Jobs
80-
Β· 21 views Β· 4 applications Β· 3d
DevSecOps Engineer (Azure Focus)
Full Remote Β· Countries of Europe or Ukraine Β· 5 years of experienceWeβre looking for a skilled Product Security Engineer with a strong technical background to drive security initiatives across our product ecosystem. In this role, youβll collaborate closely with development and platform teams to proactively identify and...Weβre looking for a skilled Product Security Engineer with a strong technical background to drive security initiatives across our product ecosystem. In this role, youβll collaborate closely with development and platform teams to proactively identify and mitigate security risks, integrate robust security practices into every stage of the software development lifecycle (SDLC), and lead efforts around automation, tooling, and secure configuration of Azure-based infrastructure and pipelines.
Responsibilities
- Design, implement, and maintain secure and scalable CI/CD pipelines using Azure DevOps
- Automate provisioning and configuration of Azure infrastructure (Terraform, ARM templates)
- Conduct threat modeling, architecture reviews, and secure code assessments
- Collaborate with engineering teams to ensure secure application deployment and configuration
- Embed security controls and checkpoints across the SDLC
- Manage and optimize security tools: SAST, DAST, SCA, container and IaC scanning
- Tune automation workflows and reduce false positives
- Secure Azure services such as App Services, AKS, Key Vault, and Azure AD
- Guide on secrets management, access control, and workload hardening
- Participate in incident response and root cause analysis with the SOC
Support compliance efforts (SOC 2, ISO 27001) and contribute to audit readiness
Requirements
- 7+ years in Product Security, Application Security, DevSecOps, or related fields
- Strong development skills (Python, Java, JavaScript, Go, or C# preferred)
- Solid hands-on experience with Azure (Azure DevOps, App Services, Key Vault, AKS)
- Familiarity with security standards like OWASP, CWE, and secure coding best practices
- Experience with CI/CD security automation (GitHub Actions, Azure DevOps)
- Strong understanding of infrastructure-as-code and cloud security (Terraform, Docker, Kubernetes)
- Background with IAM, API security, and regulatory compliance (SOC 2, ISO 27001, NIST)
- Experience troubleshooting production issues and optimizing performance in cloud environments
Strong communication and collaboration skills
Preferred Qualifications
- Experience working with multi-tenant SaaS applications
- Understanding of AI/ML security principles
- Familiarity with threat intelligence and attack surface management tooling
Whatβs In It for You?
- Career Growth β Opportunities to develop and advance.
- Performance Reviews β Regular feedback and support.
- Work Anniversaries β Special gifts to celebrate milestones.
- Flexible Work β Hybrid or remote (Lviv office available).
- Mentorship β Guidance from experienced professionals.
- Accounting Support β We handle the paperwork.
- Paid Time Off β 18 vacation days + 5 sick days per year.
- Extra Leave β 10 additional days off annually.
- Free Office Lunches β Enjoy meals on us.
- Team Events β Gatherings, gifts, and a welcoming atmosphere.
-
Β· 19 views Β· 0 applications Β· 7h
Junior mobile security researcher
Ukraine Β· Product Β· 1 year of experience Β· IntermediateSamsung R&D Institute Ukraine is looking for a passionate and collaborative Junior mobile security researcher to join our team. You will perform device-side white/black-box software security research of Samsung mobile products: security review of...Samsung R&D Institute Ukraine is looking for a passionate and collaborative Junior mobile security researcher to join our team.
You will perform device-side white/black-box software security research of Samsung mobile products:
- security review of Android mobile applications, firmware components, internal modules
- perform security evaluation\validation for internally discovered vulnerabilities and for public domain issues
- research and monitor emerging threats, including new attack methods and new types of security issues
Major Requirements
- Foundational programming skills, ability to understand execution logic in C/C++, Java.
- Solid understanding of Linux and Android basic security architecture.
- Foundational understanding of common software security issues (buffer/integer overflows, format string, use-after-free, path traversal, etc).
- Competent technical English: clear reporting, vulnerability description capabilities and communication skills.
- Prior security background (University, relevant prior employment\work).
- Ability and desire to study and develop assessment skills
Optional Requirements
- Practical experience in reverse-engineering (preferably *.apk and ARM binaries), software exploitation, binary and source code audit as a great plus.
- Exploitation proof-of-concept development experience as a great plus.
- Participation in security contests (ex. CTF), own write-ups publications, community activities.
- Hands-on experience with assessment automation tools (fuzzers, static source code analyzers).
- Applied crypto: basic knowledge of existing algorithms and their applied usage (AES/RSA/ECC/SHA).
