# Application Security Engineer

[Solidgate](https://gurify.com/jobs?q=Solidgate) · Warsaw · Posted 8 months ago

[Security](https://gurify.com/jobs/security)

[Apply on the original posting → (opens in a new tab)](https://jobs.ashbyhq.com/solidgate/27bd50e1-8161-4e53-bb08-94508d3004f6)

## Job description

### Our Mission and Vision

At Solidgate, our mission is clear: to empower outstanding entrepreneurs to build exceptional internet companies. We exist to fuel the builders — the ones shaping the digital economy — with the financial infrastructure they deserve. To achieve that, we’re on a bold path: to become the #1 payments orchestration platform in the world.

We believe the future of payments is shaped by people who think big, take ownership, and bring curiosity and drive to everything they do. That’s exactly the kind of teammates we want on board.

We're building the #1 payment orchestrator in the world — and the names behind us prove it. Clients include Bolt, Ajax, Nova Post, MEGOGO. Trusted by giants like J.P. Morgan. Ranked #2 in the "Employer of the Year 2026" award by Forbes Ukraine.

### About the Role

Solidgate builds financial infrastructure for fast-growing internet businesses worldwide. Our platform processes millions of payments daily and operates in a highly regulated fintech environment, where security is a core product requirement — not an afterthought.

Our engineering organization builds and scales a complex cloud-native platform with over 120 microservices. As the company continues to grow, we are strengthening our security organization and introducing a dedicated Application Security Engineer role.

The mission of this role is to keep our business and revenue safe by building security into the way we develop software — from early design decisions to CI/CD pipelines and live production systems.

This is a hands-on Application Security role focused on embedding security into the software development lifecycle and reducing real product risks.

### You will work closely with engineering teams to:

- design secure application architectures

- improve secure coding practices

- detect vulnerabilities early in the development lifecycle

- continuously improve application security as part of everyday engineering work

You will have a direct impact on how secure software is built across a large microservices ecosystem, influencing standards, tooling, and engineering culture.

Explore our technology stack ➡️ here https://solidgate-tech.github.io/.

### What You Will Own

As an Application Security Engineer, you will be responsible for application-level security across our fintech platform, including:

- Building and maintaining secure coding standards and supporting their adoptionl across development teams

- Conducting threat modeling during architecture and design stages

- Implementing and improving application security testing, including: SAST, DAST, Dependency and secrets scanning, CI/CD security checks

- Performing regular application security assessments and maturity evaluations (OWASP ASVS, OWASP SAMM)

- Managing the full vulnerability lifecycle: triage, prioritization, remediation support, and validation

- Supporting external penetration testing and Bug Bounty programs

- Identifying and mitigating security risks in cloud environments and CI/CD pipelines

### You are a great fit if you have

- At least 2 years of experience in Application Security or Product Security

- Hands-on experience with OWASP Top 10 vulnerabilities

- Practical experience with: secure code reviews, threat modeling, SAST and DAST tools and their integration into CI/CD pipelines

- Strong understanding of web application and API security

- Ability to communicate clearly with engineers and work as a partner rather than a blocker

### Nice to Have

- Experience with container security and cloud security tooling

- Familiarity with DevSecOps and shift-left security practices

- Experience automating application security processes

- Background as a software engineer or close collaboration with development teams

Why Join Solidgate?

Build security that matters. Lead initiatives that define how security is embedded into our software development lifecycle across multiple teams and products.

Your expertise counts. Enjoy real autonomy — propose, test, and implement security practices and tooling that directly improve product resilience and reduce risk.

Room to experiment. Apply modern AppSec, automation, and shift-left approaches with full support from engineering and security leadership.

Impact & visibility. See the results of your work directly in more secure products, fewer vulnerabilities, and stronger engineering practices.

Collaborative environment. Work side by side with experienced, curious engineers who treat security as a shared responsibility and value partnership over gatekeeping.

The Extras: 30+ days off, unlimited sick leave, free office meals, health coverage, and Apple gear to keep you productive. Courses, conferences, sports and wellness benefits — all designed for ideas, focus, and fun.

Tomorrow’s fintech needs your mindset. Come build it with us.

