#200550145-5
Sr. Security Engineer to contribute to the development, implementation, and maintenance of security measures within our B2B platforms. This role provides an excellent opportunity for professional growth in the field of cybersecurity.
Description
As a Sr. Security Engineer, you will be responsible for * Code Reviews: Collaborate with application development teams and review code for security issues, ensure the secure coding standards and best practices. Utilize static and dynamic analysis tools to assess the security posture of software code. * Security Assessments and Threat Modeling: Conduct threat modeling exercises to identify potential security risks in applications. Work closely with development teams to prioritize and address security concerns based on threat assessments. * Security Tooling: Utilize various security tools and technologies to automate security testing. * Incident Response: Assist in responding to security incidents, conducting investigations, and implementing corrective actions. Work collaboratively with the incident response team to improve incident detection and response capabilities. * Security Awareness: Contribute to security awareness training for software development teams. Stay updated on the latest security trends, vulnerabilities, and industry best practices. Ensure that applications follow relevant compliance standards such as PCI, SOX, PII, GDPR * Analytical and Automation Mindset: We seek candidates with strong analytical skills to effectively address complex security challenges and derive actionable insights. An automation mindset is also valued, as candidates who can automate security processes contribute to efficiency, proactive threat detection, and reduced manual errors. We promote innovation and use of new technology to further improve our creative output. We're looking for a talented and passionate person to join this amazing team, if you feel this is you, we'd love to hear from you.
Minimum Qualifications
Bachelor or Masters in Computer Science or other related discipline.
Programming/scripting skills, and ability to read and audit various programming languages, (Java, JavaScript, Python etc)
Practical experience of integrating and automating security checks into CI/CD pipeline and Conduct penetration testing against a wide variety of technologies
Preferred Qualifications
Strong knowledge of network security, encryption protocols, access control, and identity management.
Ability to conduct security assessments, vulnerability scans, and penetration tests.
Hands-on experience in security technologies and tools, including SAST, IAST and DAST.
Experience with cloud security principles and technologies, including container security.
Familiarity with security incident response and root cause analysis.
Knowledge of software development lifecycle (SDLC) security practices.
Experience with security audits, compliance assessments, and remediation efforts.
Relevant certifications such as CISSP, CISM, CEH, or CompTIA Security+ is desirable.
Additional Requirements