Назад

Не получаете ответ?

Telegram-вакансии старше 7 дней могут быть уже неактуальны.

13 дней назад

Application Security Architect

Формат работы
onsite
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
Croatia
vacancy_detail.hirify_telegram_tooltip Загружаем источник...

Мэтч & Сопровод

Покажет вашу совместимость и напишет письмо

Описание вакансии

Application Security Architect.

Location:
#Croatia.
Salary: Competitive.
Employer: EPAM.

Responsibilities:
• Lead and coordinate Security Audits across the software development lifecycle: from Architecture, Process, Risk to Testing.
• Establish secure software development lifecycle (SSDLC) programs.
• Support software development teams in secure development methodologies, tools, and processes.
• Train Software Development teams in the areas of secure development.
• Building Secure Architecture and Design for the projects.
• Communicate with customers and teams, be able to convey the message about importance of Secure Software development Life Cycle, the ways of establishing it.
• Cooperate with all sub-teams: BAs, Developers, Qas; build consistent understanding of Security Requirements, main Threats, Mitigations implemented.
• Be able to communicate and coordinate work with other Security Teams - Cloud Security Engineers, Infrastructure Security Engineers or Penetration Testers.

Requirements:
• Software Development or Security-focused university degree OR equivalent experience.
• Motivation to develop and grow in the field of Security.
• Familiarity in one or more Security Development methodologies (e.g. Microsoft SDL, OWASP OpenSAMM, BSIMM, etc.).
• Familiarity with Threat Modeling, hands-on experience with one or more Threat Modeling Tools.
• Understanding of main Security-related activities in development such as Security Requirements gathering, Risk Assessment, Security Code Review.
• Familiarity with of security threat, their implementation and their classification.
• Understanding of main security concepts and principles.
• Understanding of main areas of protection and levels of defense.



#Офис #AppSec

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →

Текст вакансии взят без изменений

Источник -