Working Conditions
- official employment, as per Ukrainian labor law (regular employee) or GIG contract
- remote work is possible as well as work in Kyiv office
Benefits
- competitive salary, annual salary review, annual bonuses
- paid 28 work days of annual vacations and sick leaves
- opportunity to become an inventor of international patents with paid bonuses
- medical & life insurance for employees and their children
- paid lunches
- discounts to Samsung products, gym, restaurants, services
- regular education and self-development on internal courses and seminars
-
Β· 53 views Β· 2 applications Β· 25d
Application CyberSecurity Engineer
Full Remote Β· Bulgaria, Poland, Romania Β· 7 years of experience Β· Upper-IntermediateN-iX is a software development service company that helps businesses across the globe develop successful software products. During 22 years on the market and by leveraging the capabilities of Eastern Europe talents the company has grown to 2200+...N-iX is a software development service company that helps businesses across the globe develop successful software products. During 22 years on the market and by leveraging the capabilities of Eastern Europe talents the company has grown to 2200+ professionals with a broad portfolio of customers in the area of Fortune 500 companies as well as technological start-ups. N-iX has come a long way and increased its presence in nine countries - Poland, Ukraine, Romania, Bulgaria, Sweden, Malta, the UK, the US, and Colombia.
We seek a highly skilled Product Cybersecurity Engineer to join our Cybersecurity team. The Cybersecurity engineer will take part in a Product development team and will assume leadership for the cybersecurity practices.
Responsibilities:
To be the SME and review, instruct, and support the Digital R&D development on how to ensure:- Secure Development Lifecycle (SDL): Incorporate security at every stage of product development, from design to deployment.
- Regular Security Testing: Conduct vulnerability assessments, penetration testing, and code reviews to identify and mitigate risks.
- Patch Management: Keep products up-to-date with the latest security patches and updates.
- Data Encryption: Protect sensitive data both in transit and at rest using robust encryption methods.
- Access Controls: Implement strict access controls to ensure only authorized personnel can access sensitive information.
- Secure Coding Practices: Follow best practices for secure coding to minimize vulnerabilities.
- Incident Response: Develop and maintain an incident response plan to quickly address security breaches.
- Compliance: Ensure products meet relevant regulatory and industry standards for security and data privacy.
- Third-Party Governance: Establish standardized governance for third-party suppliers to ensure they meet security requirements.
- Customer Communication: Maintain transparency with customers about security measures and provide support throughout the product lifecycle.
Knowledge and Experience:- 4+ years experience in applications security
- 7+ years of experience in the IT industry
- Solid understanding of enterprise technologies and security tooling landscape.
- Knowledge of modern application architecture (microservices/cloud / asynchronous communication) and threat landscape.
- Ability to read application code, including CI/CD configurations + Some scripting skills is a great plus.
- Good knowledge of application vulnerabilities and related issues.
- Understanding of standard security practices, like incident management, vulnerability management, etc.
- Professional certifications, such as CISSP, OSCP, CEH, and others are a plus.
Would be a plus:- Fluent in the English language.
- Quick starter and learner.
- Readiness to research, investigate, and adjust to customer needs.
- Intuition and keen instincts to pre-empt attacks.
- High level of analytical and problem-solving abilities.
- Strong interpersonal and oral communication skills.
We offer*:- Flexible working format - remote, office-based or flexible
- A competitive salary and good compensation package
- Personalized career growth
- Professional development tools (mentorship program, tech talks and trainings, centers of excellence, and more)
- Active tech communities with regular knowledge sharing
- Education reimbursement
- Memorable anniversary presents
- Corporate events and team buildings
- Other location-specific benefits
*not applicable for freelancers
ΠΡΠΎ ΠΊΠΎΠΌΠΏΠ°Π½ΡΡ N-iXN-iX is an international software development service company that helps businesses across the globe expand their engineering capabilities and develop successful software products. Founded in 2002, we have come a long way and increased our presence in eight countries spanning Europe, the US and Latin America.
More
With more than 2,000 specialists, N-iX offers expert solutions in cloud computing, data analytics, machine learning, business intelligence, embedded software, and IoT, covering a wide variety of sectors including finance, manufacturing, supply chain, telecom, energy, etc. -
Β· 57 views Β· 3 applications Β· 21d
Head of Security
Countries of Europe or Ukraine Β· Product Β· 10 years of experience Β· Upper-IntermediateWe are seeking a Head of Security to lead and enhance our global security strategy. As a key executive, you will be responsible for safeguarding our trading infrastructure, customer data, and regulatory compliance in a highly dynamic and fast-paced...We are seeking a Head of Security to lead and enhance our global security strategy. As a key executive, you will be responsible for safeguarding our trading infrastructure, customer data, and regulatory compliance in a highly dynamic and fast-paced environment. This role is ideal for a security leader with deep expertise in cybersecurity, fraud prevention, compliance, and financial market security.
