Application Security Specialist | DevSecOps
- Working with data scientists and software delivery teams to ensure technical security standards and architectures are well understood and best practices are followed so the software is developed with Security and Privacy by Design and by Default in mind.
- Raise the awareness of our developers about security best practices
- Automation of security testing (SAST, DAST, SCA, Vulnerability management, threat modelling, etc.) and acquaintance with relevant tooling eg. Github Advance Security, Veracode, Snyk, ThreatAgile, ZAP, Burp, Bug Bounty, etc.
- Interest in Data Science, Engineering and ML Security on Azure and AWS.
- Ownership of the Application Security Chapters by defining technical policies, standards and guidelines for security relating to software development and championing these through the organisation.
- Working with engineering leads on identified security risks and software vulnerability.
- Operate a software vulnerability management program.
- Understanding/Knowledge of main development language frameworks (C#, Java, React, Python, etc...)
- Occasional security auditing of software developed by the company and its partners.
- Oversee security managed services and outsourced security capabilities
- Create, maintain, and execute appropriate incident response processes to enable timely escalation, containment, and recovery of cyber security events
- Work with other teams to identify recurring patterns and propose strategic actions to reduce risk
- Provide clear, concise, and easily consumable communication with key technical and non-technical stakeholders so that incidents are understood and appropriately addressed
- Ensure accurate and clear communication with all stakeholders
- Provide appropriate KPIs and KRIs to key stakeholders
- Technical liaison with third parties on application security related discussions related to security.
- Promote a mind-set of developing secure systems, transferring knowledge of security standards / processes and acting as a subject matter expert (SME)
- 4+ years experience with a degree in Computer Science, IT, Systems Engineering or a related qualification.
- Familiarity with applicable standards, methods, models, and approaches (OWASP, CWEs, MITRE, threat modeling, etc.).
- Knowledge of scripting language (Python, Ruby, Rust, etc.).
- Strong knowledge of API and Web Apps security.
- Collaboration - Engagement with the tech teams and other stakeholders, especially in a remote setting.
- Good understanding of software security principles and best practices.
- Excellent communication skills; comfortable to represent the cyber security team at all levels of the organisation, and with partners and vendors.
- Good awareness of cybersecurity trends.
- Strong attention to detail, a can do attitude, and an analytical mind and outstanding problem solving
- TA Interview
- Security team interview
- Technical interview
- CISO interview
- CTO interview
- Flexible remote and hybrid working options
- Competitive Salary and a variable component tied to personal and company performance
- Company equity
- Multiple Learning and Development opportunities, including Focus Fridays, a half-day each month to focus on learning and personal growth
- Generous PTO and paid holidays
- Mental health benefits
- 2 MAD Days per year (Make A Difference Days for paid volunteering)
Emplois Recommandés
Conseiller/Conseillère Indépendant(e) en Immobilier Haut de Gamme Espaces Atypiques F/H
L'entreprise Espaces Atypiques est le 1er réseau d’agences immobilières spécialisé dans les biens atypiques haut de gamme avec 85 agences partout en France. Lofts, appartements cont…
ORL F/H - Paris 75005
ORL F/H - Paris 75005 Emploi ORL H/F - Paris 75 Nous recrutons un ORL H/F pour intégrer un centre spécialisé en oto-rhino-laryngologie situé à Paris 5e, en Île-de-France, dans le cadre d’un exercice…
Pharmacien H/F - Paris 75014
Offre emploi Pharmacien H/F à Paris , proposant d'excellentes conditions d'exercices. Plus d'informations sur ce poste ? Contactez-nous au 0787033402 Emploi Pharmacien H/F - Paris 75014 Nous recrut…
Consultant Product Owner - Médias H/F
mc2i est un cabinet de conseil indépendant qui accompagne ses clients dans leurs projets de transformation numérique. Avec plus de 1350 collaborateurs, notre entreprise a su rester à taille humaine gr…
Pneumologue - Paris 75008 H/F
Pneumologue - Paris 75008 H/F Emploi Pneumologue H/F - Paris 75 Nous recrutons un(e) pneumologue H/F salarié pour le compte d’une structure médicale pluridisciplinaire située dans le 8e arrondisse…
Technicien de maintenance expert frigoriste itinérant IDF F/H
Descriptif de l'offre Au sein de la Direction Régionale Thermie et Services Ile-de-France (1 000 salariés, 200 M€ de CA), vous intégrez notre Pôle Maintenance et Services. Sous la responsabil…
Chargé·e d’accueil et de billetterie
Secteur Spectacle Vivant Description de l'entreprise/de l'organisme Située au cœur de Paris, la Fabrique de l’époque est le projet porté pour la Gaîté Lyrique par une alliance inédite de cinq…
EDUCATEUR (H/F)
EDUCATEUR (H/F) n9u5kyk6oh Dans le cadre d’une prise en charge pluridisciplinaire à l’IDA en externat, il s'agit d’être le référent avec un collègue AMP d’un groupe éducatif, de proposer et d’animer…
Gestionnaire de paie H/F H/F
Description du poste Missions : -Elaboration et gestion de la paie (éléments variables de paie, bulletins de salaire, etc.) -Déclarations sociales et obligations légales (DSN, URSSAF, etc.) -C…
Serrurier de nuit dans le milieu Ferroviaire H/F
Description du poste : Nous recherchons un serrurier de nuit spécialisé dans le domaine ferroviaire pour rejoindre notre équipe. Vous serez responsable de la maintenance, de la réparation et de l'ins…