yandex
S
stage
Страна
Ирландия
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
В офисеПолная занятость

Product Security Engineer

Оценка ИИ

KKR — престижный мировой бренд с отличными возможностями для карьерного роста. Позиция предлагает работу с передовыми технологиями безопасности в стабильной и высокодоходной индустрии.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Роль требует глубоких знаний в области AppSec, DevSecOps и проведения пентестов. Высокая ответственность в рамках крупной финансовой организации и необходимость взаимодействия с глобальными командами повышают порог входа.

Анализ зарплаты

Медиана85 000 €
Рынок70 000 € – 110 000 €
Оценка ИИ

Зарплата в объявлении не указана, но для позиции Product Security Engineer в Дублине рыночные показатели весьма высоки. Предлагаемый диапазон соответствует стандартам крупных международных финансовых и технологических компаний в Ирландии.

Сопроводительное письмо

I am writing to express my strong interest in the Product Security Engineer position at KKR. With a solid background in application security and a deep understanding of the SDLC, I am confident in my ability to contribute to KKR’s mission of maintaining a robust security posture for its internally developed and external-facing applications. My experience in conducting penetration tests and integrating security tools into CI/CD pipelines aligns perfectly with the responsibilities outlined for this role.

Throughout my career, I have focused on bridging the gap between development and security, ensuring that secure coding practices are not just a requirement but a core part of the engineering culture. I am particularly drawn to KKR’s collaborative environment and the opportunity to work on leading-edge solutions within the financial services sector. I am eager to bring my expertise in vulnerability management and cloud security to your global team and help protect KKR’s critical assets.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в stage уже сейчас

Присоединяйтесь к глобальному лидеру инвестиций KKR и станьте ключевым экспертом по безопасности инновационных продуктов!

Описание вакансии

COMPANY OVERVIEW

KKR is a leading global investment firm that offers alternative asset management as well as capital markets and insurance solutions. KKR aims to generate attractive investment returns by following a patient and disciplined investment approach, employing world-class people, and supporting growth in its portfolio companies and communities. KKR sponsors investment funds that invest in private equity, credit and real assets and has strategic partners that manage hedge funds. KKR’s insurance subsidiaries offer retirement, life and reinsurance products under the management of Global Atlantic Financial Group. References to KKR’s investments may include the activities of its sponsored funds and insurance subsidiaries.

POSITION SUMMARY

KKR is seeking an experienced Product Security Professional. This role offers exciting opportunities for growth and impact as KKR scales its business and continues to innovate. As a Security Analyst, you will be responsible for designing, implementing, and maintaining security measures across our environment specific to our internally developed applications and external facing applications. You must be proficient in troubleshooting, vulnerability management, cloud security, application security, and have a deep understanding of a wide range of systems, and be capable of leading other teams in these efforts. You will work closely with IT and other business units to ensure our security posture remains strong, aligned with industry best practices, and compliant with regulatory requirements. You will also be looking over the horizon, identifying future needs and exploring leading edge solutions.

RESPONSIBILITIES:

  • Conduct application security assessments and penetration tests to identify vulnerabilities and security issues.
  • Work closely with the software development team to ensure that secure coding practices are implemented throughout the application development lifecycle.
  • Design and implement security solutions to protect applications from potential threats.
  • Provide guidance and recommendations on application security best practices.
  • Maintain knowledge of the latest security trends, threats, and countermeasures.
  • Participate in incident response and handling activities related to application security incidents.
  • Conduct security awareness and training sessions for the development team to promote secure coding practices.
  • Develop and maintain application security standards, policies, and procedures.
  • Report and document security findings and remediation activities.
  • Integrate security tools and practices into the continuous integration/continuous delivery (CI/CD) pipeline.

QUALIFICATIONS

  • Bachelor's degree in Computer Science, Information Technology, or a related field.
  • Proven experience as an Application Security Engineer or similar role.
  • Strong understanding of software development life cycle (SDLC) and secure coding practices.
  • Proficiency in conducting security assessments and penetration tests.
  • Experience with security tools and technologies such as firewalls, VPNs, intrusion detection/prevention systems (IDS/IPS), and network access control (NAC).
  • Knowledge of regulatory requirements and industry best practices related to application security.
  • Experience with cloud security and DevSecOps practices.
  • Familiarity with OWASP Top Ten and other security frameworks
  • Team-player who enjoys working in a collaborative and collegial environment and is an active contributor as part of a global team
  • Ability to work calmly under pressure and meet deadlines and solve problems requiring creativity, initiative and drive; self-motivated and enjoys a sense of pride in their accomplishments
  • Ability to present ideas in a user-friendly, business-friendly and technical language
  • Strategic self-starter with an innovative mindset and outstanding attention to detail

#LI-ONSITE

KKR is an equal opportunity employer.  Individuals seeking employment are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, sexual orientation, or any other category protected by applicable law.