Responsibilities
- Cybersecurity & Infrastructure Protection
- Develop and implement a comprehensive cybersecurity strategy to protect trading platforms, APIs, and back-office infrastructure
- Ensure secure architecture of trading systems, web applications, and cloud environments
- Oversee SOC operations, monitoring, and response strategies for cyber threats
- Establish and enforce incident response plans, including DDoS mitigation, data breaches, and insider threats
- Collaborate with IT and DevOps teams to embed security best practices into SDLC
- Fraud & Risk Management
- Design and execute anti-fraud frameworks to prevent account takeovers, money laundering, and financial fraud
- Implement AI-driven fraud detection systems to analyze trading patterns and suspicious activities
- Work closely with KYC, AML, and Compliance teams to mitigate risks related to financial crime
- Establish protocols for secure identity verification, access control, and user authentication
- Compliance & Regulatory Security
- Ensure compliance with CySEC and other regulatory security requirements
- Lead security audits, penetration testing, and vulnerability assessments to meet industry standards
- Define security policies aligning with GDPR, PSD2, and other data privacy regulations
- Coordinate with regulatory bodies to ensure continuous compliance with cybersecurity laws
- Data Leak Prevention & Office Security
- Preventing data theft from office premises, including equipment, documents, and company valuables
- Supporting and maintaining security tools used in the office
- Protecting employee and corporate data from unauthorized access
- Securing company documents to prevent leaks
- Identifying and mitigating risks related to data breaches in company operations and processes
- Leadership & Strategy
- Build and lead a high-performing security team, including security engineers, analysts, and risk specialists
- Develop security awareness training for employees, fostering a strong security culture
- Oversee third-party security vendors, risk assessments, and partnerships
- Report security risks, incidents, and mitigation strategies to C-level executives and the board
Requirements
- 10+ years of experience in cybersecurity, risk management, or IT security within financial services, preferably in CFD/FX brokerage
- Proven track record in leading security teams and building cybersecurity programs
- Strong knowledge of infrastructure security (AWS, Azure, GCP, on-premise servers), DevSecOps, and application security
- Experience with SIEM, XDR, IAM, PAM, and fraud detection systems
- Deep understanding of regulatory requirements in financial markets, including AML, KYC, and PSD2 security mandates
- Experience in passing security audits for SOC 2 and PCI DSS
- Bachelor's or Masterβs degree in Cybersecurity, Computer Science, or a related field
- Relevant certifications such as CISSP, CISM, CISA, CEH, OSCP, or CCSP
- Strong analytical and problem-solving mindset
- Excellent communication skills, capable of influencing executive leadership
- Ability to thrive in a high-pressure, fast-paced trading environment
We offer
- Work in a transparent, client-focused environment where every trading decision fosters long-term trust and exceptional service
- Opportunity to tackle the thrilling challenges of a rapidly expanding environment
- Lead the charge in implementing cutting-edge technologies and strategies to drive the company's success
- 10 medical leave days per year
- 21 annual leave days per year
- Public holiday in accordance with the Cyprus Public Holiday list
- Medical insurance
- Compensation for professional education, learning English
- Compensation for a sports subscription or sports equipment
- Extensive relocation package for you and your family
- Cybersecurity & Infrastructure Protection
-
Β· 40 views Β· 6 applications Β· 19d
Team Lead GRC (Governance, Risk and Compliance)
Ukraine Β· Product Β· 5 years of experience Β· Upper-IntermediateFAVBET Tech develops software that is used by millions of players around the world for the international company FAVBET Entertainment. We develop innovations in the field of gambling and betting through a complex multi-component platform which is capable...FAVBET Tech develops software that is used by millions of players around the world for the international company FAVBET Entertainment.
We develop innovations in the field of gambling and betting through a complex multi-component platform which is capable to withstand enormous loads and provide a unique experience for players.
FAVBET Tech does not organize and conduct gambling on its platform. Its main focus is software development.Main areas of work:
- Betting/Gambling Platform Software Development β software development that is easy to use and personalized for each customer;
- Highload Development β development of highly loaded services and systems;
- CRM System Development β development of a number of services to ensure a high level of customer service, effective engagement of new customers and retention of existing ones;
- Big Data β development of complex systems for processing and analysis of big data;
- Cloud Services β we use cloud technologies for scaling and business efficiency.
Responsibilities:
- Implementation of an information security management system (ISMS) and ensuring the companyβs compliance with international standards and internal policies;
- Development, updating and implementation of internal regulatory documents;
- Development of a threat model;
- Conducting information security risk assessments, developing and overseeing the implementation of risk mitigation plans;
- Development, implementation and support of a user awareness program (SETA);
- Support for external and internal information security audits;
- Improvement and optimization of IS processes, development of performance metrics and quality control of the IS function, reporting;
- Participation in strategic planning and determining development directions.
Requirements:
- At least 3 years of experience in Information Security, including 1 year in a managerial role;
- Experience in implementing an ISMS and certifications for compliance with IS standards;
- Deep knowledge of international IS standards and legislation (ISO 27001, PCI DSS, GDPR);
- Experience in developing regulatory documentation;
- Knowledge and practical skills in risk and incident management, SETA and audit;
- Experience in project and change management;
- English β Upper-Intermediate level or higher.
Will be a plus:
- Holding certifications such as ISO, CISM, CISA, CISSP, or equivalent is a plus
- Knowledge of other standards of the ISO 270xx series, NIST SP 800, NIST CSF, CIS Controls
We can offer:
- 30 days off per year (vacation and sick days) β we value rest and recreation. We also comply with the national holidays.
- Medical insurance for employees and the possibility of training employees at the expense of the company and gym membership.
