1 month ago
Bucharest, RomaniaSenior
Responsibilities
- Manage cybersecurity operations across application, hardware, and cloud infrastructure security.
- Serve as the cybersecurity contact for Product, Engineering, Cloud Operations, and Business Operations teams.
- Enable development teams to adopt secure software development practices and integrate security and quality tooling into CI/CD processes.
- Manage and improve the CNAPP solution and cloud and application security posture management.
- Monitor and respond to vulnerabilities, endpoint protection events, user behavior analytics, firewalls, IDS/IPS, and external threat intelligence.
- Develop and maintain security controls and automation strategies within CI/CD pipelines.
- Assess risks, manage vulnerabilities, and implement appropriate security measures.
Requirements
- Proven experience in information security, security operations, application security, or a related role.
- Experience identifying, analyzing, and handling phishing and social engineering threats.
- Strong knowledge of modern web application security practices, frameworks, and the Secure Software Development Life Cycle.
- Experience implementing security automation for testing, monitoring, or orchestration workflows using TypeScript or a similar language.
- Proficiency with Docker, Kubernetes, AWS Lambda, and preferably AWS, including securing cloud-based applications.
- Knowledge of securing microservices-based architectures.
- Practical experience with Static Application Security Testing, Dynamic Application Security Testing, Software Composition Analysis, bug bounty programs, penetration testing, and automated security scanning.
- Understanding of GDPR, ISO 27001, and SOC 2 is an asset.
- Strong English communication and presentation skills for technical and non-technical audiences.
- Experience in DevSecOps, incident response, or forensics and certifications such as OSCP, CISSP, CEH, or AWS Security Specialty are nice to have.
