Security Engineer - Security Platform Engineering & Core Risk Management Security Engineer - Security Platform Engineering  …

Goldman Sachs
in Warsaw, Mazowieckie, Poland
Permanent, Full time
Be the first to apply
Goldman Sachs
in Warsaw, Mazowieckie, Poland
Permanent, Full time
Be the first to apply
Security Engineer - Security Platform Engineering & Core Risk Management
Your Impact
Security Engineer within Core Engineering is responsible for assessing security of implemented solutions, efficiency of security controls and adequacy of detection and monitoring capabilities. Product Security team is primarily responsible for helping the firm to secure products and services by providing secure solutions, reference implementations, proper and efficient security controls and detection capabilities.
Are you a software/systems engineer with passion for security or a security practitioner looking to make a difference by implementing security solutions? Are you looking for a role where you can have broad-reaching sensible impact over vast set of security challenges? You will be a good fit if you have…

How will you fulfill your potential?
  • Define malicious actor models and use latest attack techniques to emulate adversary activities
  • Assess security of broad range of solutions - CI/CD pipelines, Secret Managers, Build Systems and SDLC solutions
  • Assess efficiency and applicability of implementation of security controls
  • Help optimize security controls to improve their efficiency
  • Create reference implementations and implementation guidelines to be utilized by engineers across the firm
  • Create visibility into state of security controls and solutions across the firm and improvement dynamics

Basic Qualifications
  • A strong grounding in security concepts, including modern attack vectors, exploitation and detection avoidance
  • A good understanding of modern technology landscape - cloud infrastructure, hybrid cloud environments, virtualization and containerization, infrastructure orchestration and development task automation
  • The ability to reason about performance, security, and process interactions in complex distributed systems
  • Proficiency in designing, developing and testing cross-platform software in one or more of Java, C++, C# or golang; open to using multiple languages
  • Experience developing, deploying and supporting software across the full Continuous Delivery life-cycle
  • Sound SDLC and practices and tooling experience - version control, CI/CD and configuration management tools
  • The ability to understand and effectively debug both new and existing software
  • The ability to communicate technical concepts effectively, both written and orally, as well as the interpersonal skills required to collaborate effectively with colleagues across diverse technology teams
Preferred Qualifications
  • Experience in penetration testing
  • Experience in exploit development
  • Experience in system administration
  • Experience in software development
  • Experience with containerization technologies and container orchestration - Kubernetes/Docker
  • Experience with security monitoring and detection solutions - IDS/IPS
  • Scripting skills using Python, PowerShell or Bash
  • Experience with Terraform, Freemarker, Kubernetes and Docker
  • Experience with AWS and GCP
  • Experience with Golang, RHEL administration and systemd, Freemarker, GitLab, HAProxy
  • Experience using Secret Management solution like Hashicorp Vault and/or Consul in production

Goldman Sachs logo
More Jobs Like This
See more jobs