- Remote work; after Ukraine wins the war β our own modern lofty office with spacious workplace, and brand-new work equipment (near Pochaina metro station).
- Flexible work schedule β we expect a full-time commitment but do not track your working hours.
- Flat hierarchy without micromanagement β our doors are open, and all teammates are approachable.
During the war, the company actively supports the Ministry of Digital Transformation of Ukraine in the initiative to deploy an IT army and has already organized its own cyber warfare unit, which makes a crushing blow to the enemyβs IT infrastructure 24/7, coordinates with other cyber volunteers and plans offensive actions on its IT front line.
More -
Β· 23 views Β· 1 application Β· 19d
Security Engineer (C++/Robotics)
Office Work Β· Ukraine (Lviv) Β· Product Β· 3 years of experience Β· IntermediateResponsibilities: Perform comprehensive security audits of our C++ based robotics software stack. Identify, analyze, and mitigate security vulnerabilities in embedded systems, network interfaces, cloud infrastructure and application logic. Design and...Responsibilities:
- Perform comprehensive security audits of our C++ based robotics software stack.
- Identify, analyze, and mitigate security vulnerabilities in embedded systems, network interfaces, cloud infrastructure and application logic.
- Design and implement security improvements such as secure communication protocols, secure boot, access control, and firmware protection.
- Establish security guidelines and best practices for the development team.
- Collaborate with software and hardware teams to integrate security into our CI/CD and development processes.
Lead or support incident response and root-cause analysis for any discovered security issues.
Requirements:
- Experience with C++ development.
- Strong understanding of cybersecurity principles, including threat modeling, secure coding, authentication, and encryption.
- Familiarity with secure communications (TLS, SSH), code signing, and access control mechanisms.
- Hands-on experience with VPN technologies (e.g., OpenVPN) and secure remote access strategies.
- Experience with Linux-based systems and debugging security-related issues.
- Ability to conduct static and dynamic code analysis, fuzz testing, and vulnerability scanning.
- Excellent communication and documentation skills.
-
Β· 72 views Β· 20 applications Β· 17d
Senior Anti-Fraud Specialist
Full Remote Β· Worldwide Β· Product Β· 2 years of experience Β· IntermediateWhat makes you a great match 3+ Experience in fraud detection, risk management, or a similar role within the gambling industry; Strong analytical skills and ability to work with large data sets; Experience with traffic analysis and gaming fraud...π§ What makes you a great match
- 3+ Experience in fraud detection, risk management, or a similar role within the gambling industry;
- Strong analytical skills and ability to work with large data sets;
- Experience with traffic analysis and gaming fraud detection;
- Excellent communication and decision-making skills;
B1+ level of English.
π Your daily adventures
- Create a comprehensive antifraud strategy aligned with business goals;
- Conduct daily player verification, maintain reports, and communicate with partners for in-depth checks;
- Analyze risk team decisions, challenge when necessary, and monitor flagged players;
- Act as the main point of contact for fraud-related concerns across departments;
- Investigate traffic upon request, conduct regular traffic checks, and automate reporting;
- Review game mechanics for prohibited features, test games for bonus campaigns, and assess potential fraud risks;
- Monitor internal and partner communications, provide risk assessments, and offer fraud prevention recommendations.
π What we offer- ποΈ Time to recharge β 20 working days of paid vacation annually, plus 2 additional business days off each quarter.
- π Remote-first & flexible β Work from anywhere, with the freedom to shape your day.
- π» Modern equipment β Weβll set you up with everything you need to do your best work.
- π Growth support β English language training, a personal learning budget, career path clarity, and access to top industry events.
- π§ Well-being matters β Mental health support, fitness perks, and a culture that respects your time and boundaries.
- π§© Empowered culture β Transparent communication, diverse perspectives, and impact-driven collaboration.
-
Β· 59 views Β· 10 applications Β· 12d
Information Security Specialist
Full Remote Β· Countries of Europe or Ukraine Β· Product Β· 3 years of experience Β· IntermediateAt WhiteTech, we empower businesses in the financial ecosystem with cutting-edge white-label and SAAS solutions. Our comprehensive suite of tools is tailored for EMI, PSP, e-commerce, and open banking platforms. With WhiteTech, clients gain access to a...At WhiteTech, we empower businesses in the financial ecosystem with cutting-edge white-label and SAAS solutions.
Our comprehensive suite of tools is tailored for EMI, PSP, e-commerce, and open banking platforms. With WhiteTech, clients gain access to a platform designed for flexibility, scalability, and seamless integration.
Our mission is to help businesses unlock their full potential in a rapidly evolving financial landscape.
Whether scaling your PSP, enhancing your EMI services, or diving into open banking, WhiteTech is your partner for innovation and growth.
We are a remote-first technology company and welcome applications from candidates across Europe, including the EEA, the UK, Switzerland, and other non-EEA European countries such as Ukraine, Moldova, Georgia, Armenia, Montenegro, Turkey, and the Western Balkans. We also consider applicants from different locations who can work within Central European Time (CET).
