
Search by job, company or skills
Responsibilities and Requirements
. At least 4 years combined work experience in software development, application security and
cloud computing (e.g. AWS)
. Familiar with mobile and web application programming interfaces (API) architecture (e.g. REST,
SOAP, SSL/TLS)
. Experience in threat modelling and able to establish threat profiles for application projects to
identify, quantify and remediate application security risks
. Strong knowledge of security best practices such as OWASP Top 10, OWASP application security
verification standard
. Familiar with Agile Development process, CI/CD, DevOps concepts, tools (Gitlab, Github,
Ansible etc) and how automated security testing can be incorporated into CI/CI pipelines
. Experience on using SAST code scanning tools such as Fortify-on-Demand, Sonarqube, etc
. Track and address security vulnerabilities with timely remediation and patching processes.
. Conduct security awareness training sessions
. Good verbal/written communications, collaboration skills and experience interacting with
various stakeholders
. Strong analytical, problem-solving and troubleshooting skills, ability to work independently
. Relevant certifications preferred (eg. CISSP, OSCP, AWS security, AWS DevOps Engineer or
equivalent etc.)
. Experience in working with Government Commercial Cloud (GCC) preferred
Job ID: 149001515
Skills:
secure sdlc , Vulnerability Management, Fortify, SSL, Devops, Application Security, Sonarqube, Agile, Owasp Top 10, Tls, SAST tools, SOAP APIs, CI CD, Security Assessments, threat modelling, OWASP ASVS
Skills:
Github, Sonarqube, Soap, SSL, Devops, REST, Ansible, Owasp Top 10, Gitlab, Tls, AWS, OWASP application security verification standard, Fortify-on-Demand, CI CD, Agile Development process, threat modelling, API architecture, SAST code scanning tools
Skills:
Agile Development Methodologies, Soap, SSL, REST, Sonarqube, Tls, AWS, Fortify-on-Demand, security scanning tools, SAST tools, DevOps practices, CI CD pipelines
Skills:
ssl tls , secure sdlc , Github, Cloud Security, Vulnerability Management, Fortify, Soap, Rest Api, DevSecOps, Application Security, Ansible, Sonarqube, Gitlab, Owasp Top 10, Security Awareness Training, Threat Modelling, CI CD, SAST, GCC Cloud Environment, OWASP ASVS, AWS Security
Skills:
telemetry , Cloud security, Cloud networking, Vulnerability Management, Containers, Penetration Testing, Terraform, Logging, Observability platforms, AWS security services, Automated control validation, Security analytics, Serverless
We don’t charge any money for job offers