Jobiglo

Aucun resultat.

Senior Application Security Engineer

EPAM Systems

Remote
Remote Senior 🇬🇧 English
Venafi F5 Azure Key Vault OpenBao Privileged Access Management SIEM SOAR SAST DAST SCA IAST ASPM OPA Conftest Azure Policy CI/CD Entra ID Active Directory GPO M365 groups PaloAlto Cloudflare

Description du poste

About the role

We are seeking a Senior Application Security Engineer to lead the integration of security tooling and policy automation within our Unified Automation Platform. The role focuses on reducing security gaps and enabling secure self‑service across Azure and on‑premises VMware environments.

Key responsibilities

  • Implement and operate certificate‑management integration with Venafi, including issuance workflows, distribution to F5, Azure Key Vault, and VM/OS stores, and renewal automation.
  • Build and maintain secrets‑management integration using OpenBao and Azure Key Vault, covering configuration‑as‑code for authentication methods, namespaces, mounts, policies, and dynamic secret engines.
  • Develop the Privileged Access Management “break‑the‑glass” workflow with time‑boxed grants, approval automation, session recording hooks, and audit logging.
  • Create SIEM and WAF alert‑integration pipelines, entity correlation, severity views, and a Vulnerability Dashboard aggregating findings from SAST, DAST, SCA, IAST and ASPM scanners.
  • Implement Policy as Code checks with OPA/Conftest and Azure Policy, including baseline libraries, CI gate integration, and exemption workflows.
  • Support Auth/RBAC configuration from a security‑tooling perspective (Entra ID, Active Directory, GPOs, M365 groups) and ensure proper audit‑retention settings.
  • Collaborate with Network Architect to translate firewall/WAF requirements (PaloAlto, F5, Cloudflare) into SIEM/WAF alerts and dashboard data.
  • Assist SOC and IAM teams during security reviews, providing evidence and configuration details for integrations.

Required profile

  • 3+ years of hands‑on experience with security‑tool integrations such as certificate lifecycle, secrets management, and PAM workflows.
  • Proven experience building SIEM/SOAR alert pipelines and vulnerability‑management tooling.
  • Strong knowledge of Policy as Code implementation and CI/CD gate enforcement.
  • Solid understanding of enterprise identity and access management (Entra ID, Active Directory, RBAC).
  • Familiarity with firewall/WAF concepts and ability to define alerting requirements.
  • Excellent written and spoken English (B2+ level).

Required skills

  • Venafi
  • F5
  • Azure Key Vault
  • OpenBao
  • Privileged Access Management (PAM)
  • SIEM / SOAR
  • SAST, DAST, SCA, IAST, ASPM
  • OPA / Conftest
  • Azure Policy
  • CI/CD pipelines
  • Entra ID
  • Active Directory
  • Group Policy Objects (GPO)
  • Microsoft 365 groups
  • PaloAlto
  • Cloudflare

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec EPAM Systems.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Pourquoi signalez-vous cette offre ?

Merci pour votre signalement. Nous allons examiner cette offre.

Postulez en 30 secondes

Entrez votre email pour postuler. Un compte sera cree automatiquement.

En continuant, vous acceptez nos conditions d'utilisation.

Deja un compte ? Connexion

💬 Contactez-nous sur Telegram Discuter sur WhatsApp

Publie il y a 2 semaines

Expire dans 1 mois

22 vues · 0 interesses

Boostez vos chances

Importez votre CV : nous vous proposons les offres qui matchent votre profil.

Analyse de votre CV en cours...

EPAM Systems