Talent.com
Application Security Analyst

Application Security Analyst

EuroclearPolska
24 dni temu
Opis pracy

Job Description

The role requires a self-motivated analyst conversant and experienced with the use of static code testing for application risk assessment. Static Application Security Testing is performed as part of the overall application testing process. The individual is required to be experienced in security of applications and how they need to be protected. The individual is also required to be experienced with static test tools in order to assess application security. Euroclear currently uses HCL Appscan to test source code so experience with this toolset would be an advantage. Coordination will be required with application owners for testing and assessment of findings.

The main responsibilities :

  • Develop and scan applications based upon a variety of different languages (.net, java, C, etc)
  • Assess application results for false and true positives
  • Produce reports of findings, remediation options and risk analysis.
  • Present & discuss the results to all relevant collaborators (technical and non-technical)
  • Advise (senior) collaborators, such as project leads, developers, and analysts on how to remediate and prevent any detected issues
  • Review test results from different sources and perceive threads and issues with applications
  • Drive or support application security efficiencies in cost, delivery and reporting
  • Innovate through automation of testing and improving pipeline delivery

In this role you will come in contact with all types of applications written in a variety of languages and from different technologies including Mainframe applications, web applications and middleware. The candidate will be familiar with some of these situations but be able to quickly assess, understand and test the application. Not only is technical knowledge of application security needed but the ability to converse and convince the developers of the issues and support mitigation.

At times, the candidate will be required to take on other related technical tasks to improve scanning efficiency including automating tasks, pipeline reviews and other related improvements

Technical skills

  • Experience of using SAST and DAST tools required.
  • Coding skills to support automation is an advantage.
  • Sound security design principles, based on confidentiality, integrity and availability requirements and other ISO27002 security principles are an asset;
  • Good understanding of Application security including OWASP TOP 10, and willingness to learn with regard to a broad range of attacks (SQLi, XSS, Overflows, DLL-Hijacking,...)
  • Basic understanding of network principles and protocols
  • Basic understanding of Unix and Windows Operating Systems and security practices
  • Working with a variety of automated test tools and ability to drive improvements across all areas.
  • Soft skills

  • Be an ethical teammate who communicates in an open, supportive and constructive way with their customers and peers, both verbally and in writing. You will take ownership and ensure that interpersonal quality standards are met.
  • Be a very good communicator in English, both verbal and written, and able to discuss and defend the security interests with individuals and groups of senior business people as well as deep technical IT authorities.
  • Be able to work independently, responsibly and expertly with highly confidential information.
  • #li-ns1 About Us

    Why join us

    Embark on your new adventure at Euroclear, and work at the heart of the global capital markets. We connect over 2,000 financial institutions across the globe. As an open and resilient infrastructure, we contribute to the stability of the financial markets. We help clients cut through complexity, lower costs, and mitigate risks of financial transactions. At Euroclear, we have the clear ambition to use our key role to facilitate and accelerate a sustainable global financial system.

    What We Offer :

  • Work closely with inspiring, supportive and engaged colleagues from more than 80 different countries.
  • Practice your talents in a highly professional international environment.
  • Join a learning and development environment with an emphasis on knowledge sharing and training.
  • Competitive salary and comprehensive benefits.
  • New ways of working

    Find your own optimal balance within our hybrid working model, where you can connect at the office and also benefit from remote working.

    Great Place to Work for All

    We are committed to creating an inclusive culture that celebrates diversity and strives to be a Great Place to Work for All. All qualified applicants will be considered for employment, regardless of any aspect that makes them unique (including race, religion, national origin, gender, sexual orientation, age, marital status, pregnancy, disability, ...). If you need any specific accommodation due to disability or any other reason, you can let the recruiter know during your application process.

    About the Team

    As a global critical financial infrastructure, the protection of Euroclear information and assets is fundamental to the companys' business. Security is at the core of our services, firmly embedded in the management systems and processes of the company. You will be joining our Chief Information Security Office (CISO) in charge of putting in place the required controls to adequately and effectively protect our information assets.

