Search Jobs

Search by job, company or skills

Application Security Consultant

Application Security Consultant

ox consultancy pte. ltd.
4-7 Years
SGD 6,500 - 8,500 per month
  • Posted a day ago
  • Be among the first 10 applicants

Job Description

. At least 4 years combined work experience in software development, application security and cloud computing (e.g. AWS)

. Familiar with mobile and web application programming interfaces (API) architecture (e.g. REST, SOAP, SSL/TLS)

. Experience in threat modelling and able to establish threat profiles for application projects to identify, quantify and remediate application security risks

. Strong knowledge of security best practices such as OWASP Top 10, OWASP application security verification standard

. Familiar with Agile Development process, CI/CD, DevOps concepts, tools (Gitlab, Github,

. Ansible etc) and how automated security testing can be incorporated into CI/CI pipelines

. Experience on using SAST code scanning tools such as Fortify-on-Demand, Sonarqube, etc

. Track and address security vulnerabilities with timely remediation and patching processes.

. Conduct security awareness training sessions

. Good verbal/written communications, collaboration skills and experience interacting with various stakeholders

. Strong analytical, problem-solving and troubleshooting skills, ability to work independently

. Relevant certifications preferred (eg. CISSP, OSCP, AWS security, AWS DevOps Engineer or equivalent etc.)

. Experience in working with Government Commercial Cloud (GCC) preferred.

More Info

Job Type:
Industry:
Employment Type:

Key Skills

OWASP application security verification standard

Fortify-on-Demand

CI CD

Agile Development process

threat modelling

API architecture

SAST code scanning tools

Similar Jobs

4-6 yrs
SGD 8,000 - 15,000 per month
Singapore, Kallang
Skills:
Google Cloud Platform, Fortify, Vulnerability Assessment, Burp Suite, Docker, Sonarqube, Application Security Testing, Microsoft Azure, Kubernetes, AWS, DAST Tools, Secure Coding Practices, OWASP ZAP