Application Security Engineer I

Full Time
Kraków, Poland
10 months ago

At Qualtrics, we create software the world’s best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and a disdain for convention—but most of all it requires close-knit, high-functioning teams with an unwavering dedication to serving our customers. When you join one of our teams, you’ll be part of a nimble group that’s empowered to set aggressive goals and move fast to achieve them. Strategic risks are encouraged and complex problems are solved together, by passing the microphone and iterating until the best solution comes to light. You won’t have to look to find growth opportunities—ready or not, they’ll find you. From retail to government to healthcare, we’re on a mission to bring humanity, connection, and empathy back to business. Join over 6,000 people across the globe who think that’s work worth doing

 

Application Security Engineer I Why We Have This Role

As Qualtrics continues to expand the Experience Management (XM) platform, we must ensure that we’re protecting our customers and their data by building and operating secure systems. As over a thousand software & system engineers contribute to Qualtrics XM every day, we have a large attack surface to evaluate and secure.

Qualtrics is looking for an individual to join our Application Security team as a security engineer.

The Application Security team is responsible for measures to improve and ensure the security of web & mobile applications, code and related components in Qualtrics SaaS products (including those of our acquired companies). The team owns secure development standards and training, security testing tools focused on the application layer (e.g., SAST, DAST, SCA), threat modeling, penetration testing, red team, bug bounty and vulnerability disclosure programs. Application Security works in collaboration with other teams within the Information Security organization, including infrastructure and cloud security, vulnerability management, security operations and incident response, and security assurance.

How You’ll Find Success

You will work effectively with the Qualtrics product engineering organization and fellow security engineers, performing reliable work to help identify and resolve security issues. You will seek to streamline and automate processes in order to deliver maximum results in limited time.

Things You’ll Do
  • Work with automated security testing tools (SAST, DAST, SCA, network and container vulnerability scanners and similar assessment tools) and vulnerability management reporting systems; manage findings, administer the tools, and improve their integration with Qualtrics processes and systems
  • Support bug bounty and vulnerability disclosure programs and penetration testing performed by third parties; triage and validate reported findings
  • Document remediation recommendations and collaborate with engineers to ensure vulnerability findings are successfully and efficiently addressed
  • Participate in penetration testing and threat modeling to help identify or validate vulnerabilities in Qualtrics web applications, systems, networks and mobile applications
  • Automate redundant tasks for assessment and related activities in order to optimize our team’s efficiency and reach
  • Participate in on call rotation to support tools and processes owned by the team
  • Improve team and external documentation
What We’re Looking For On Your CV Minimum Qualifications
  • Bachelor’s degree in Computer Science, Cyber Security or a related field
  • Basic understanding of security principles and common application vulnerabilities (e.g., OWASP Top 10) and threats
Preferred Qualifications
  • Scripting, automation or application development skills in Python or other languages (e.g., Javascript, Typescript, Java, Golang)
  • Familiarity with AWS, Docker, Kubernetes, and Linux
Our Team’s Favourite Perks and Benefits
  • Annual Leave: 20 or 26 annual leave days per annum plus an additional day for each year of service (to a max of 5).
  • Private Medical Insurance- Luxmed health & dental cover for you and your dependants.
  • Commuter Assistance- Up to the value of 80 PLN net a month for public transport.
  • Savings Plan- Two company saving plans provided by Nationale Nederlanden: Employee Capital Plan (PPK) & Employee Saving Plan (PPO)
  • QED PROGRAM- Qualtrics Engineer Development (QED) program: support, engineering learning activities up to 10% of engineering work time each quarter.
  • Wellness- Up to the value of 800PLN gross per quarter can be reimbursed for a variety of wellness activities via our dedicated platform Twic.
  • A choice of Multispot cards available.
  • Our employee assistance program with Unum provides counselling and wellbeing support to all employees
  • Experience bonus- 7000 PLN gross per annum. Qualtrics experience bonus is a program designed to provide experiences to our employees they might not otherwise have.
  • Group Life & Income Protection Insurance
  • Glasses/Contact lenses Reimbursement
  • Free breakfasts, lunches, snacks, and drinks for everyone in the office
  • Tax-deductible expenses (up to 75% depending on role)

 

Qualtrics is an equal opportunity employer meaning that all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other protected characteristic. ​​​​​​​Applicants in the United States of America have rights under Federal Employment Laws: Family & Medical Leave Act, Equal Opportunity Employment, Employee Polygraph Protection ActQualtrics is committed to the inclusion of all qualified individuals. As part of this commitment, Qualtrics will ensure that persons with disabilities are provided with reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please let your Qualtrics contact/recruiter know.   Qualtrics Work Experience - As we look to the future, we believe that our teams are better together. Being together will help us learn more, grow faster and ultimately deliver better results for our customers and Qualtrics. Roles tied to an office location work 4 days per week in the office together and 1 day from home, with a strong spirit of flexibility around taking time for personal, health, and family moments in our work weeks. Our managers work with their teams to create a collaborative, engaged work environment, and arrangement that works for each of our team members.   Not finding a role that’s the right fit for now? Qualtrics Insiders is the one-stop shop for all things Qualtrics Life. Sign up for exclusive access to content created with you in mind and get the scoop on what we have going on at Qualtrics - upcoming events, behind the scenes stories from the team, interview tips, hot jobs, and more. No spam - we promise! You'll hear from us two times a month max with fresh, totally tailored info - so be sure to stay connected as you explore your best role and company fit.