническое образование и переподготовка по направлению «информационная безопасность» не менее 512 часов.

  • Наличие сертификатов о прохождении обучения и повышении квалификации является преимуществом.

  • Обязателен опыт работы не менее 5 лет в сфере обеспечения ИБ, из них не менее 3 лет в SOC
  • Знание актуальных техник и тактик при возникновении угроз;
  • Процессов по выявлению и реагированию на инциденты;
  • инструментов мониторинга и анализа угроз (SIEM, EDR, IDS/IPS и т.д.);
  • методов сбора, корреляции и интерпретации логов;
  • выявления аномалий в поведении пользователей, систем и сетевом трафике;
  • основных типов компьютерных атак, понимание механизма их реализации и способов защиты от них;
  • навыки проведения расследования инцидентов ИБ
  • опыт написания сценариев реагирования
  • Microsoft Word, Excel, python, sql-запросы

    SIEM (любая), ОС Windows, Linux, на уровне администратора
Условия:
  • Офисный режим работы без гибрида/удаленки;
  • Идеальная локация офиса: ст. м. Арбатская, Арбатская пл., дом 1;
  • Стабильный и прозрачный доход: размер заработной платы обсуждается по итогам собеседования;
  • Годовое премирование;
  • Пятидневная рабочая неделя: с 9.00 до 18.00, в пятницу сокращенный рабочий день до 16.45;
  • Качественный социальный пакет с 1го дня работы: ДМС со стоматологией, страхование от онкологических заболеваний, страхование от несчастных случаев и болезней (весь мир, 24/7);
  • Корпоративные скидки и привилегии от компаний-партнёров для наших сотрудников;
  • Компенсацию за приобретенный годовой абонемент в Спортивный клуб по Вашему выбору;
Сайты компаний
P

Application Security Engineer - Senior

plataНа сервисе с: 03.10.26 17:40↑ Вакансия с автоподнятием
Зарплата не указанаВесь мир

We are looking for an Application Security Engineer to join our Information Security team.

The Information Security team is responsible for protecting Plata’s products, systems, and data by embedding security throughout the technology lifecycle. We work closely with engineering teams to identify and mitigate security risks, strengthen application defenses, and ensure security is integrated into every stage of software development.

As an Application Security Engineer, you will serve as a key link between development and security teams, designing, implementing, and maintaining robust application security controls. You’ll help embed security across the entire software development lifecycle — from design and development to testing and deployment — while continuously improving our application security practices.

Challenges that await you:

  • Collaborate with Dev & Ops teams. Guide secure coding practices, participate in code reviews, and embed security seamlessly into the SDLC
  • Conduct security reviews & threat modeling. Analyze application architecture, define threat models, and drive proactive risk identification
  • Integrate security tools. Deploy and manage SAST, DAST, IAST, RASP, and SCA tools within CI/CD pipelines to automate early detection and remediation
  • Handle security incidents
  • Implement “shifting left” strategies, enforce continuous testing, fast remediation, and embed security culture across teams
  • Educate and train. Conduct workshops to elevate developer security awareness and promote adherence to OWASP, ASVS, and secure design standards

What makes you a great fit:

  • Proficient in programming languages (web/mobile)
  • Strong understanding of web architectures (microservices)
  • Deep knowledge of OWASP Top 10, threat modeling, and security testing frameworks
  • Familiarity with security tools such as ZAP, Dependency-Track, Burp
  • Strong analytical skills with precise and thorough attention to detail

Your bonus skills:

  • Security certifications (OSCP, OSWE, GWAPT, GCPN)
  • Contributions to or experience with bug bounty or ethical-hacking programs
  • SaaS or cloud-native environments experience
  • Familiarity with Kubernetes or container security

Our ways of working:

  • Innovative Spirit: A commitment to creativity and groundbreaking solutions
  • Honest Feedback: valuing open, transparent communication
  • Supportive Team: a strong, collaborative community
  • Celebrating Achievements: recognizing our wins together
  • High-Tech Environment: a team full of smart and revolutionary people who date to challenge the status quo of incumbent finances

Our benefits:

  • Relocation support to Kazakhstan, Cyprus, Serbia or Georgia with full visa & permit support to the employee and family
  • Flexible work from one of our offices or remote
  • Healthcare Coverage
  • Education Budget: Language lessons, professional training and certifications
  • Wellness Budget: Mental health and fitness activity reimbursements
  • Vacation policy: 20 days of annual leave and paid sick leave

HireSeeker собирает вакансии со всех площадок и присылает только релевантные. Бесплатно.