Miejsca pracy
>
Kraków

    Staff Test Penetration Engineer - Kraków, Polska - Guidewire

    Guidewire
    Guidewire Kraków, Polska

    2 dni temu

    Default job background
    W pełnym wymiarze godzin
    Opis

    Guidewire PSIRT (Product Security Incident Response Team) is responsible for:

  • Guidewire product vulnerability management process for all Guidewire applications.
  • Coordination of customer/external product security incidents and reported security issues affecting various Guidewire products and applications.
  • Working cross-functionally with all business units, sustaining engineers, product security team members, customer support, legal and external security researchers to ensure timely resolution of security incidents and events.
  • Development, maintenance and continuous improvement of the product security incident monitoring, detection and response tools and process, including all required supporting materials.
  • Pen testing Guidewire applications to ensure timely discovery of the vulnerabilities.
  • Security Review and Code Review of Guidewire applications
  • We are looking for a new team member who will be responsible to perform following activities (but not limited to)

  • Lead and own PSIRT Process - triage security related issues (external / internal), verify those on different versions, products.
  • Perform root cause analysis to ensure validity of reported issues.
  • Triage code defect based issues, quantitatively evaluate risk and provide guidance to engineering teams regarding the impact of security issues using industry standard metrics such as CVSS.
  • Work closely with project management, product management, engineering and sustaining teams to drive issues to closure.
  • Cultivate strong working relationships with external researchers, reporting organizations and customers to ensure effective collaboration. Work with customer facing and internal teams to continually improve processes used to identify and fix product security issues
  • Enhance existing product security incident response program
  • Coordinate with internal product development teams in accomplishing regular security reviews and penetration testing assessments.
  • Execute the penetration tests internally to identify security vulnerabilities.
  • Perform security-focused code reviews
  • Support the preparation of security releases.
  • Create security guidance and documentation
  • Develop security tooling and automation
  • Develop and deliver security training and outreach to internal development teams
  • Assist teams in reproducing, triaging, and addressing application security vulnerabilities.


  • Guidewire Kraków, Polska W pełnym wymiarze godzin

    Guidewire PSIRT (Product Security Incident Response Team) is responsible for: · Guidewire product vulnerability management process for all Guidewire applications. · Coordination of customer/external product security incidents and reported security issues affecting various Guide ...


  • endegospzoo Kraków, Polska

    Endego is all about people · At Endego, we take pride in creating comprehensive engineering solutions that set standards in the industry. Our specialization covers sectors such as automotive, railway, agriculture, heavy-duty vehicles, commercial vehicles (such as buses), and addi ...


  • KION Group Kraków, Polska W pełnym wymiarze godzin

    What we offer: · The opportunity to work in the fast growing worldwide company · Attractive remuneration based on your experience, skills and development · The opportunity to participate in the international projects and a significant influence on company IT development · Yo ...

  • Hsbc Service Delivery

    Threat Hunter

    1 dzień temu


    Hsbc Service Delivery Kraków, Polska W pełnym wymiarze godzin

    Technologies-expected : AWS Microsoft Azure about-project : Sitting within the Monitoring and Threat Detection sub-function, the 'Cybersecurity Threat Hunter' role is primarily charged with proactively searching through the HSBC global estate for evidence of malicious activities ...


  • HITACHI ENERGY SERVICES SP. Z O.O. Kraków, Polska W pełnym wymiarze godzin

    Description · : Requirements: · In-depth knowledge of TCP/IP networking and application protocols concepts · Understanding of software exploitation and common vulnerabilities · Understanding of port scanning, vulnerability assessment and fuzzing tools · Knowledge of protocols ...


  • Michael Page Kraków, Polska

    CONDITIONS: · Hybrid working, but flexible hours · Permanent employment contract (UoP) · DUTIES: · Designing, implementing, and maintaining cloud security solutions to ensure the confidentiality, integrity, and availability of our cloud infrastructure, applications, and data. · C ...


  • GPC Global Technology Center Kraków, Polska

    As we continue to scale and evolve, it has become increasingly important for us to protect our applications. That's why we're looking for an experienced Senior Security Engineer in the area of application security for AI systems. Join our GenAI team and contribute to the developm ...


  • Zendesk Kraków, Polska W pełnym wymiarze godzin

    Job Description · Are you passionate about application security? Do you get a thrill out of discovering security vulnerabilities in web applications and mobile apps? Do you enjoy the challenge of designing creative solutions to tough problems? Are you excited about securing the p ...


  • Cognizant Kraków, Polska W pełnym wymiarze godzin

    Location: Poland, Kraków · What we do: · As Top Employer, we are dedicated to helping the world's leading companies build stronger businesses — helping them go from doing digital to being digital. Cognizant Poland offices are in Gdansk, Wroclaw, and Kraków. With the capacity to ...

  • TE Connectivity

    ACCOUNT MANAGER

    4 dni temu


    TE Connectivity Kraków, Polska

    Bei TE Connectivity geben wir Ihnen Raum zur beruflichen Entfaltung, und die Möglichkeit über Länder und Kulturen hinweg mit Kollegen zusammenzuarbeiten, mit dem Ziel eine sicherere, nachhaltige, produktive und vernetzte Zukunft zu gestalten. · Requierements: · • Understand th ...


  • Selvita Kraków, Polska

    Location · "> Kraków, Poland Offer description Selvita is a global integrated drug discovery partner for the pharmaceutical and biotechnology industries with laboratories in Poland (Krakow & Poznan) and offices in Cambridge, UK, Greater Boston Area & San Francisco Bay Area in t ...

  • Team Quest

    Technical Lead

    3 dni temu


    Team Quest Krakow, Polska Umowa o pracę

    Responsibilites: · Execution of the Technology, Architecture, IT Security, and DevOps strategy of GILDS in the tribe · Managing and providing technical expertise to the tribe · Orchestrating technical development within the tribe · Accountable Enabling the product teams to effe ...


  • Pegasystems Kraków, Polska

    Meet Our Team: · Are you ready to take your career to the next level? Do you crave the opportunity for interaction with senior and executive management, customers and architects while working for a company that is changing the way the world builds enterprise software? Cloud Secu ...


  • Cognizant Technology Solutions Krakow, Polska OTHER

    Location: Poland, Kraków · What we do: · As Top Employer, we are dedicated to helping the world's leading companies build stronger businesses — helping them go from doing digital to being digital. Cognizant Poland offices are in Gdansk, Wroclaw, and Kraków. With the capacity to s ...

  • TE Connectivity

    ACCOUNT MANAGER

    1 tydzień temu


    TE Connectivity Kraków, Polska

    Bei TE Connectivity geben wir Ihnen Raum zur beruflichen Entfaltung, und die Möglichkeit über Länder und Kulturen hinweg mit Kollegen zusammenzuarbeiten, mit dem Ziel eine sicherere, nachhaltige, produktive und vernetzte Zukunft zu gestalten. · Über TE Connectivity: · TE Connecti ...


  • IBM Skawina, Polska

    Introduction · We are looking for a skilled Security Engineer to help secure infrastructure & applications across AWS, k8s, and edge location for our ML powered AI. · Your Role and Responsibilities · Collaborate with compliance leaders, software developers, and SREs to implement ...