Przejdź do treści
Aplikuj teraz

Ta oferta jest na kilku portalach

T-Mobile

Application Security Expert

B2B
Praca hybrydowa
Ekspert
Warszawa
Wygasa 24 wrz 2026
24 dni temu

W skrócie

Application Security Expert for T-Mobile in Warsaw. Responsibilities include automating security controls, analyzing code for vulnerabilities, and designing secure architectures. Requires 4+ years in appsec and software development, plus cloud security knowledge.

Skrót przygotowany przez AI na podstawie treści ogłoszenia.

Technologies we use

Your responsibilities

  • Identify opportunities to automate and standardize application security controls and cooperate with the CICD team
  • Analyze source code to mitigate identified weaknesses and vulnerabilities
  • Create guidelines and application security standards
  • Review and check automated security testing results
  • Perform software architecture design reviews for both on-prem and cloud deployments
  • Work with engineering teams to help architect and implement solutions that are secure by design
  • Define, document, and supervise implementation of security guidelines and standards
  • Build frameworks and libraries to provide security by default

Our requirements

  • 4+ years of full-time commercial application security experience
  • 4+ years of experience in software development, preferably in cloud environment
  • Experience in architecting and building application security on modern tech stacks across multiple platforms (web, mobile, desktop)
  • Prior experience in performing threat modelling and secure design reviews
  • Familiarity with cloud services and their security best practices and secure design patterns - AWS especially
  • Kubernetes and containerization security know-how
  • Knowledge of common appsec vulnerabilities like OWASP Top 10 and cloud security gaps
  • Knowledge of standards like OWASP Testing Guide, OWASP ASVS, NIST and SANS top 20
  • Proficiency in modern and common web stack technologies (HTTP, HTML5, AJAX, REST, ...)
  • Understanding of basic cryptography (encryption, hashing, MACs, digital signatures, TLS, password storage) and how they are applied in web applications
  • Knowledge of protocols (OAuth, SAML, OIDC), flows and best practices
  • At least basic know-how in networks

Optional

  • Application Security related certificates
  • Cloud (Security) related certificates

What we offer

Benefits

Opublikowana 2026-08-25
Źródło