Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузи резюме
описание
InPost provides e-commerce parcel delivery, fulfilment and courier services through a network of automated parcel machines and pick-up and drop-off points across nine European countries.
задачи
Assess the security and review the secure design of AI, LLM and agentic systems across InPost’s technology estate
Identify, reproduce and analyze vulnerabilities in AI-powered and agentic systems, and work with engineering teams to fix root causes
Define and build engineered security controls for AI/ML and LLM-related risks
Build security automation and developer-facing tooling to help product and engineering teams build securely by default
Review new AI solutions and system architectures for security risks, and represent security in AI governance forums and the AI solutions catalogue
Apply hands-on cloud and container security practices across AWS, Azure and GCP to secure AI infrastructure
Serve as a go-to expert on AI-specific attack classes and keep InPost’s defenses ahead of the evolving threat landscape
Translate technical and security findings into clear, practical guidance for business stakeholders
требования
5+ Years of experience in application security or product security
5+ Years of coding experience in one or more general-purpose languages, including shipping and operating production services
5+ Years of experience with security assessments, secure design reviews or threat modeling
Solid understanding of generative AI, LLMs and AI agents, including how they are built and deployed in production
Deep knowledge of AI-specific attack classes and how they apply to real systems
Experience securing agentic, code-execution or LLM-integrated systems
Track record of finding and analyzing vulnerabilities in real systems
Experience building engineered security controls, not just flagging issues
Hands-on cloud and container security experience on AWS, Azure or GCP
Strong presentation skills and ability to explain complex technical and security topics in clear business terms to a wide range of stakeholders
Good English skills for confident communication in an international environment
Будет плюсом: security automation or developer-facing security tooling, working knowledge of the OWASP Top 10 for LLM Applications and OWASP Top 10 for Agentic Applications, working knowledge of MITRE ATLAS