Application Security Specialist (junior/regular/senior) (She/He/They)
41_R00126362
Obowiązki
Collaborate with design and development teams to drive innovation by integrating security principles from the very beginning of the SDLC.
Proactively evaluate applications and systems using OWASP ASVS, OWASP Top 10, CWE Top 25 standards.
Implement security elements throughout the SDLC.
Assess security in hybrid architectures, including cloud and container solutions, to enhance operational excellence.
Conduct security analysis of APIs, applications, and IaC code, propelling secure development practices.
Support development teams in mitigating vulnerabilities, ensuring scalable growth in secure software environments.
Wymagania
Work on projects for international clients, expanding your security skill set. Gain insights and feedback from a diverse team of over 120 cybersecurity experts in Poland and thousands across the world.
Thrive in an exciting workplace that values and celebrates diverse perspectives. Contribute to a creative environment where your ideas are welcomed.
Engage in creative projects that foster your development as cybersecurity specialist. Access continuous learning through workshops and skill-building initiatives.
Oferujemy
Experience in cyber security or a desire to deepen knowledge in this area supported by at least a few years of experience working in IT or as a Developer.
Reverse Engineering and Malware Analysis knowledge.
Knowledge of web application security issues (OWASP TOP 10 etc.) and secure coding best practices.
Knowledge of popular attack methods (XSS, CSRF, SQL injection, etc.) and frameworks such as MITRE and cryptographic best practices.
Being familiar with issues related to authorization, authentication or session management (SAML, OAuth, SSO, etc.).
Knowledge of the SSDLC process and its components; Rest API technology and the API Gateway concept.
Being familiar with one of the following programming languages to a good degree: Java, .Net, C#, JavaScript, Go and scripting languages such as Python.
Experience in conducting static code analysis.
Źródło: Accenture/Praca