Nowa
Application Security Consultant
150 - 200 PLN/ godz.
MidFull-time
#336421·Dodano 6 dni temu·0
Źródło: LinkGroupTech Stack / Keywords
SecuritySoftware DevelopmentSDLCDevOpsJava.NETAWSAzure
Firma i stanowisko
For our international client, we are looking for an Application Security Consultant who will play a key role in building a secure Software Development Life Cycle (SDLC) framework, with a strong focus on Application Security (SAS) across enterprise platforms.
Wymagania
- Experience in building or improving SDLC / SSDLC frameworks in large organizations
- Background in conducting security assessments and defining standards based on their results
- 3+ years of experience in software development, DevOps, or platform engineering
- Strong programming skills in at least one object-oriented language (e.g. Java, .NET)
- Experience working with AWS and/or Azure environments
- Hands-on experience with Docker and Kubernetes
- Solid understanding of CI/CD pipelines and automated deployments
- Experience with Infrastructure as Code and configuration management tools (e.g. Terraform, Ansible, Puppet, Chef)
- Good knowledge of Git and application lifecycle management practices
- Experience with application security and DevSecOps tooling (e.g. SAST, DAST, SCA, CNAPP)
- Understanding of secure development practices within SDLC
- Very good English communication skills (C1 level or equivalent)
Nice to have:
- Knowledge of security frameworks and standards (e.g. ISO 27001, NIST, CIS, OWASP, SOC2, GDPR)
- Experience working with large enterprise platforms (e.g. SAP, Salesforce, Databricks, Snowflake)
- Knowledge of encryption and cryptography (e.g. PKI, Vault, certificates)
- Experience mentoring teams in secure coding and DevSecOps practices
Obowiązki
- Building a secure Software Development Life Cycle (SDLC) framework with a strong focus on Application Security (SAS) across enterprise platforms
- Assessing the current state of platforms and development practices
- Defining and rolling out SDLC standards, controls, and best practices across the organization
- Shaping how application security is integrated into development processes
- Implementing a consistent approach to secure development
- Ensuring adoption of security standards across engineering teams
linkgroup
272 aktywne oferty