Security Engineer

en-nortal· Engineering
Apply Now ↗
🌍 Remote📍 Kraków, PL📍 Lviv, UAOTHER

About this role

Overview

We are looking for a Security Engineer to help embed security practices into the software delivery lifecycle and enable teams to build and release secure products without unnecessary friction. In this role, you will work closely with engineering, product, platform, and security teams to integrate security controls, vulnerability management, and secure engineering practices into day-to-day delivery activities.

As a hands-on technical contributor, you will participate in team ceremonies, conduct security reviews, support incident response activities, and build reusable secure-by-default solutions. You will collaborate with Security Architects and other security specialists to address complex security challenges while helping teams adopt secure development practices and improve overall security maturity.

About Nortal:

We’re Nortal. We think big and create cutting-edge digital solutions with a global reach. And with 25 years of experience, 2,700+ professional experts, and half a billion people worldwide impacted by our work, we believe we’ve got the numbers to back up that statement.

Our global teams have played a significant role in many Fortune 500 companies’ projects and systems and have been the driving force of digital transformation for governments, healthcare institutions, and leading enterprises worldwide. We combine best-in-class strategic consulting with software engineering, data, and design practices to bring our visions to life.

About TUI

TUI is a global business with over 70,000 people on board, a great history and challenging plans for building a digital future. TUI is the largest leisure, travel and tourism company globally, and it owns travel agencies, hotels, airlines, cruise ships and retail shops.

Responsibilities

  • Conduct threat modelling, secure code reviews, and architecture reviews using established security standards and guidance.
  • Identify attack vectors, data flow weaknesses, and authentication and authorisation gaps, and provide actionable remediation guidance.
  • Perform vulnerability discovery, security testing, remediation planning, validation, and prioritisation of findings using established risk frameworks.
  • Configure and maintain security scanning, pipeline gates, secret detection, Infrastructure-as-Code security scanning, and other security automation.
  • Embed security into domain delivery processes through secure design patterns, reusable artefacts, templates, and security requirements.
  • Participate in security incident investigation activities, including evidence gathering, root cause analysis, remediation validation, and post-incident reviews.
  • Support compliance, audit readiness, threat monitoring, and security knowledge sharing across product and platform teams.

Qualifications

  • Experience applying security engineering practices within software, cloud, or platform environments.
  • Knowledge of secure software development principles, threat modelling, vulnerability management, and security testing approaches.
  • Understanding of application, infrastructure, and cloud security risks, attack vectors, and mitigation techniques.
  • Experience with authentication, authorisation, encryption, secrets management, and data protection principles.
  • Familiarity with security tooling for code analysis, vulnerability identification, security testing, and monitoring activities.
  • Working knowledge of cloud security controls, Infrastructure-as-Code, container technologies, modern deployment practices, and incident response processes.
  • Strong analytical, problem-solving, communication, and collaboration skills, with experience implementing security controls in agile delivery environments and working with cloud technologies.

Nortal offers:

  • 24 working days of paid vacation

  • 11 paid national holidays

  • Health care: up to 10 paid sick days, on-demand medical insurance, vaccinations

  • Mental health support: webinars, resources, and compensation for therapy sessions

  • Access to our corporate learning platform

  • Language classes (English)

  • Flexible benefits budget: a fixed monthly amount you can spend on what matters most to you - medical insurance, sports, leisure, fuel, and more

  • 8-hour workday aligned with the client’s working hours

  • Hybrid work options: work from home with the option to use our cozy office space whenever needed

  • Engaging team events and thoughtful gifts throughout the year

In your resume please allow our company to use your personal data

Frequently Asked Questions

Is the salary disclosed for the Security Engineer position at en-nortal?
The salary for this Security Engineer role at en-nortal is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Is the Security Engineer job at en-nortal remote?
Yes, this Security Engineer position at en-nortal is remote, with team members based in Kraków, PL, Lviv, UA. You can work from home or anywhere in the supported regions.
Is the Security Engineer role at en-nortal full-time or part-time?
This is listed as a OTHER position. It is posted as a Security Engineer role in the Engineering department at en-nortal.
Which team or department does the Security Engineer at en-nortal belong to?
This Security Engineer position is part of the Engineering department at en-nortal. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Security Engineer position at en-nortal?
Click the "Apply Now" button on this page. You will be redirected to en-nortal's official application portal hosted on icims where you can submit your application directly.
When was the Security Engineer job at en-nortal posted?
This Security Engineer position at en-nortal was posted on Aug 19, 2026. Apply as soon as possible — early applications are often reviewed first.
Security Engineer
en-nortal
Apply for this role ↗

You'll be redirected to en-nortal's official application page on icims.