Cybersecurity Specialist

dcg GmbHGdańsk, Warszawa, Gdynianofluffjobspublished 09/21/2026
Must-have:AISecuritySenior

Private medical care

Co-financing for the sports card

Constant support of dedicated consultant

Employee referral program

Daily tasks

  • Support threat modelling workshops with application and platform teams
  • Assist in identifying critical assets, trust boundaries, attack surfaces, threat actors, abuse cases, and security risks
  • Create, maintain, and update threat models using approved methodologies, tools, templates, and threat libraries
  • Review solution designs, architecture documentation, and application data flows in cooperation with senior security specialists
  • Map relevant threat scenarios to application components, data flows, and predefined security controls
  • Document identified threats, risks, assumptions, mitigation actions, and remediation requirements
  • Cooperate with development and security teams to gather required information and support remediation activities
  • Track identified threats, mitigation actions, and remediation progress

Requirements

Minimum 3 years of professional experience in cybersecurity, IT security, application security, or a related area

Knowledge of IT Security Architecture principles

Basic practical knowledge of threat modelling methodologies, particularly STRIDE

Understanding of cybersecurity threats related to AI agents, machine learning systems, and Large Language Models (LLMs)

Ability to support the identification of assets, trust boundaries, attack surfaces, threat actors, and abuse scenarios

Experience working with or maintaining existing threat models and threat libraries

Ability to map identified threats to relevant security controls and remediation actions

Fluency in English (both written and spoken) Nice to have:

Ability to translate technical security threats into understandable business risks Basic knowledge of the OWASP Top 10 for LLM Applications Familiarity with MITRE ATLAS and its use as a reference framework for AI-related threat assessments

Must have: Stride