Strategic Staffing Solutions’s client is a leading global investment banking, securities, and investment management firm. With over 150 years of experience, the firm provides financial services to corporations, financial institutions, governments, and individuals worldwide. Known for its strong culture of excellence, innovation, and client service, the company operates in all major financial centers.
As their Runtime Platform department continues to grow, they are looking for a Security Engineer. In this role, you’ll work closely with software and infrastructure engineers to help secure large-scale distributed platforms and critical infrastructure using your expertise in penetration testing and security consulting in a complex, modern financial services environment. The role involves identifying and mitigating vulnerabilities, advising development teams, and collaborating with the internal Tech Risk team.
What you will do:
- Conduct penetration testing and vulnerability assessments on large distributed systems written in C++, Python, and Go.
- Identify and exploit security vulnerabilities in containerized environments, including Docker, Kubernetes, and related technologies.
- Develop and maintain security testing tools and methodologies to automate vulnerability detection.
- Collaborate with software engineers to implement security best practices throughout the software development lifecycle.
- Provide security consulting to development teams within the Runtime Platforms group, advising on secure design and implementation.
- Collaborate with internal Tech Risk organization to ensure compliance with security policies and regulations.
- Participate in code reviews, design reviews, and threat modelling exercises.
- Document security findings and recommendations in a clear and concise manner.
- Stay up-to-date with the latest security threats, vulnerabilities, and mitigation techniques.
- Assist in incident response activities, including forensic analysis and root cause analysis.
- Develop and deliver security training to development teams.
What you will need:
- 3-5+ years of experience working with various security tools and frameworks.
- Extensive experience in penetration testing and vulnerability assessment of distributed systems.
- Strong programming experience in C++, Python, and/or Go.
- Deep understanding of security principles and best practices.
- Excellent networking fundamentals.
- Deep understanding of the Linux operating system.
- Familiarity with container technologies such as Docker, Kubernetes, and related security concepts.
- Strong analytical and problem-solving abilities; comfortable diving into unfamiliar, complex codebases and systems.
- Excellent communication and interpersonal skills, with the ability to effectively communicate security risks to both technical and non-technical audiences.
Nice to have:
- Security certifications such as OSCP, CEH, or CISSP.
- Experience with cloud security (AWS, GCP, Azure).
- Experience with security automation and orchestration tools.
- Contributions to open-source security projects.
- Familiarity with common security frameworks and standards (e.g., NIST, OWASP).
- Experience with reverse engineering and malware analysis.
- Background in incident response and digital forensics.
What you will get:
- 12-month B2B or full-time contract, based on your preference (with potential for extension)
- Hybrid work setup
- Career-boosting experience with one of the most respected names in global finance
- Salary ranges:
Mid: 16,500–20,500 PLN gross (FTE) /140–170 PLN net per hour (B2B)
Senior: 20,500PLN–24,200 PLN gross (FTE) / 170–200 PLN net per hour (B2B)