Informacje o stanowisku
Social network you want to login/join with:
Automated Security Scanning Analyst, Torun
Client: Groupe SII
Location: Torun, Poland
Job Category: Other
EU work permit required: Yes
Job Reference: 314c70203e73
Job Views: 52
Posted: 23.01.2025
Expiry Date: 09.03.2025
Job Description:
Join the Cybersecurity team of one of the largest financial institutions in the world. You will be a key part of the Secure Development team, reporting to the Global Head of Secure Development Lifecycle Support. You will be responsible for providing the security tooling for security scanning services.
Your Role:
- Contributing to developing and adopting security utilities and tools that enable development teams to operate more efficiently and securely.
- Designing, developing, and supporting development teams with security recommendations and adoption of tools.
- Identifying and developing processes, procedures, and tools.
- Liaising with Developers and Project Managers to understand the workings of an application.
- Staying up to date within the industry with new trends and best practices.
- Training and supporting developer and security champion activities to improve the quality of security scanning services to maximize the benefit for application teams.
- Overseeing changes in the risk profile through the development of metrics and analysis of risks and controls.
- Supporting the team with activities such as quality reviews, audit requirements, and service desk management.
Your Skills:
- Understanding of integration and automation of various security technologies including SAST, DAST, MAST, IAST, container security tools within the DevOps tooling pipeline.
- Proficiency in one or more industry security tooling.
- Hands-on experience in DevSecOps with a focus on security.
- Solid experience with platform-specific security risks, common vulnerabilities for the web, and architectures commonly used by mobile applications (HTML, XML, JavaScript, JSON, REST, Microservices, etc.).
- Knowledge of security flaws in Java, J2EE, Objective C, Swift, and Kotlin programming languages.
- Familiarity with common public cloud environments including AWS, GCP, Azure, Alicloud.
- Significant experience with implementing vulnerability identification tools within the development pipeline.
- Previous work with Vulnerability Scoring System (CVSS).
- Experience with emerging technologies and their corresponding security threats would be beneficial.
- English at an advanced level.
#J-18808-Ljbffr
Praca ToruńChief security officer ToruńToruń - Oferty pracy w okolicznych lokalizacjach