🫂 Know top talent? We’re always on the lookout. Recommend someone https://jobs.ashbyhq.com/solidgate/form/external-referral-program for our role, and if they get hired, there’s a bonus waiting for you — simple as that.

**Live in Solidgate’s hiring system.** Read from the company's own applicant tracking system, not reposted from a job board — so it's a real, open requisition rather than an ad that outlived the role.

We remove it as soon as it disappears at source.

## More jobs like this

- AW [Application Security Engineer (f/m/d)](https://gurify.com/job/application-security-engineer-f-m-d-at-awin-fb24719a88c0) Awin · Berlin, Poland · last week
- TA [Cloud Security Engineer](https://gurify.com/job/cloud-security-engineer-at-tango-f1269c61ab1e) Tango · Warszawa, Poland · last week
- RT [Staff Security Engineer](https://gurify.com/job/staff-security-engineer-at-rtbhouse-14f338af67a4) Rtbhouse · Warsaw, Poland · 2 weeks ago
- OS [Senior Backend Engineer , Experience Edge](https://gurify.com/job/senior-backend-engineer-experience-edge-at-ox-security-2e6f8a5753c0) Ox Security · Poland · 3 days ago
- TR [Senior Application Security Engineer](https://gurify.com/job/senior-application-security-engineer-at-tripadvisor-e6adf974d3c7) Tripadvisor · Oxford, London · last week
- OS [Vibesec](https://gurify.com/job/vibesec-at-ox-security-742020ab9eef) Ox Security · Poland · 4 days ago

```json
{"@context":"https://schema.org/","@type":"JobPosting","title":"Application Security Engineer","description":"\u003Ch3\u003EOur Mission and Vision\u003C/h3\u003E\u003Cp\u003EAt Solidgate, our mission is clear: to empower outstanding entrepreneurs to build exceptional internet companies. We exist to fuel the builders \u2014 the ones shaping the digital economy \u2014 with the financial infrastructure they deserve. To achieve that, we\u2019re on a bold path: to become the #1 payments orchestration platform in the world.\u003C/p\u003E\u003Cp\u003EWe believe the future of payments is shaped by people who think big, take ownership, and bring curiosity and drive to everything they do. That\u2019s exactly the kind of teammates we want on board.\u003C/p\u003E\u003Cp\u003EWe\u0026#39;re building the #1 payment orchestrator in the world \u2014 and the names behind us prove it. Clients include Bolt, Ajax, Nova Post, MEGOGO. Trusted by giants like J.P. Morgan. Ranked #2 in the \u0026quot;Employer of the Year 2026\u0026quot; award by Forbes Ukraine.\u003C/p\u003E\u003Ch3\u003EAbout the Role\u003C/h3\u003E\u003Cp\u003ESolidgate builds financial infrastructure for fast-growing internet businesses worldwide. Our platform processes millions of payments daily and operates in a highly regulated fintech environment, where security is a core product requirement \u2014 not an afterthought.\u003C/p\u003E\u003Cp\u003EOur engineering organization builds and scales a complex cloud-native platform with over 120 microservices. As the company continues to grow, we are strengthening our security organization and introducing a dedicated Application Security Engineer role.\u003C/p\u003E\u003Cp\u003EThe mission of this role is to keep our business and revenue safe by building security into the way we develop software \u2014 from early design decisions to CI/CD pipelines and live production systems.\u003C/p\u003E\u003Cp\u003EThis is a hands-on Application Security role focused on embedding security into the software development lifecycle and reducing real product risks.\u003C/p\u003E\u003Ch3\u003EYou will work closely with engineering teams to:\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003Edesign secure application architectures\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003Eimprove secure coding practices\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003Edetect vulnerabilities early in the development lifecycle\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003Econtinuously improve application security as part of everyday engineering work\u003C/li\u003E\u003C/ul\u003E\u003Cp\u003EYou will have a direct impact on how secure software is built across a large microservices ecosystem, influencing standards, tooling, and engineering culture.\u003C/p\u003E\u003Cp\u003EExplore our technology stack \u27A1\uFE0F here https://solidgate-tech.github.io/.