DevSecOps Engineer \ Cloud Security Engineer

Bucharest, Romania /
GPO EMEA - Engineering /
Full-time
About PayU 
PayU, a leading payment and Fintech company in 50+ high-growth markets throughout Asia, Central and Eastern Europe, Latin America, the Middle East and Africa, part of Prosus group, one of the largest technology investors in the world is redefining the way people buy and sell online for our 300.000+ merchants and millions of consumers. 

As a leading online payment service provider, we deploy more than 400 payment methods and PCI-certified platforms to process approximately 6 million payments every single day. 

About PayU


PayU, a leading payment and Fintech company in 50+ high-growth markets throughout Asia, Central and Eastern Europe, Latin America, the Middle East and Africa, part of Prosus group, one of the largest technology investors in the world is redefining the way people buy and sell online for our 300.000+ merchants and millions of consumers.

As a leading online payment service provider, we deploy more than 400 payment methods and PCI-certified platforms to process approximately 6 million payments every single day.


About the Role


Here at PayU we have a cloud-native payments gateway helping our customers grow their global businesses and we are looking for a Senior Security Engineer to help us secure it. We are looking for someone to help us design and deploy security solutions to protect PayU products against the ever-increasing landscape of security threats and ensure we are in line with our regulatory obligations. If helping our team to secure a hyper-modern Infrastructure as Code, container-based, Cloud-hosted global payments service sounds like an interesting challenge, we are looking for you.



 

What are we looking for?

    • Experience with cloud security on one of the leading cloud providers (AWS is an advantage)
    • Experienced in Container Security and Container orchestration Security (Kubernetes Security is an advantage)
    • 3 years of experience in one of:
    • Offensive/defensive security testing
      Deploying and operating security systems
      Application Security \ Product Security Architecture 
    • Knowledge of attacks and mitigation methods and knowledge in 2 or more of the following: 
    • Network protocols and secure network design 
    • Operating system internals and hardening (e.g. Windows, Linux, OS X)
    • Web application and browser security
    • Security assessments and penetration testing
    • Secure coding and security code reviews
    • Applied cryptography and security protocols
    • Building security into CI/CD pipelines 
    • Security monitoring and intrusion detection
    • Incident response and forensics
    • Experience with distributed systems
    • Experience in supporting cloud development pipelines using Git, CI/CD tooling, Terraform, and other Infrastructure as Code tooling as appropriate
    • Programming experience in multiple languages is highly accomplished especially if you like working in JavaScript and have a real passion for learning new languages.
    • Curiosity and dedication to learning and are able to apply new knowledge in a pragmatic and timely manner.

    • Nice to have: AWS Certification Security and Kubernetes Security certification (CKS)

Excited yet? Continue reading to find out more about the role:
 
What you’ll be doing:

Design and build great software solutions to meet complex, system-wide requirements
Understand business requirements and translate them into code
Debug and consider test implications across protocol and architectural stacks
Work independently, yet know when to ask for input
Working on all aspects of securing products and production environments
Triaging, analyzing, and investigating security issues
Writing code that identifies and exploits software and hardware defects and gaps
Building security tools that automate red team and pentest operations
Integrating and adopting new security tools into the system and the development lifecycle
Working within a culture that is fast-paced, dynamic, and self-directed
Understanding complex systems from the API layer to infrastructure


What we offer:
Career progression program
Wellbeing programs
Flexible program and hybrid way of working
Free subscription to an Internal Elearning platform with courses from Udemy, Coursera, and many others
ruly International Environment with almost 40 different cultures
An inclusive environment that listens to a diverse range of voices when making decisions.
A positive, get-things-done workplace
A dynamic, constantly evolving space (change is par for the course – important you are comfortable with this)
Ability to learn cutting edge concepts and innovation in an agile start-up environment with a global scale
A democratic work environment where you can drive your outcomes

About us:  
At PayU, we are a global fintech investor and our vision is to build a world without financial borders where everyone can prosper. We give people in high-growth markets the financial services and products they need to thrive. Our expertise in 18 high-growth markets enables us to extend the reach of financial services. This drives everything we do, from investing in technology entrepreneurs, to offering credit to underserved individuals, to helping merchants buy, sell and operate online. Being part of Prosus, one of the largest technology investors in the world, gives us the presence and expertise to make a real impact. Find out more www.payu.com 

Our Commitment To Building A Diverse And Inclusive Workforce 
As a global and multi-cultural organization with varied ethnicities thriving across locations, we realize that our responsibility towards fulfilling the D&I commitment is huge. Therefore, we continuously strive to create a diverse, inclusive and safe environment, for all of our people, communities and customers. Our leaders are committed to create an inclusive work culture which enables transparency, flexibility and unbiased attention to each and every PayUneer so they can succeed, irrespective of gender, color or personal faith. An environment where every person feels they belong, that they are listened to, and where they are empowered to speak up. At PayU we have zero tolerance towards any form of prejudice whether a specific race, ethnicity, or of persons with disabilities or the LGBTQ communities.