    About Us

    Why join us

    Embark on your new adventure at Euroclear, and work at the heart of the global capital markets. We connect over 2,000 financial institutions across the globe. As an open and resilient infrastructure, we contribute to the stability of the financial markets. We help clients cut through complexity, lower costs, and mitigate risks of financial transactions. At Euroclear, we have the clear ambition to use our key role to facilitate and accelerate a sustainable global financial system.

    What We Offer :

  • Work closely with inspiring, supportive and engaged colleagues from more than 80 different countries.
  • Practice your talents in a highly professional international environment.
  • Join a learning and development environment with an emphasis on knowledge sharing and training.
  • Competitive salary and comprehensive benefits.
  • New ways of working

    Find your own optimal balance within our hybrid working model, where you can connect at the office and also benefit from remote working.

    Great Place to Work for All

    We are committed to creating an inclusive culture that celebrates diversity and strives to be a Great Place to Work for All. All qualified applicants will be considered for employment, regardless of any aspect that makes them unique (including race, religion, national origin, gender, sexual orientation, age, marital status, pregnancy, disability, ...). If you need any specific accommodation due to disability or any other reason, you can let the recruiter know during your application process.

    About the Team

    As a global critical financial infrastructure, the protection of Euroclear information and assets is fundamental to the companys' business. Security is at the core of our services, firmly embedded in the management systems and processes of the company. You will be joining our Chief Information Security Office (CISO) in charge of putting in place the required controls to adequately and effectively protect our information assets. #J-18808-Ljbffr

    Utwórz powiadomienie o ofertach pracy dla tego wyszukiwania

    Security Analyst • Polska

    Powiązane stanowiska
    • Promowane
    Application Security Engineer L4 / L5

    Application Security Engineer L4 / L5

    NetflixPolska
    Netflix is one of the world's leading entertainment services, with over 300 million paid memberships in over 190 countries enjoying TV series, films and games across a wide variety of genres and la...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Security Engineer, Application Security

    Security Engineer, Application Security

    DropboxPolska
    Role Description : As part of the Application Security team, you'll focus on reducing risk at scale by building the security infrastructure, automation, and tooling that empowers engineers to ship s...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Information Security Analyst @ Link Group

    Information Security Analyst @ Link Group

    Link GroupRemote, Poland
    At Link Group, we build tech teams for Fortune 500 companies and the world’s most innovative startups.Our mission is to connect talented professionals with opportunities that align with their exper...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Senior Application Security Engineer

    Senior Application Security Engineer

    Trimble Inc.Polska
    Senior Application Security Engineer.UK - Remote, Germany - Remote, Poland - Remote.Trimble is seeking a highly experienced and passionate Senior Application Security Engineer to lead our Software ...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Application Security Engineer

    Application Security Engineer

    Bentley SystemsPolska
    Application Security Engineer (Defender).We are seeking a passionate and skilled.As part of a collaborative group of AppSec experts, you'll play a vital role in protecting our innovative software s...Pokaż więcejOstatnia aktualizacja: 20 dni temu
    • Promowane
    Application Product Security Engineer

    Application Product Security Engineer

    ABB Business ServicesŁódź, Łódź, Poland
    We are an international pioneering technology leader that is writing the future of industrial digitalization.At the forefront is our Corporate Technology Center which provides industry leading soft...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Senior Cyber Security Analyst (Vulnerability Management) (m / f)

    Senior Cyber Security Analyst (Vulnerability Management) (m / f)

    Bosch GroupPolska
    At Bosch, we shape the future by inventing high-quality technologies and services that spark enthusiasm and enrich people's lives. Our promise to our associates is rock-solid : we enjoy our work, we ...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Google SecOps Security Architect

