Наши требования
Experience: 5+ years of experience in software engineering or security engineering, specifically focusing on product security or application security
Technical Skills
Proficiency in one or more programming languages (e.g., Python, Go, Java, or JavaScript)
Deep understanding of modern web/cloud architecture (e.g., APIs, Microservices, Kubernetes, AWS/GCP/Azure)
Familiarity with the OWASP Top 10 and common exploitation techniques
Collaboration: Proven ability to influence and collaborate with engineering teams without hindering development velocity
Problem Solving: Strong analytical skills to evaluate complex systems and design innovative, practical security solutions
Experience with Infrastructure as Code (IaC) security (e.g., Terraform, CloudFormation)
Experience in designing cryptographic implementations or secure authentication/authorization flows (e.g., OAuth, OIDC, JWT)
Knowledge of compliance frameworks relevant to our industry (e.g., SOC2, ISO27001, HIPAA)