Information security engineer
Who we are:
RBI Retail Innovation is a product development company, a part of the group of Raiffeisen Bank International (Vienna, Austria). We are a stable company that works in the EU market. Now we have products in Poland. Our ambition will be widespread in EU countries in the next few years. Our projects include next-gen digital banking platforms’ design, delivery, and post-delivery activities. Our team is international but mainly consists of Ukrainian developers. We have offices in Kyiv and Rivne. Our mission is to provide seamless banking with ease and speed that’s built for people. Our values are People First, Product Passion, and Trust.
About you:
- At least 3 years of experience in the information security field, including but not limited to: Web/Mobile Application Security, Cloud Security, Penetration Testing, Vulnerability Assessment, etc.
- Ability to manually find and exploit basic web vulnerabilities
- Familiarity with OWASP Security Testing Guides, OWASP Top 10
- Knowledge and understanding of Application Security, Cloud Security (AWS), Authentication and Security protocols
- Strong communication troubleshooting skills
- Good English skills (Intermediate+)
- Self-disciplined
Will be a plus:
- Experience in web/mobile development
- Relevance certifications such as AWS Cloud Security, EC-Council CEH, Offensive Security: OSCP, OSWE, OSCE
- Security related publications, blog posts, and/or participation in tools development
- BugBunty experience (please provide link to your profile)
- Experience with various penetration testing tools (e.g., BurpSuite, Metasploit, OWASP ZAP)
You will:
Drive company application security and product improvements:
- Performing security assessment and internal penetration testing
- Working closely with Developers and DevOps on promoting, clarification, and implementing leading security mechanisms in the products and infrastructure
- Provide guidance on secure system architecture (including cloud security) and software development processes aiming to achieve best in class security for our products
- Estimate application security risks and suggest mitigation strategies, maintain Threat Modeling
- Assess current application security posture against OWASP ASVS and MASVS
Drive vulnerability management including:
- Provide recommendation and best practice on vulnerability remediation
- Facilitate, communicate, and assess mitigation steps
- Help key stakeholders to understand the vulnerabilities
Participate as (SME) subject matter expert in security incidents assessment, analysis, and remediation.
What we offer:
- You will be a part of global team of RBI Group — one of the leading banking groups in Central and Eastern Europe
- An opportunity to work with some of the most talented and experienced people in the Fintech industry
- The ability to drive change and innovation in the products we develop
- Official employment, gig-contract
- Remote-first work model
- Competitive salary
- Personal and professional growth, corporate English courses
- Paid sick days-off and 20 working days of vacation per year
- Medical insurance
Required skills experience
| Cloud Security | 2 years |
| Penetration Testing | 3 years |
| Vulnerability Scanning | 2 years |
| OWASP TOP 10 | 3 years |
Required domain experience
| Fintech | 2 years |
Required languages
| English | B2 - Upper Intermediate |