Join the Cybersecurity team of one of the largest financial institutions in the world. You will be a key part of the Secure Development team, reporting to the Global Head of Secure Development Lifecycle Support. You will be responsible for providing the security tooling for security scanning services.
Your role
- Contributing to developing and adopting security utilities and tools that enable development teams to operate more efficiently and securely
- Designing, developing, and supporting development teams with security recommendations and adoption of tools
- Identifying and developing processes, procedures, and tools
- Liaising with Developers and Project Managers to understand the working of an application
- Staying up to date within the industry with new trends and best practices
- Training and supporting developer and security champion activities to improve the quality of security scanning services to maximize the benefit for application teams
- Overseeing changes in the risk profile through the development of metrics and analysis of risks and controls
- Supporting the team with activities such as quality reviews, audit requirements, and service desk management
Your skills
Understanding of integration and automation of various security technologies including SAST, DAST, MAST, IAST, container security tools within the DevOps tooling pipelineProficiency in one or more industry security toolingHands-on experience in DevSecOps with a focus on securitySolid experience with platform-specific security risks, common vulnerabilities for the web, and architectures commonly used by mobile applications (HTML, XML, JavaScript, JSON, REST, Microservices etc.)Knowledge of security flaws in Java, J2EE, Objective C, Swift and Kotlin programming languagesFamiliarity with common public cloud environments including AWS, GCP, Azure, AlicloudSignificant experience with implementing vulnerability identification tools within the development pipelinePrevious work with Vulnerability Scoring System (CVSS)Experience with emerging technologies and their corresponding security threats would be beneficialEnglish at an advanced levelJob no.240701-HLT3U