Senior Security Engineer​

EPAM Systems Kutná Hora, Czech Republic

Company

EPAM Systems

Location

Kutná Hora, Czech Republic

Type

Full Time

Job Description

We are looking for a Security SAST Engineer with expertise in static application security testing, especially using GitHub CodeQL, to join our security team.
This role involves analyzing Java libraries and client projects to uncover security vulnerabilities and potential risks in the code. You'll also be developing and maintaining CodeQL queries to enhance SAST coverage, as well as conducting false-positive/false-negative analyses to ensure accuracy in SAST results.

#LI-DNI

Responsibilities

  • Conduct security analysis on Java libraries and SAP projects to identify vulnerabilities or unsafe code patterns
  • Develop, test, and maintain custom CodeQL queries to improve SAST coverage and effectiveness
  • Manage and update existing CodeQL queries to align with project needs and security standards
  • Perform in-depth false-positive/false-negative analyses to refine SAST accuracy and reduce deviations in CodeQL results
Requirements

Want more jobs like this?

Get jobs in Kutná Hora, Czech Republic delivered to your inbox every week.

By signing up, you agree to our Terms of Service & Privacy Policy.
  • Experience with SAST tools (preferably GitHub CodeQL) and a solid understanding of SAST workflows
  • Basic proficiency in Java and ability to read and interpret code across various programming languages
  • Experience with GitHub Actions and GitHub Advanced Security (GHAS) is a plus
  • Knowledge in Python, JavaScript, and C# is an advantage
  • Strong attention to detail and problem-solving skills for precise query writing and code analysis
Nice to have
  • Experience with rule or query writing for SAST tools
  • Background in secure coding practices and code review
We offer
  • Opportunity to work in a fast-paced, agile, software engineering culture
  • Comfortable modern office in Prague 7, with support of hybrid or fully remote mode
  • Benefit program (5 weeks of vacation, paid sick days, paid days off for special occasions, meal vouchers, flexi pass, Prague city public transport annual coupon, multisport cards, optional contribution to pension fund, health insurance for family member)
  • EPAM Employee Stock Purchase Plan (ESPP) (subject to certain eligibility requirements)
  • English language courses
  • Czech language courses upon request
  • Referral bonuses for recommended candidates
  • Mobile Phone Tariff's program for managerial-level candidates
  • Great learning and development opportunities, including in-house professional training, career advisory and coaching, sponsored professional certifications, well-being programs, LinkedIn Learning Solutions and much more
Certain benefits and perks may be subject to eligibility requirements and may be available only after you have passed your probationary period.

Apply Now

Date Posted

11/02/2024

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Kernel CIFS developer - SUSE

Views in the last 30 days - 0

SUSE a global leader in open source solutions is seeking a CIFS Kernel Developer The role involves developing and maintaining the cifsko kernel filesy...

View Details

Human Resources Manager - Eaton

Views in the last 30 days - 0

Eatons ES AMER ARS division is recruiting for a Human Resources Manager The role involves serving as a business partner strategic solution provider an...

View Details

Engineering Supervisor (Welding) - Eaton

Views in the last 30 days - 0

Eatons Administrative division is recruiting for an Engineering Supervisor Welding position The role involves designing and implementing welding proce...

View Details

Data Engineering Architect - Mastercard

Views in the last 30 days - 0

Mastercard is seeking a Data Engineering Architect to lead the AWS cloudbased data architecture for their Loyalty and Services group The role involves...

View Details

Student Engineer - Gaso - Garrett Advancing Motion

Views in the last 30 days - 0

The job involves supporting component engineers with administrative tasks and engineering activities conducting tests defined by the AS team creating ...

View Details

Student Engineer - ECOE - Garrett Advancing Motion

Views in the last 30 days - 0

Garrett a renowned brand in the automotive industry with over 65 years of history is seeking a skilled student for a longterm collaboration in their t...

View Details