Jobs Lviv, Security

3
  • · 64 views · 9 applications · 15d

    Application Security Engineer

    Countries of Europe or Ukraine · Product · 2 years of experience · English - B2
    Our Mission and Vision At Solidgate, our mission is clear: to empower outstanding entrepreneurs to build exceptional internet companies. We exist to fuel the builders — the ones shaping the digital economy — with the financial infrastructure they deserve....

    Our Mission and Vision

    At Solidgate, our mission is clear: to empower outstanding entrepreneurs to build exceptional internet companies. We exist to fuel the builders — the ones shaping the digital economy — with the financial infrastructure they deserve. To achieve that, we’re on a bold path: to become the #1 payments orchestration platform in the world.
     

    About the Role

    Solidgate builds financial infrastructure for fast-growing internet businesses worldwide. Our platform processes millions of payments daily and operates in a highly regulated fintech environment, where security is a core product requirement — not an afterthought.
     

    Our engineering organization builds and scales a complex cloud-native platform with over 120 microservices. As the company continues to grow, we are strengthening our security organization and introducing a dedicated Application Security Engineer role.
     

    The mission of this role is to keep our business and revenue safe by building security into the way we develop software — from early design decisions to CI/CD pipelines and live production systems.
     

    This is a hands-on Application Security role focused on embedding security into the software development lifecycle and reducing real product risks.
     

    You will work closely with engineering teams to:

    • design secure application architectures
    • improve secure coding practices
    • detect vulnerabilities early in the development lifecycle
    • continuously improve application security as part of everyday engineering work

       

    You will have a direct impact on how secure software is built across a large microservices ecosystem, influencing standards, tooling, and engineering culture.
     

    Explore our technology stack ➡️ here (https://solidgate-tech.github.io/)

     

    What You Will Own

    As an Application Security Engineer, you will be responsible for application-level security across our fintech platform, including:
     

    • Building and maintaining secure coding standards and supporting their adoptionl across development teams
    • Conducting threat modeling during architecture and design stages
    • Implementing and improving application security testing, including: SAST, DAST, Dependency and secrets scanning, CI/CD security checks
    • Performing regular application security assessments and maturity evaluations (OWASP ASVS, OWASP SAMM)
    • Managing the full vulnerability lifecycle: triage, prioritization, remediation support, and validation
    • Supporting external penetration testing and Bug Bounty programs
    • Identifying and mitigating security risks in cloud environments and CI/CD pipelines
       

    You are a great fit if you have

    • At least 2 years of experience in Application Security or Product Security
    • Hands-on experience with OWASP Top 10 vulnerabilities
    • Practical experience with: secure code reviews, threat modeling, SAST and DAST tools and their integration into CI/CD pipelines
    • Strong understanding of web application and API security
    • Ability to communicate clearly with engineers and work as a partner rather than a blocker
       

    Nice to Have

    • Experience with container security and cloud security tooling
    • Familiarity with DevSecOps and shift-left security practices
    • Experience automating application security processes
    • Background as a software engineer or close collaboration with development teams

       

    Why Join Solidgate?
     

    Build security that matters. Lead initiatives that define how security is embedded into our software development lifecycle across multiple teams and products.

    Your expertise counts. Enjoy real autonomy — propose, test, and implement security practices and tooling that directly improve product resilience and reduce risk.

    Room to experiment. Apply modern AppSec, automation, and shift-left approaches with full support from engineering and security leadership.

    Impact & visibility. See the results of your work directly in more secure products, fewer vulnerabilities, and stronger engineering practices.

    Collaborative environment. Work side by side with experienced, curious engineers who treat security as a shared responsibility and value partnership over gatekeeping.

    The Extras: 30+ days off, unlimited sick leave, free office meals, health coverage, and Apple gear to keep you productive. Courses, conferences, sports and wellness benefits — all designed for ideas, focus, and fun.
     

    Tomorrow’s fintech needs your mindset. Come build it with us.
     

    🫂 Know top talent? We’re always on the lookout. Recommend someone for our role, and if they get hired, there’s a bonus waiting for you — simple as that.

    More
  • · 83 views · 10 applications · 12d

    Information Security Engineer

    Countries of Europe or Ukraine · Product · 3 years of experience · English - B2
    Our Mission and Vision At Solidgate, our mission is clear: to empower outstanding entrepreneurs to build exceptional internet companies. We exist to fuel the builders — the ones shaping the digital economy — with the financial infrastructure they deserve....

    Our Mission and Vision

    At Solidgate, our mission is clear: to empower outstanding entrepreneurs to build exceptional internet companies. We exist to fuel the builders — the ones shaping the digital economy — with the financial infrastructure they deserve. To achieve that, we’re on a bold path: to become the #1 payments orchestration platform in the world.

    We believe the future of payments is shaped by people who think big, take ownership, and bring curiosity and drive to everything they do. That’s exactly the kind of teammates we want on board.
     

    About the Role

    Solidgate builds financial infrastructure for fast-growing internet businesses worldwide. Our platform processes millions of payments daily and operates in a highly regulated fintech environment, where security is a fundamental business requirement.

    As our company scales, we are strengthening and expanding our Information Security team and are looking for an Information Security Engineer to support and develop our corporate and operational security practices.
     

