Vacancy catalog
EPAM
Open role

Senior Security Engineer

EPAMLviv, Ukraine
Work model
Remote
Experience
3+ years
Employment
Not specified
Compensation
Not disclosed
Technology signal
11 tags

Technology context

11

Parsed from the vacancy text; ordered by relevance to this role.

GCPKubernetesCloudDevSecOpsScalabilityCI/CDSecurity assessmentSecurity EngineeringSecurity HardeningSecurity Testing ToolsVulnerability Management

Full listing

Role description

We are looking for a Senior Security Engineer to join a team building security solutions that help organizations monitor, assess and improve the security posture of open-source software. The work focuses on a platform for unified visibility into open-source vulnerabilities and a solution that provides security ratings for open-source libraries, enabling better risk-based decisions across development teams.

Responsibilities

  • Contribute to the development and enhancement of solutions for open-source vulnerability monitoring and security rating
  • Support and improve CI/CD pipelines and GitHub Actions - based workflows
  • Apply DevSecOps and secure engineering practices throughout the software lifecycle
  • Collaborate closely with cross-functional teams to deliver scalable, reliable and secure solutions
  • Share knowledge and support overall product quality as a team player

Requirements

  • 3+ years of experience in security engineering with expertise in DevSecOps orchestration, Secure Software Development Life Cycle and security-as-code
  • Knowledge of open-source security including Software Composition Analysis and OSS license compliance
  • Understanding of CVSS scoring, exploitability analysis and vulnerability remediation strategies
  • Hands-on experience securing GitHub Actions workflows and integrating security gates into CI/CD pipelines
  • Familiarity with security guidelines and standards
  • Strong communication skills, ownership mindset and ability to work effectively in a team environment
  • English proficiency at B2 level or higher