DevSecOps Enchanter
Company Description
Techland is one of the biggest and best-known Polish game developers with studios in Wroclaw and Warsaw. For over 30 years, we've carried a tradition of providing gamers with unforgettable experiences. We're an international team of over 400 highly-skilled professionals driven by a passion for gaming, always striving for the best quality.
We’re fueled by the support of our global community built on the foundation of successful AAA franchises such as Call of Juarez, Dead Island, or Dying Light. The gamers' trust in our games has resulted in our newest project, Dying Light 2 Stay Human, selling more than 5 million copies across all platforms within the first month after release.
On top of continuously growing the world of Dying Light through a robust post-launch support plan for Dying Light 2 Stay Human, we're also working on an unannounced AAA Open World Action RPG set in a brand new fantasy universe; our biggest project to date.
Techland's mission strictly determines every aspect of our work: we want to create unforgettable experiences.
Job Description
- designing and implementing secure software development life cycle solutions based on various tools,
- providing advisory to different groups (Technology, Developers, IT, internal stakeholders of any kind),
- participating in execution of training program for different teams,
- defining secure software development life cycle for large projects and teams,
- defining applications security architecture elements,
- defining documentation of security requirements for our applications and games,
- assisting with KPIs and KRIs related to security in applications,
- working with management on defining roadmaps, needs and provide short and mid-term forecasting,
- collaborating with internal stakeholders to define best approach to maximize the security posture,
- documenting and standardizing testing methodologies and tool sets,
- constantly identifying areas for improvement and driving all changes that are required.
Qualifications
- experience in the Application Development/DevOps (at least 4 years),
- experience in Application Security Testing (at least 2 years),
- BSc in Computer Science, Math or Physics,
- working knowledge of SAST, DAST, IAST and RASP methodologies,
- experience in management and definition of security in the software development lifecycle (SDLC),
- working knowledge of waterfall, agile and primarily DevOps development methodologies,
- experience in software development and SDLC,
- familiarity with one or more languages (Java, Javascript, C++, C#, Python, Perl),
- experience with automation in testing or orchestration Selenium, Maven, Ant, Msbuild, Npm, Yarn, Jenkins, etc.
- knowledge of conducting security checks (static and dynamic code analysis, vulnerability analysis in applications and penetration tests, security component analysis),
- understanding of virtualization and container technologies (Docker, Kubernetes, OpenShift, etc.)
- working knowledge of vulnerability scanners (Nessus, Qualys, Acunetix etc.),
- well versed with TCP/IP stack and network protocols,
- certification like OSCP, CRT, CISSP or even CEH would be a plus,
- outstanding ability for logical and creative thinking,
- excellent organization and time management skills,
- excellent interpersonal and communication skills,
- very good command of English,
Additional Information
What we can offer:
- a wide array of benefits: private medical care, life insurance, relocation support, pro-health campaigns, psychological support, gifts for different occasions, bonuses,
- an outstanding work atmosphere in a highly-skilled team of professionals, with flexible working hours, no dress code, and full support of the dedicated HR Business Partner,
- a constant stream of company newsletters, PR & project updates so you will always be in the know,
- many opportunities for personal development: a dedicated development budget for each employee, extra two paid days for training and CSR, stable career paths, extensive internal and external training, and financing of English and Polish language classes,
- state-of-the-art offices filled with chillout zones, a fully equipped kitchen, a gym (Wrocław office), and a free underground car park (Wrocław office).