    The mission of this role is to reduce the risk of compromise of corporate accounts, devices, and SaaS systems by:

    • maintaining compliance with international security standards
    • ensuring controlled and auditable access
    • strengthening security awareness across the company
    • and supporting effective incident response

    This role focuses on corporate security, access management, vulnerability management, and compliance, working closely with engineering, IT, and business teams to ensure Solidgate remains secure, resilient, and audit-ready at all times.
     

    What You Will Own

    As an Information Security Engineer, you will be responsible for corporate and operational security controls, including:

    • Supporting and maintaining ISMS, PIMS, and BCMS frameworks
    • Participating in external certifications and audits (PCI DSS, ISO 27001, ISO 27701, ISO 22301, GDPR, DORA)
    • Managing access control processes: IAM / SSO / MFA, Joiner—Mover—Leaver processes, regular access reviews and privilege control
    • Operating and tuning information security tools, including: vulnerability scanners, IAM and access control systems, anti-phishing tools and security awareness platforms
    • Analyzing alerts and findings, including false positives, and driving remediation
    • Maintaining and updating asset and information security risk registers
    • Supporting incident response activities and post-incident analysis
    • Conducting and tracking Disaster Recovery (DRP) and Business Continuity (BCP) tests, ensuring identified gaps are addressed
       

    You are a great fit if you have

    • 3+ years of experience in Information Security
    • Knowledge of at least one security standard: ISO/IEC 27001, SOC 2, or PCI DSS
    • Hands-on experience with building and operating an information security management framework, including policies, risk management, and incident response.
    • Strong experience with access management (IAM): least privilege principles, RBAC / ABAC, MFA / SSO, Joiner—Mover—Leaver processes and regular access reviews
    • Experience configuring and administering security tools such as: IAM solutions, vulnerability scanners, XDR / endpoint protection, anti-phishing and phishing simulation platforms
    • Ability to communicate effectively with engineers, IT teams, and external auditors
       

    Nice to Have

    • Experience participating in or leading external security audits
    • Hands-on experience with ISO 22301, ISO 27701, GDPR, or DORA
    • Experience automating information security or compliance processes
    • Background in security operations or security engineering within a regulated environment
       

    Why Join Solidgate?

    Build security that protects the business. Own and evolve corporate security controls that safeguard our people, systems, and data at scale.

    Your expertise counts. Enjoy real autonomy to improve access management, compliance processes, and operational security tooling.

    Room to experiment. Apply modern approaches to security operations, automation, and awareness with strong leadership support.

    Impact & visibility. See the results of your work directly in successful audits, reduced risk exposure, and stronger organizational security.

    Collaborative environment. Work alongside experienced security professionals, engineers, and stakeholders who value clarity, ownership, and partnership.

    The Extras: 30+ days off, unlimited sick leave, free office meals, health coverage, and Apple gear to keep you productive. Courses, conferences, sports and wellness benefits — all designed for ideas, focus, and fun.

    Tomorrow’s fintech needs your mindset. Come build it with us.

    More
  • Фахівець з кібербезпеки (WAF та PAM)

    Office Work · Ukraine (Lviv) · Product · 2 years of experience · English - None
    Найбільша мережа аптек «Подорожник» успішно працює на ринку понад 25 років. Мережа охоплює 2300+ аптек і понад 12 000 працівників у всіх регіонах України. У зв’язку з розширенням команди в пошуках Фахівця з кібербезпеки (WAF та PAM). Ти наш ідеальний...

    Найбільша мережа аптек «Подорожник» успішно працює на ринку понад 25 років. Мережа охоплює 2300+ аптек і понад 12 000 працівників у всіх регіонах України. У зв’язку з розширенням команди в пошуках Фахівця з кібербезпеки (WAF та PAM).

    Ти наш ідеальний кандидат, якщо в тебе є:

    • досвід роботи на аналогічній посаді від 2-ох років;
    • розуміння принципів функціонування мережевих протоколів та захисту веб-додатків;
    • розуміння роботи сканерів вразливостей (Nessus, OpenVAS тощо);
    • проактивність, готовність впроваджувати нові підходи та підтримувати інноваційні ідеї.

    Що входитиме в твої обов’язки:

    • налаштування правил фільтрації трафіку, аналіз заблокованих запитів, оптимізація політик захисту для мінімізації False Positives в системі WAF;
    • управління обліковими записами з високими привілеями, контроль сесій, налаштування інтеграцій з цільовими системами та моніторинг підозрілої активності в системі PAM;
    • адміністрування засобів антивірусного захисту (EDR);
    • участь у скануванні та верифікації технічних вразливостей;
    • взаємодія з SOC: обробка інцидентів та передача контекстних даних щодо роботи WAF/PAM.

    Чому тобі варто працювати саме в нас:

    • офіційне працевлаштування в стабільній компанії, що динамічно розвивається;
    • можливість особистісного та професійного розвитку;
    • необхідні ресурси та інструменти для виконання поставлених завдань;
    • корпоративні знижки на абонементи в Sport Life, Фокстрот, ОККО та багато інших бенефітів.

    «Подорожник» — лідер можливостей!

    More
Log In or Sign Up to see all posted jobs