\u003C/p\u003E\u003Ch3\u003EWhat You Will Own\u003C/h3\u003E\u003Cp\u003EAs an Application Security Engineer, you will be responsible for application-level security across our fintech platform, including:\u003C/p\u003E\u003Cul\u003E\u003Cli\u003EBuilding and maintaining secure coding standards and supporting their adoptionl across development teams\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EConducting threat modeling during architecture and design stages\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EImplementing and improving application security testing, including: SAST, DAST, Dependency and secrets scanning, CI/CD security checks\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EPerforming regular application security assessments and maturity evaluations (OWASP ASVS, OWASP SAMM)\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EManaging the full vulnerability lifecycle: triage, prioritization, remediation support, and validation\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003ESupporting external penetration testing and Bug Bounty programs\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EIdentifying and mitigating security risks in cloud environments and CI/CD pipelines\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003EYou are a great fit if you have\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EAt least 2 years of experience in Application Security or Product Security\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EHands-on experience with OWASP Top 10 vulnerabilities\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EPractical experience with: secure code reviews, threat modeling, SAST and DAST tools and their integration into CI/CD pipelines\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EStrong understanding of web application and API security\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EAbility to communicate clearly with engineers and work as a partner rather than a blocker\u003C/li\u003E\u003C/ul\u003E\u003Ch3\u003ENice to Have\u003C/h3\u003E\u003Cul\u003E\u003Cli\u003EExperience with container security and cloud security tooling\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EFamiliarity with DevSecOps and shift-left security practices\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EExperience automating application security processes\u003C/li\u003E\u003C/ul\u003E\u003Cul\u003E\u003Cli\u003EBackground as a software engineer or close collaboration with development teams\u003C/li\u003E\u003C/ul\u003E\u003Cp\u003EWhy Join Solidgate?\u003C/p\u003E\u003Cp\u003EBuild security that matters. Lead initiatives that define how security is embedded into our software development lifecycle across multiple teams and products.\u003C/p\u003E\u003Cp\u003EYour expertise counts. Enjoy real autonomy \u2014 propose, test, and implement security practices and tooling that directly improve product resilience and reduce risk.\u003C/p\u003E\u003Cp\u003ERoom to experiment. Apply modern AppSec, automation, and shift-left approaches with full support from engineering and security leadership.\u003C/p\u003E\u003Cp\u003EImpact \u0026amp; visibility. See the results of your work directly in more secure products, fewer vulnerabilities, and stronger engineering practices.\u003C/p\u003E\u003Cp\u003ECollaborative environment. Work side by side with experienced, curious engineers who treat security as a shared responsibility and value partnership over gatekeeping.\u003C/p\u003E\u003Cp\u003EThe Extras: 30\u002B days off, unlimited sick leave, free office meals, health coverage, and Apple gear to keep you productive. Courses, conferences, sports and wellness benefits \u2014 all designed for ideas, focus, and fun.\u003C/p\u003E\u003Cp\u003ETomorrow\u2019s fintech needs your mindset. Come build it with us.\u003C/p\u003E\u003Cp\u003E\u0026#129730; Know top talent? We\u2019re always on the lookout. Recommend someone https://jobs.ashbyhq.com/solidgate/form/external-referral-program for our role, and if they get hired, there\u2019s a bonus waiting for you \u2014 simple as that.\u003C/p\u003E","identifier":{"@type":"PropertyValue","name":"Gurify","value":"application-security-engineer-at-solidgate-31a7a93119b7"},"url":"https://gurify.com/job/application-security-engineer-at-solidgate-31a7a93119b7","datePosted":"2026-01-21","validThrough":"2026-11-04T23:59:59Z","hiringOrganization":{"@type":"Organization","name":"Solidgate","sameAs":"https://jobs.ashbyhq.com/solidgate"},"directApply":false,"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressCountry":"PL","addressLocality":"Warsaw"}}}
```

```json
{"@context":"https://schema.org/","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Jobs","item":"https://gurify.com/jobs"},{"@type":"ListItem","position":2,"name":"Poland","item":"https://gurify.com/jobs/poland"},{"@type":"ListItem","position":3,"name":"Application Security Engineer","item":"https://gurify.com/job/application-security-engineer-at-solidgate-31a7a93119b7"}]}
```