    Google SecOps Security Architect

    Sii Sp. z o.o.Łódź, łódzkie, Polska
    Google SecOps Security Architect.We are looking for an experienced Security Architect with strong expertise in Google SecOps (formerly Google Chronicle) to lead and support our SIEM Transformation ...Pokaż więcejOstatnia aktualizacja: 10 dni temu
    • Promowane
    Application Security Engineer

    Application Security Engineer

    Veeam SoftwarePolska
    Veeam, the #1 global market leader in data resilience, believes businesses should control all their data whenever and wherever they need it. Veeam provides data resilience through data backup, data ...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Cloud Application Security Engineer (Middle / Senior)

    Cloud Application Security Engineer (Middle / Senior)

    Veeam SoftwarePolska
    Veeam, the #1 global market leader in data resilience, believes businesses should control all their data whenever and wherever they need it. Veeam provides data resilience through data backup, data ...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Mobile Application Security Engineer | Senior

    Mobile Application Security Engineer | Senior

    nexos.aiPolska
    Join the AI revolution by contributing to our team's mission - helping businesses efficiently deploy AI at scale.With us, you'll be building distributed systems, designing reliable and adaptive sol...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Cyber Security Business Analyst @ AVENGA (Agencja Pracy, nr KRAZ : 8448)

    Cyber Security Business Analyst @ AVENGA (Agencja Pracy, nr KRAZ : 8448)

    AVENGA (Agencja Pracy, nr KRAZ : 8448)Remote, Poland
    The Cyber Business Analyst is responsible to oversee, manage and be accountable for delivering the value of a transformation project. To this extend this role needs to deal with a multitude of stak...Pokaż więcejOstatnia aktualizacja: 24 dni temu
    • Promowane
    Cybersecurity Engineer / Cloud & Application Security Engineer @ Devire

    Cybersecurity Engineer / Cloud & Application Security Engineer @ Devire

    DevireRemote, Poland
    Clients - leading IT Companies bringing innovations and the newest resolutions to market.Our client is a multinational nutrition leader with global brands and > . Europe, with EMEA tech hubs and end-...Pokaż więcejOstatnia aktualizacja: 21 dni temu
    • Promowane
    • Nowe!
    Application Security Specialist

    Application Security Specialist

    PayU S.A.Polska, Poland (Remote), Polska
    Configure, harden, and troubleshoot.CI / CD pipelines with development teams.Investigate and respond to security incidents. Detailed technical knowledge of.OWASP Top 10 application security risks.Java...Pokaż więcejOstatnia aktualizacja: mniej niż 1 godzinę temu
    • Promowane
    Application Security Specialist

    Application Security Specialist

    Look4IT SolutionsPolska
    Application Security Specialist.In this role, you will be responsible for developing and implementing the company's application security strategy, actively collaborating with development and IT tea...Pokaż więcejOstatnia aktualizacja: 5 dni temu
    • Promowane
    Security Engineer – IAM Saviynt

    Security Engineer – IAM Saviynt

    Sii Sp. z o.o.Łódź, Łódź, Poland
    We are looking for a talented and motivated Identity Governance & Administration (IGA) Engineer to join our team.The ideal candidate will have hands-on experience with the Saviynt Enterprise Identi...Pokaż więcejOstatnia aktualizacja: 19 dni temu
    • Promowane
    Application Security Engineer | Senior | Low-level

    Application Security Engineer | Senior | Low-level

    Nord SecurityPolska
    The world's most advanced VPN, and a whole lot more.If you're a curious problem-solver who carves their own path, join the team behind Threat Protection Pro, the NordLynx protocol, and the fastest ...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu
    • Promowane
    Senior Application Security Engineer - remote within EMEA

    Senior Application Security Engineer - remote within EMEA

    Printful, Inc.Polska
    In November 2024, Printful and Printify came together as two equals and merged to form a global on-demand powerhouse.This role will involve working across our two platforms and brands, a unique and...Pokaż więcejOstatnia aktualizacja: ponad 30 dni temu