Key Responsibilities:
- Support company preparation for PCI DSS and ISO/IEC 27001 certifications
- Develop and implement security policies, procedures, and technical controls
- Collaborate with auditors, technical teams, and business stakeholders
- Analyze logs, incidents, and vulnerabilities; participate in incident investigations
- Support identity and access management (IAM) processes and automation
- Work with SIEM, DLP, and SOC tools and processes
- Perform risk assessments and help implement mitigation measures
- Create security reports and dashboards based on key metrics
Requirements:
- 3+ years of experience in information security
- Knowledge of PCI DSS and ISO/IEC 27001 standards
- Experience with audits or certification processes
- Hands-on experience with security tools: SIEM, vulnerability scanners (e.g., Nessus, Qualys)
- Understanding of RBAC and the principle of least privilege
- Experience developing security documentation (policies, procedures)
Nice to Have:
- Relevant certifications (PCI DSS, ISO 27001, CISSP, CISA, etc.)
- Experience with IAM systems and process automation
- Strong analytical skills and attention to detail
- Team player with the ability to perform under pressure
- English proficiency (for reading technical documentation)
Our recruitment process typically follows these stages:
- Application screening
- Interview Stages (2-3 weeks):
- Prescreen Call with the Recruiter
- Final Interview
- Job Offer
- Referrals: Employment and Background Check
We offer:
- Competitive compensation package (commensurate with your experience)
- Access to paid corporate English lessons (through Preply)
- 19 business days of flexible Paid Time Off (PTO)
- Fully remote work with flexible hours (within the CET time zone) from any location of your choice
- Values-driven culture with a friendly and supportive work environment
- Opportunity to regularly participate in conferences and community events as both a participant and contributor
- Matrix organizational structure designed to streamline communication, remove barriers, and promote efficiency
Embrace the opportunity to develop your skills in a cutting-edge fintech environment.
Please apply now to be part of our dynamic team and make a tangible impact on the future of payments!
Letβs build something great together!
More -
Β· 18 views Β· 0 applications Β· 12d
UEM Senior Engineer IRC267582
Full Remote Β· Poland, Ukraine Β· 6 years of experience Β· Upper-IntermediateDescription Harmonic is seeking for a UEM Security senior engineer for its IT infrastructure team. The candidate will report to the IT infrastructure manager located in Rennes. In this context, the Unified Endpoint Management Senior Engineer is...Description
Harmonic is seeking for a UEM Security senior engineer for its IT infrastructure team. The candidate will report to the IT infrastructure manager located in Rennes.
In this context, the Unified Endpoint Management Senior Engineer is responsible for planning, architecture, design, installation and configuration of UEM services and transition to Windows modern management as a second role.Requirements
- At least 6 years of experience, with strong experience in Unified Endpoint Management and Windows modern management projects implementation, exploitation and support;
- You will need to have in-depth knowledge of: providing Solutions, Implementation, configuration and troubleshooting of various platforms (Linux/Max/Windows/iOS/Android).
Job responsibilities
- Providing Solutions, Implementation, configuration and troubleshooting of various platforms (Linux / Max / Windows / iOS / Android);
- Device security Hardening (password protection, Device settings & Security factors enforcement);
- Device OS upgrades;
- Identification of jailbroken and rooted devices;
- Device and data protection (Encryption, Web filtering, VPN configuration);
Secure apps installed on devices (Installation Restriction, Blacklist of unsecure apps, predefinition of Apps Configs and Permissions); - Monitor data consumption;
- Manage Pro / Personal containers;
- Manage Network and FW settings;
- Remote management (Lost and out-of-compliance devices);
- Execute custom scripts;
- Transversal cooperation with all IT teams to architect UEM;
- Extensive experience in design, installation and exploitation of UEM cloud platform;
- Technical Documentation and Report Creation;
- Experience with AD, GPO, MDT and related technologies/tools;
- Use of Enterprise Management Systems, including Patch Management, Software Distribution and Asset Management;
- opportunities and development automation for the deployment and management of UEM Services.
-
Β· 33 views Β· 5 applications Β· 11d
Security Engineer
Full Remote Β· Ukraine Β· Product Β· 3 years of experience Β· Upper-IntermediateWe are inviting you, a highly motivated and results-oriented Security Engineer to join our team for ensuring and developing solutions, as well as strengthening the product infrastructure. Our team has unique expertise in research, analysis, and product...We are inviting you, a highly motivated and results-oriented Security Engineer to join our team for ensuring and developing solutions, as well as strengthening the product infrastructure.
Our team has unique expertise in research, analysis, and product development. By relying on technical insights and a data-driven approach, we create disruptive future-defining innovations of the fin-tech industry that remain our basis for success.
Responsibilities
- Develop, implement, maintain, upgrade, and test cybersecurity products
- Provide cybersecurity-related support to users and customers
- Integrate cybersecurity solutions into systems and services, ensuring their stability and performance
- Securely configure systems, services, and products
- Maintain and upgrade the security of systems, services, and products
- Implement cybersecurity procedures and controls
- Monitor and ensure the performance of the implemented cybersecurity controls
- Document and report on the security of systems, services, and products
- Work closely with the Engineering teams on cybersecurity-related actions
Implement, apply, and manage patches to products to address technical vulnerabilities
Requirements
- 3+ years of experience in information security and cybersecurity roles
- Background in development, DevOps, system administration, etc.
