Cyber Security Engineer – Application Security
- Full-time
Company Description
Inetum is a global leader in IT services, dedicated to delivering innovative solutions to our clients. We are committed to fostering a dynamic and inclusive work environment that values diversity, where creativity and collaboration can thrive. We are present in 19 countries and have more than 28,000 employees worldwide.
If you are looking for a dynamic, innovative, and technology-driven company, Inetum is the place for you! Come be part of Inetum!
Job Description
As a Cyber Security Engineer, you will join the Competency Center team, part of CDF (Central Cybersecurity Department).
Your main mission will be to ensure the security of applications across a wide portfolio by performing vulnerability management activities, including SAST, DAST, SCA, and BITSIGHT assessments.
Key Responsibilities:
- Support the deployment of application security tools, including code analysis and dependency management solutions
- Contribute to the implementation and continuous improvement of Secure Software Development Lifecycle (SDLC) processes
- Perform and manage security scans (SAST, SCA, DAST/WAS)
- Analyze, assess, and qualify vulnerabilities identified through various tools and sources
- Collaborate closely with development teams to:
- Identify and mitigate security risks
- Implement secure coding practices and security controls
- Monitor and report on security control effectiveness and performance metrics
- Follow up on remediation actions and ensure compliance with defined deadlines
- Contribute to the Application Security (AppSec) community by promoting:
- Security awareness
- Best practices
- Secure coding standards
Qualifications
- Familiarity with security and DevSecOps tools, such as:
- Qualys
- Fortify
- Nexus IQ
- Kubernetes
- Experience in vulnerability management automation, ideally using Python scripting
- Solid understanding of application security principles and best practices
- Strong knowledge of the OWASP Top 10 vulnerabilities
- Experience with programming and development technologies, such as:
- Java
- Angular
- REST APIs
- Minimum of 2 years of experience in Cybersecurity / IT Risk
Certifications (nice to have)
- CISM, CISA, CRISC, CISSP
- CEH, CCSK, CCSP
- ISO 2700x / ISO 31000 / EBIOS
Languages
- English: Fluent (mandatory)
- French: Basic knowledge (nice to have)
Soft Skills
- Strong analytical and problem-solving skills
- Ability to work collaboratively in a team-oriented environment
- Client-focused mindset with strong communication abilities