Staff Security Engineer
Tasks
- Define authentication and authorization architecture
- Define policy enforcement
- Define secure logging and telemetry for authentication and authorization
- Define service to service authorization
- Define tenant isolation controls
- Design ABAC authorization model
- Design RBAC permission models
- Design identity and authorization for agents and connectors
- Enforce least privilege
- Evaluate authorization standards for multi tenant SaaS
- Implement API access control
- Implement rate limiting
- Perform code reviews
- Set standards for token scopes and rotation
- Support compliance improvements
- Write security code and submit pull requests
Perks/Benefits
- Critical illness insurance
- Dental plan
- Disability insurance
- Employer pension contribution
- Financial advice
- Fully covered Multisport card
- Fully covered medical plan
- Legal advice
- Life insurance
- Meal allowance
- Paid parental leave
- Paid time off
- Paid volunteer hours
- Remote work limited to Poland
- Therapy sessions
Skills/Tech-stack
ABAC | AKS | API authorization | Auth0 | Authentication | Authorization | Authorization Model | Azure Entra | Azure Entra ID | Entra ID | JWT | JWT handling | Keycloak | Least Privilege | MTLS | Microsoft Entra | Microsoft Entra ID | Multicloud | Networking | OAuth flows | OAuth2 | OIDC | Okta | OpenID Connect | Permission modeling | Policy enforcement | RBAC | RBAC permission modeling | Rate Limiting | Secure Logging | Security Architecture | Security Hardening | Service authentication | Service to Service | Service-to-Service Authentication | Telemetry | Tenant Isolation | Token handling | Workload Identities
Education
N/A
Roles
Architect | Engineer | Security | Security Architect | Security Engineer | Staff Security Engineer
Related jobs
-
CBS Security Consultant - SDLC PLN 241K-411KAccess Management | Active Directory | Agile Development | Application Security | Auditing and loggingSenior-level Full TimeWrocław, DS, PL, 50-086 R1d ago
-
Network Security Architect PLN 237K-400KCISA | Cisco | Compliance | DDoS Mitigation | FirewallGlobal team | Health insurance | Internal mobility | Mentorship | Professional development programsSenior-level Full TimeWarsaw, Masovian Voivodeship, Poland R1d ago
-
Senior-level Full TimeWrocław, DS, PL, 50-0862d ago
-
Senior Security Consultant - SDLC PLN 171K-231KCOBIT | Cloud Architecture | Configuration Management | ISO 27001 | ISO 27002Senior-level Full TimeWrocław, DS, PL, 50-0862d ago
-
Windows Software Engineer / Windows Engineering & Identity and Access Management - Associate PLN 264K-360K.NET | AWS | Access Management | Active Directory | AuthenticationSenior-level Full TimeWarsaw, Mazowieckie, Poland2d ago
-
Access Management | Audit compliance | Configuration baselines | Control Design | Data ClassificationSenior-level Full TimeWarsaw, Mazowieckie, Poland2d ago
-
Senior-level Full TimePoland7d ago
-
Identity and Access Management Engineer PLN 264K-360KAD LDS | Active Directory | Active Directory Federation Services | Active Directory federation | Azure Multi-Factor AuthenticationMid-level Full TimeWarsaw, Masovian Voivodeship, Poland7d ago
-
Senior IAM Engineer (Okta) PLN 246K-385KDjango | FastAPI | Flask | HIPAA | Identity FederationHybrid flexibility | International projects | Medical healthcare | Ongoing learning and reimbursement | Recognition programSenior-level Full TimeBulgaria, Poland7d ago
-
Senior IAM Engineer (Okta) PLN 246K-385KAccess reviews | Adaptive Authentication | CLI tooling | Django | FastAPIInternational projects | Medical healthcare | Ongoing learning and reimbursement | Recognition program | Referral bonusesSenior-level Full TimeBulgaria, Poland7d ago
-
Senior IAM Engineer (Okta) PLN 246K-385KAccess reviews | Adaptive Authentication | Django | FastAPI | FlaskHybrid or remote flexibility | Medical healthcare | Ongoing learning reimbursement | Recognition program | Referral bonusesSenior-level Full TimeBulgaria, Poland7d ago
-
AI Concepts | Archimate | Artificial Intelligence | Azure | CISASenior-level Full TimeKatowice (Zabrska 19), Poland8d ago
-
AI for SOC | Access Security | Archimate | CISA | CISMSenior-level Full TimeKatowice (Zabrska 19), Poland8d ago
-
Identity and Access Management Engineer PLN 264K-360KActive Directory | Active Directory Federation Services | Active Directory Lightweight Directory Services | Active Directory federation | Azure Multi-Factor AuthenticationMid-level Full TimeWarsaw, Masovian Voivodeship, Poland8d ago
-
Application Security Expert PLN 237K-396KAI Security | AI security automation | AWS | Application Security | AuthenticationSenior-level Full TimeKrakow, Poland8d ago
-
Security Engineer PLN 174K-200KAntivirus | Application Security | Automation | Cloud Security | ComplianceMid-level Full TimeWarszawa, Masovian, PL, 02-14610d ago
-
Menedżer ds. Cyberbezpieczeństwa/Cyber Security Manager PLN 124K-190KAccess Control | Access Management | Compliance Management | CyberArk | CyberArk CDEContinuous learning | Diverse and inclusive culture | Transformative leadership | Travel requiredMid-level Full TimeKatowice, Śląskie, PL, 40-02810d ago
-
Identity & Access Management Engineer PLN 282K-300KAD Connect | Active Directory | Agile Framework | Azure DevOps | Entra ADExecutive-level Full TimeWrocław, DS, PL, 50-08613d ago
-
Lead Engineer – Cloud Platform Operations PLN 264K-360KAKS | AWS | AWS Control Tower | AWS Organizations | Admission controlMentorship and coaching | On site five days per weekSenior-level Full TimeKrakow, Poland14d ago
-
Software Engineer II, Wearables and Health Data Privacy PLN 237K-353KBusiness Intelligence | C# | C++ | Data Lakes | Data ProcessingSenior-level Full TimeWarsaw, Poland14d ago
-
Salesforce Platform Security & Operations Engineer PLN 183K-270KAccess Management | Authentication | Certificates | Dynatrace | Metadata deploymentEducation platform access | Home office equipment package | Hybrid working model | Life insurance | NAIS benefit platformSenior-level Full TimeWrocław, PL20d ago
-
Azure | Bill of Materials | CI/CD | Cloud Security | Composition analysisEmployee assistance program | Global share plans | Life insurance | Parental benefits | Short-term incentivesSenior-level Full TimeWarszawa, Mazovia Province, PL, N/A20d ago
-
Director, Security Architecture and Product Security PLN 228K-329KAgentic AI | Azure | CI/CD | Cloud Security | Cloud platformEmployee assistance program | Global share plans | Life insurance | Parental benefits | Short-term incentivesSenior-level Full TimeWarszawa, Mazovia Province, PL, N/A20d ago
-
Workplace Platform Engineer PL PLN 264K-360KActive Directory | Azure Active Directory | BitLocker | Conditional Access | Detection and ResponseContinuous learning | Cross technology collaboration | Opportunity to contribute to global IT leader | Professional growthMid-level Full TimeWarsaw, Poland20d ago
-
Senior Data Security & Privacy Engineer PLN 237K-400KAccess Control | Audit trails | Azure Key Vault | CI/CD | Data ClassificationLearning and development opportunities | Life critical illness and disability insurance | Meal allowance | Medical dental rehab coverage | Multisport cardSenior-level Full TimeWarsaw, Poland21d ago