Staff Security Engineer
Tasks
- Define authentication and authorization architecture
- Define policy enforcement
- Define secure logging and telemetry for authentication and authorization
- Define service to service authorization
- Define tenant isolation controls
- Design ABAC authorization model
- Design RBAC permission models
- Design identity and authorization for agents and connectors
- Enforce least privilege
- Evaluate authorization standards for multi tenant SaaS
- Implement API access control
- Implement rate limiting
- Perform code reviews
- Set standards for token scopes and rotation
- Support compliance improvements
- Write security code and submit pull requests
Perks/Benefits
- Critical illness insurance
- Dental plan
- Disability insurance
- Employer pension contribution
- Financial advice
- Fully covered Multisport card
- Fully covered medical plan
- Legal advice
- Life insurance
- Meal allowance
- Paid parental leave
- Paid time off
- Paid volunteer hours
- Remote work limited to Poland
- Therapy sessions
Skills/Tech-stack
ABAC | AKS | API authorization | Auth0 | Authentication | Authorization | Authorization Model | Azure Entra | Azure Entra ID | Entra ID | JWT | JWT handling | Keycloak | Least Privilege | MTLS | Microsoft Entra | Microsoft Entra ID | Multicloud | Networking | OAuth flows | OAuth2 | OIDC | Okta | OpenID Connect | Permission modeling | Policy enforcement | RBAC | RBAC permission modeling | Rate Limiting | Secure Logging | Security Architecture | Security Hardening | Service authentication | Service to Service | Service-to-Service Authentication | Telemetry | Tenant Isolation | Token handling | Workload Identities
Education
N/A
Roles
Architect | Engineer | Security | Security Architect | Security Engineer | Staff Security Engineer
Related jobs
-
Access Management | Application Security | Audit evidence | Compliance | Control AutomationAnnual bonus | Company equipment | Glasses subsidy | Hybrid work | InsuranceSenior-level Full TimeWarszawa (Pańska 97), Poland1d ago
-
Access Management | Audit evidence | Automation | DevOps | Documentation13th salary | Annual bonus | Company equipment | Glasses subsidy | Hybrid workSenior-level Full TimeWarszawa (Pańska 97), Poland1d ago
-
Access Management | Active Directory | Auth0 | CI/CD | Certificate-based authenticationMid-level Full TimeWarsaw, Mazowieckie, Poland4d ago
-
Mid-level Full TimeWarszawa, Masovian, PL, 02-1466d ago
-
Security Architect PLN 237K-381KArchitecture Documentation | Client-Server | Client-Server Architecture | Cloud Security | Enterprise SecurityGlobal career opportunities | Robust benefits packageSenior-level Full TimePoland - Krakow6d ago
-
Senior IAM Engineer (Okta) PLN 246K-385KAPI Integration | Access Management | Adaptive Authentication | Django | FastAPIHybrid or remote flexibility | International projects | Medical healthcare | Ongoing learning and reimbursement | Recognition programSenior-level Full TimeBulgaria, Poland6d ago
-
Sr Manager Cyber Security & AI Automation Engineer PLN 213K-322KAI Risk Management Framework | AWS | Adversarial Machine Learning | Artificial Intelligence | AzureStakeholder engagement | Strategic impact | Team developmentSenior-level Full TimeWarszawa, Masovian, PL, 02-1467d ago
-
Security Engineer PLN 174K-200KAntivirus | Application Security | Automation | Cloud Security | ComplianceMid-level Full TimeWarszawa, Masovian, PL, 02-1467d ago
-
Mid-level Full TimeWarszawa, mazowieckie7d ago
-
Senior Cloud Cryptography Automation Engineer PLN 237K-400KACME | Ansible | Azure Key Vault | CMS | Certificate managementHybrid work model | International environment | Knowledge sharing and training | Learning and development | Remote workSenior-level Full TimePoland7d ago
-
Information Security Architect PLN 192K-228KAWS Security | Access Management | Access Security | Azure Security | Cloud SecuritySenior-level Full TimeBE Warsaw, Poland8d ago
-
Identity Fabric Principal PLN 264K-360KAD DS | AD FS | Access Control | Access Packages | Access TokenSenior-level Full TimeWarsaw, Masovian Voivodeship, Poland8d ago
-
Global IT Security Expert - OT PLN 210K-336K365 Security | Access Management | Azure Security | CASB | Cybersecurity FrameworkCasual dress code | Flexible-hybrid work | Insurance plan | Parking space | Private medical insuranceSenior-level Full TimePOL - Krakow, Poland R12d ago
-
Information Security Architect - Advisor PLN 257K-385KAI Security | Access Management | COBIT | Cloud Security | Cloud infrastructureCareer opportunities | Employee assistance program | Learning resources | Reduced-rate shipping | Training opportunitiesSenior-level Full TimeFXE-EU/POL/KRKDK/KRKDK/Kraków, Poland13d ago
-
Principal Platform Engineer PLN 271K-400KAccess Management | Ansible | Apache Airflow | Argo CD | Auth0Career growth | Inclusive workplace | On-call rotationSenior-level Full TimeRemote Poland R13d ago
-
Senior-level Full TimeRemote Poland R13d ago
-
Senior-level Full TimeWarsaw, Krakow, Warsaw, Krakow, PL13d ago
-
Principal Security Engineer - GenAI Platform PLN 246K-400KAWS | Azure | Bash | CI/CD | Container SecuritySenior-level Full TimePOL - Warsaw, Przyokopowa, Poland14d ago
-
Architect - Cybersecurity PLN 253K-353KAccess Controls | Budgeting | Compliance | Cybersecurity | Information securityCollaborative culture | Hybrid work | On-call rotation | Professional development opportunitiesSenior-level Full TimeSysco Poland14d ago
-
Identity & Access Management Expert PLN 264K-400KAD DS | AD FS | AI identities | Access Control | App registrationsSenior-level Full TimeWarsaw, Masovian Voivodeship, Poland15d ago
-
RedHat OpenShift Application Administrator PLN 241K-342KAnsible | ArgoCD | Automation | CI/CD | GitOpsSenior-level Full TimeWarsaw, Masovian Voivodeship, Poland15d ago
-
Staff Security Engineer PLN 304K-456KAPIs | AWS | Access Management | Automation | Cloud SecurityHybrid work | Learning opportunities | MentorshipSenior-level Full TimePoland - Krakow - Office R19d ago
-
CBS Security Consultant - SDLC PLN 241K-411KAccess Management | Active Directory | Agile Development | Application Security | Auditing and loggingSenior-level Full TimeWrocław, DS, PL, 50-086 R21d ago
-
Network Security Architect PLN 237K-400KCISA | Cisco | Compliance | DDoS Mitigation | FirewallGlobal team | Health insurance | Internal mobility | Mentorship | Professional development programsSenior-level Full TimeWarsaw, Masovian Voivodeship, Poland R21d ago
-
Senior-level Full TimeWrocław, DS, PL, 50-08622d ago