Tech Stack
Cyber SecurityPythonRubySDLC
About the role
- Embed security throughout the entire product lifecycle, from architecture to deployment
- Guide engineering and product teams on secure software development practices (SDLC)
- Lead threat modeling, penetration testing, and system architecture reviews
- Manage the full Vulnerability Management lifecycle
- Design, build, and automate internal security tools to support operations
- Conduct technical risk assessments for new products or updates
- Perform internal security audits and ensure alignment with best practices
- Communicate findings in clear, actionable reports for non-technical stakeholders
- Monitor key security metrics and identify continuous improvement areas
- Lead incident response and root cause analysis efforts
Requirements
- Strong hands-on experience in penetration testing and vulnerability assessments
- Ability to conduct and lead threat modeling sessions
- Experience implementing and maintaining modern security tools and services
- Proficient in scripting (Python, PowerShell, Ruby, or similar)
- Solid understanding of cryptography, authentication, and authorization methods
- Skilled in incident response and root cause analysis
- Strong interpersonal and communication skills
- Fluent in English and Russian (spoken and written)
- Motivated to stay ahead of the curve in cybersecurity trends and practices
- Familiarity with frameworks like ISO 27001, NIST, GDPR, HIPAA (bonus)
- Team-oriented mindset with excellent collaboration skills (bonus)
- Adaptability in fast-changing technical environments (bonus)