- Hands-on experience in developing, integrating, and testing security solutions
- Experience with vulnerability analysis and incident response
- Proficiency in scripting languages such as Python, Bash, PowerShell, etc
- Solid understanding of secure development lifecycle, operating system security, and computer network security
- Experience with both offensive and defensive security practices
- Knowledge of cybersecurity controls, solutions, and technologies
- Ability to collaborate with cross-functional teams and colleagues
- Effective communication and presentation skills to report to stakeholders
- Strong analytical and problem-solving skills
- Reliability, integrity, and responsibility in handling sensitive information and security tasks
Upper-Intermediate English
Will be a plus
- Experience with Ruby, Go, or other programming languages
Security certifications
We offer
- Tax expenses coverage for private entrepreneurs in Ukraine
- Expert support and guidance for Ukrainian private entrepreneurs
- 20 paid vacation days per year
- 10 paid sick leave days per year
- Public holidays as per the companyβs approved Public holiday list
- Medical insurance
- Opportunity to work remotely
- Professional education budget
- Language learning budget
- Wellness budget (gym membership, sports gear and related expenses)
-
Β· 28 views Β· 4 applications Β· 11d
Senior Application Security Engineer
Full Remote Β· Ukraine Β· 5 years of experience Β· Upper-IntermediateRequirements Proven 5+ years of commercial expertise in software development using Rust or Go. 2+ years of experience in application security, with a focus on secure software development. Deep understanding of common software vulnerabilities and...Requirements
- Proven 5+ years of commercial expertise in software development using Rust or Go.
- 2+ years of experience in application security, with a focus on secure software development.
- Deep understanding of common software vulnerabilities and exploitation techniques (e.g., memory safety, race conditions, injection flaws, deserialization attacks).
- Hands-on experience performing secure code reviews, threat modeling, and vulnerability assessments of modern applications.
- Familiarity with static application security testing (SAST) and dynamic application security testing (DAST) tools, and experience interpreting their results.
- Proficiency with secure design principles such as least privilege, defense in depth, secure defaults, and threat mitigation strategies.
- Experience integrating security testing into CI/CD pipelines and DevSecOps workflows.
- Knowledge of cryptographic best practices, including key management, secure protocols, and implementation pitfalls.
- Ability to assess the security posture of open-source dependencies and apply appropriate remediation strategies.
- Understanding of supply chain security, secure software lifecycle (SSDLC), and SBOM (Software Bill of Materials) practices.
- Strong knowledge of container security (Docker, Kubernetes), and cloud-native security controls (AWS, GCP, or Azure).
- Working knowledge of compliance standards such as ISO 27001, PCI DSS, and SOC 2.
- Upper-Intermediate English level.
- Be able to overlap minimum 6 hours with US Eastern Time (EST)
Nice to have skills
- Experience with blockchain technology or smart contract security.
- Security certifications (e.g., OSCP, CEH, CSSLP, GIAC).
- Experience with financial services or fintech security requirements (e.g., PCI DSS, SOC 2).
Responsibilities
- Perform security-focused code reviews and audits for applications written in Rust or Go.
- Develop and integrate security features, such as input validation, encryption, and authentication mechanisms.
- Build tools to automate vulnerability detection and enforce secure coding standards.
- Work with development teams to address security issues and implement secure design patterns.
- Monitor and respond to new vulnerabilities in open-source dependencies and runtime environments.
- Contribute to internal security training and best practice guidelines.
- Participate in threat modeling, penetration testing, and security architecture reviews.
Benefits- 35 absence days per year for work-life balance
- Udemy courses of your choice
- English courses with native-speaker
- Regular soft-skills trainings
- Excellence Π‘enters meetups
- Online/offline team-buildings
-
Β· 37 views Β· 0 applications Β· 10d
Network Security Engineer
Full Remote Β· Countries of Europe or Ukraine Β· Product Β· 2 years of experience Β· IntermediateKyivstar Tech is looking for a Network Security Engineer. About us Kyivstar.Tech is a Ukrainian hybrid IT company and a resident of Diia.City. We are a subsidiary of Kyivstar, one of Ukraine's largest telecom operators. Our mission is to change...Kyivstar Tech is looking for a Network Security Engineer.
About us
Kyivstar.Tech is a Ukrainian hybrid IT company and a resident of Diia.City. We are a subsidiary of Kyivstar, one of Ukraine's largest telecom operators.
Our mission is to change lives in Ukraine and worldwide by creating technological solutions and products that unleash the potential of businesses and meet users' needs.
Over 600+ KS.Tech specialists work daily in various areas, including mobile and web solutions and the design, development, support, and technical maintenance of high-performance systems and services.
We believe in innovations that truly bring quality changes and constantly challenge conventional approaches and solutions. Each of us is an adherent of entrepreneurial culture, which allows us never to stop, to evolve, and to create something new.
