About the job
Join our dynamic Cybersecurity Competency Center as a Cybersecurity Engineer, where you will play a crucial role in enhancing and safeguarding the security posture of applications within a complex banking and financial services environment.
Your core objective will be to ensure application security by executing vulnerability management and secure development lifecycle (SDLC) initiatives, providing support to development teams, and driving the continual enhancement of security protocols and practices.
Key Responsibilities
- Facilitate the deployment and upkeep of code analysis and dependency security solutions
- Contribute to the establishment and ongoing refinement of Secure Development Lifecycle (SDLC) methodologies
- Conduct and manage application security scans including:
- SAST (Static Application Security Testing)
- SCA (Software Composition Analysis)
- DAST (Dynamic Application Security Testing / Web Application Scanning)
- Evaluate, categorize, and prioritize vulnerabilities identified through various security tools and sources
- Work closely with development teams to identify, address, and mitigate security risks
- Assist development teams in the adoption of security controls and secure coding best practices
- Monitor remediation efforts and ensure alignment with established timelines
- Engage in the definition, measurement, and reporting of application security KPIs
- Foster the growth of the Application Security (AppSec) community through:
- Security awareness campaigns
- Promotion of best practices
- Guidance on secure coding