KKR will provide reasonable accommodations as required by applicable federal, state, and/or local laws. Individuals seeking an accommodation for the application or interview process should email Benefits@kkr.com. Emails sent for unrelated issues, such as following up on an application, will not receive a response.

If you are a qualified individual with a disability or a disabled veteran, you may request a reasonable accommodation if you are unable or limited in your ability to use or access https://www.kkr.com/careers because of your disability. You can request reasonable accommodations by sending an email to Benefits@kkr.com. Only emails left for this purpose will be returned.

Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. This notice applies only to applicants and employees who work or will work in Massachusetts, in accordance with applicable state law.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • CI/CD
  • Vulnerability Management
  • Cloud Security
  • OWASP
  • DevSecOps
  • VPN
  • Firewalls
  • Penetration Testing
  • IDS/IPS
  • Application Security
  • SDLC
  • Network Access Control

Возможные вопросы на собеседовании

Проверка понимания основных рисков веб-приложений.

Расскажите о вашем опыте работы с OWASP Top Ten: какие уязвимости вы находили чаще всего и как помогали разработчикам их устранять?

Оценка навыков автоматизации безопасности.

Как бы вы организовали интеграцию инструментов статического (SAST) и динамического (DAST) анализа в существующий CI/CD пайплайн?

Проверка умения работать с облачными инфраструктурами.

С какими специфическими вызовами безопасности вы сталкивались при защите приложений, развернутых в облаке (AWS/Azure)?

Оценка навыков коммуникации и влияния.

Как вы убеждаете команду разработки приоритизировать исправление уязвимостей, когда у них сжатые сроки по выпуску фич?

Проверка реакции на инциденты.

Опишите ваш опыт участия в реагировании на инциденты безопасности, связанные с прикладным уровнем. Какова была ваша роль?

Похожие вакансии

J
JETLYN
210 000 ₽ – 260 000 ₽

Специалист по защите информации (Mobile Security Engineer)

SeniorУдалённоРоссия
iOS · Cryptography · Jailbreak · HTTPS · REST API · gRPC · TCP · UDP · HTTP · Protobuf · JSON · Avro · MessagePack · Reverse Engineering
+14 навыков
AG
Atom group
4 000 $ – 5 000 $

Senior Information Security (ИБ)

SeniorУдалённоБеларусь
Information Security · DevSecOps · SDLC · Risk Management · Security Policy · DevOps
+6 навыков
S
SDOdev
380 000 ₽ – 500 000 ₽

Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)

SeniorУдалённоРоссия
Android · iOS · TCP/IP · HTTPS · Cryptography · MITM · Frida · Objection · Apktool · Jadx · Hopper · Smali · Hermes · Swift · Dart · Objective-C · C++ · Reverse Engineering · Cybersecurity
+19 навыков
И
ИНФОБЕЗ
100 000 ₽ – 500 000 ₽

Специалист по информационной безопасности (Пентестер)

УдалённоРоссия
Kali Linux · Metasploit · NMAP · Burp Suite · sqlmap · OWASP Top 10 · C++ · Python · JavaScript · PHP · MSSQL · MySQL · RCE
+13 навыков
OZ
Operation Zero
450 000 ₽ – 900 000 ₽

Исследователь безопасности Android

УдалённоРоссия
Android · Reverse Engineering · Exploit Development · Kernel Research · C++ · ARM Assembly · Java · Ghidra · IDA Pro · Linux Kernel · Kotlin · JavaScript
+12 навыков
NDA
Не указана

Senior AppSecOps Engineer

SeniorУдалённоБеларусь
AppSec · C++ · Go · Java · SAST · SCA · Svace · CodeScoring · Jira · GitLab · GCC · Make · Linux Kernel
+13 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

S
stage
Страна
Ирландия