Backend Developer
генерация резюме под вакансию
сопроводительное письмо
описание
EPAM develops enterprise software products, open source solutions, and technology accelerators.
задачи
- Define and deliver As-Is and Target Security Architecture assessments, High-Level Security Design Documents, and LLDs for major transformation programs;
- Design secure integration patterns for REST APIs, microservices, event-driven systems, and batch processing in payment environments;
- Assess other architects’ solution designs, identify security gaps, evaluate risks, and recommend mitigations and best practices;
- Apply security standards and principles including OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, HSM, secrets management, network zoning, and firewall configurations;
- Track and manage security design decisions, document risk implications, and negotiate options with Technology, Business, and Risk stakeholders;
- Collaborate with delivery teams to embed secure-by-design principles across architecture and implementation;
- Ensure security design compliance with PSD2, SWIFT CSP, PCI DSS, and local requirements;
- Support engineering teams during implementation and resolve security-related technical challenges.
требования
- 7+ Years of experience in network or security architecture roles, preferably within financial services or large-scale digital transformation;
- Proven ability to produce and govern security architecture artifacts, including As-Is/Target states, HLDs, and LLDs;
- Expertise in security design for APIs, microservices, system integration, and sensitive data flows;
- Strong knowledge of OAuth2, OIDC, SAML2, mTLS/PKI, encryption, tokenization, and secrets management;
- Experience addressing risk through secure design patterns and engaging with architecture, compliance, and business stakeholders;
- Hands-on familiarity with protocols, data flows, application behaviors, and infrastructure-level security considerations;
- Excellent communication skills and ability to influence technical and business teams;
- Nice to have: Relevant security or architecture certification such as SABSA or TOGAF, knowledge of payment solutions and platforms such as FIS, ACI, Temenos, and Finastra, previous full-stack engineering experience, infrastructure security architecture experience for high availability and resilience, container security and hybrid cloud platforms, DevSecOps practices, CI/CD security tools, secure software supply chain principles, data security designs, classifications, and migration strategies.
условия
- No conditions specified
навыки
Если просят войти через iCloud, отправить коды из SMS, запустить код, что-то установить, перевести деньги или сделать что угодно, связанное с деньгами, не соглашайтесь: это признаки мошенничества.