What will you do
- Operate, administer, and evolve the companyβs network security infrastructure
- Automate routine firewall operations and policy management using Python and APIs
- Investigate network and security incidents; perform traffic analysis and root cause identification
- Collaborate with IT, DevOps, and Security teams to implement secure network designs
- Document configurations, topologies, and workflows for internal and audit use
Qualifications and experience needed
- Experience with Cisco ASA and Cisco Firepower Threat Defense (FTD) firewalls
- Managing and configuring security policies using Cisco Firepower Management Center (FMC)
- Experience administering and configuring Fortinet (FortiGate) security solutions
- Strong knowledge of VPN technologies (IPSec, SSL VPN), NAT, ACLs, routing, and IPS/IDS on Cisco and Fortinet platforms
- Deep understanding of network protocols and services: TCP/IP, UDP, DNS, DHCP, VLANs, STP, ARP, OSPF, BGP
- Excellent troubleshooting skills for network connectivity and security incident investigation
- Experience with traffic monitoring, packet capture (e.g., tcpdump, Wireshark), and log management tools
- Experience with cloud technologies, Azure, AWS
- Ability to maintain accurate technical documentation, including network diagrams and configuration records
- English proficiency is sufficient for technical documentation and communication with vendors/support
Proficiency in Python for automation of security operations:
- scripting policy deployments, configuration validation, auditing, and integrations
- working with REST APIs, JSON/XML, and CLI tools
A plus would be
- Exposure to Palo Alto, Check Point, or other NGFW platforms
- Knowledge of Zero Trust architecture, NAC, and microsegmentation
- Experience with log aggregation and SIEM tools (e.g., ELK, Splunk)
What we offer
- Office or remote β itβs up to you. You can work from anywhere, and we will arrange your workplace
- Remote onboarding
- Performance bonuses for everyone (annual or quarterly β depends on the role)
- We train employees with the opportunity to learn through the companyβs library, internal resources, and programs from partnersβ―
- Health and life insurance
- Wellbeing program and corporate psychologist
- Reimbursement of expenses for Kyivstar mobile communication
-
Β· 128 views Β· 14 applications Β· 8d
TechOps/Security/Infrastructure Engineer
Full Remote Β· Ukraine Β· Product Ukrainian Product πΊπ¦We are an international product holding that creates and scales digital products across global markets. Currently, we are looking for a TechOps/Security/Infrastructure Engineer to join our team Key Responsibilities: Managing domains and DNS...We are an international product holding that creates and scales digital products across global markets. Currently, we are looking for a TechOps/Security/Infrastructure Engineer to join our team
πΉKey Responsibilities:πΉ- Managing domains and DNS (registration, renewal, bulk domain replacement).
- Working with registrars (Namecheap, GoDaddy, GCore, etc.).
- Managing DNS records, configuring Cloudflare, SSL certificates, and proxying.
- Handling servers and hosting (ordering VPS/VDS), tracking payments, renewal dates, and auto-renewals.
- Collecting and managing all technical credentials (panels, SMTP, proxy, etc.).
πΉRequirements:πΉ
- At least 1 year of experience in a similar role.
- Ability to work in a multitasking environment.
- Experience with cryptocurrency wallets and payment systems.
- Technical operations experience in one of the following: traffic arbitrage, affiliate marketing, SaaS, or AdTech.
- Hands-on experience with Keitaro, Cloudflare, hosting panels, and domain zones.
πΉWhat We Offer:πΉ
- Stable work in an international company with 10+ years on the market.
- Opportunities for professional growth.
- A results-driven team that values initiative.
πΉWork Conditions:πΉ
- Schedule: MonβFri, 10:00 AM β 6:00 PM.
- A skilled team and room for development.
- Office in Kyiv (3β4 minutes from the metro), fully operational.
- Option to work remotely.
-
Β· 17 views Β· 4 applications Β· 7d
Senior DevSecOps Engineer
Full Remote Β· Countries of Europe or Ukraine Β· Product Β· 3 years of experience Β· IntermediateFAVBET Tech develops software that is used by millions of players around the world for the international company FAVBET Entertainment. We develop innovations in the field of gambling and betting through a complex multi-component platform which is capable...FAVBET Tech develops software that is used by millions of players around the world for the international company FAVBET Entertainment.
We develop innovations in the field of gambling and betting through a complex multi-component platform which is capable to withstand enormous loads and provide a unique experience for players.
FAVBET Tech does not organize and conduct gambling on its platform. Its main focus is software development.
Main areas of work:- Betting/Gambling Platform Software Development β software development that is easy to use and personalized for each customer.
- Highload Development β development of highly loaded services and systems.
- CRM System Development β development of a number of services to ensure a high level of customer service, effective engagement of new customers and retention of existing ones.
- Big Data β development of complex systems for processing and analysis of big data.
- Cloud Services β we use cloud technologies for scaling and business efficiency.
Responsibilities:
- Define information security requirements for developed or acquired software
- Test the implementation of security requirements, including compliance with security standards
- Ensure the security of CI/CD processes and Dev/Test environments
- Monitor and enhance the security posture (hardening) of deployed software (on-premise, SaaS, containers)
- Participate in web application penetration testing and collaborate with development teams, internal, and external auditors
- Implement, maintain, and improve security systems (including HashiCorp Boundary, HashiCorp Vault, Cisco Duo)
- Promote secure coding practices and develop training programs for developers
- Create regular reports and metrics to assess the security posture and effectiveness of implemented measures
Skills:
- At least 3 years of experience in application security or DevSecOps
- Deep understanding of application security principles, common vulnerabilities (OWASP Top 10), and the Secure Software Development Life Cycle (SSDLC)
- Understanding of CI/CD processes and build/release systems (e.g., GitLab CI)
- Strong knowledge of AWS, Kubernetes, containerized and microservices architectures, and their security tools
- Proficient in Linux
- Experience working with web servers
- Hands-on experience with infrastructure automation tools such as Terraform, Ansible, Helm, and ArgoCD
- Practical scripting skills (Python, Bash, and others)
- English level: B1 (Intermediate)
Preferred:
- Experience in DevSecOps environments
- Familiarity with SAST, DAST, or SCA tools
- Knowledge and hands-on experience implementing cloud security solutions, including WAF, DDoS protection, IDS/IPS
- Experience with PowerShell
- Ability to create and maintain technical documentation
We offer:
- 30 day off β we value rest and recreation;
- Medical insurance for employees and the possibility of training employees at the expense of the company and gym membership;
- Remote work or the opportunity β our own modern lofty office with spacious workplace, and brand-new work equipment (near Pochaina metro station);
- Flexible work schedule β we expect a full-time commitment but do not track your working hours;
- Flat hierarchy without micromanagement β our doors are open, and all teammates are approachable.
During the war, the company actively supports the Ministry of Digital Transformation of Ukraine in the initiative to deploy an IT army and has already organized its own cyber warfare unit, which makes a crushing blow to the enemyβs IT infrastructure 24/7, coordinates with other cyber volunteers and plans offensive actions on its IT front line.
More -
Β· 24 views Β· 3 applications Β· 7d
Middle DevSecOps Engineer
Full Remote Β· Countries of Europe or Ukraine Β· Product Β· 2 years of experience Β· IntermediateFAVBET Tech develops software that is used by millions of players around the world for the international company FAVBET Entertainment. We develop innovations in the field of gambling and betting through a complex multi-component platform which is capable...FAVBET Tech develops software that is used by millions of players around the world for the international company FAVBET Entertainment.
We develop innovations in the field of gambling and betting through a complex multi-component platform which is capable to withstand enormous loads and provide a unique experience for players.
FAVBET Tech does not organize and conduct gambling on its platform. Its main focus is software development.
Main areas of work:- Betting/Gambling Platform Software Development β software development that is easy to use and personalized for each customer.
- Highload Development β development of highly loaded services and systems.
- CRM System Development β development of a number of services to ensure a high level of customer service, effective engagement of new customers and retention of existing ones.
- Big Data β development of complex systems for processing and analysis of big data.
- Cloud Services β we use cloud technologies for scaling and business efficiency.
Responsibilities:
- Participate in defining information security requirements for developed or acquired software
- Test implemented security requirements, ensuring compliance with security standards
- Contribute to securing CI/CD processes and Dev/Test environments
- Monitor and enhance the security posture (hardening) of deployed software (on-premise, SaaS, containers)
- Support the development and administration of security systems (including HashiCorp Boundary, HashiCorp Vault, Cisco Duo)
Skills:
- At least 2 years of experience in application security or DevSecOps
- Understanding of application security principles, common vulnerabilities (OWASP Top 10), and the Secure Software Development Life Cycle (SSDLC)
- Understanding of CI/CD processes and familiarity with relevant tools (e.g., GitLab CI)
- Understanding of and experience with AWS, Kubernetes, and their security capabilities
- Knowledge of Linux and scripting skills in Shell/Bash and Python
- Experience working with web servers
- Practical experience with infrastructure automation tools such as Terraform, Ansible, Helm, and ArgoCD
- English level: B1 (Intermediate)
Preferred:
- Experience with SAST, DAST, or SCA tools
- Understanding of modern web application and microservices architecture
- Knowledge of cloud security solutions, including WAF, DDoS protection, IDS/IPS
- Experience with PowerShell
- Ability to create and maintain technical documentation
We offer:
- 30 day off β we value rest and recreation;
- Medical insurance for employees and the possibility of training employees at the expense of the company and gym membership;
- Remote work or the opportunity β our own modern lofty office with spacious workplace, and brand-new work equipment (near Pochaina metro station);
- Flexible work schedule β we expect a full-time commitment but do not track your working hours;
- Flat hierarchy without micromanagement β our doors are open, and all teammates are approachable.
During the war, the company actively supports the Ministry of Digital Transformation of Ukraine in the initiative to deploy an IT army and has already organized its own cyber warfare unit, which makes a crushing blow to the enemyβs IT infrastructure 24/7, coordinates with other cyber volunteers and plans offensive actions on its IT front line.
More