Security Specialist - Senior

  • Contract

Job Description

Must haves:

  • Strong knowledge and experience with Cloud computing concepts. Microsoft Azure PaaS knowledge and experience is highly preferred.
  • Knowledge of application security architectures and the purpose of privacy and security controls (e.g. token based authentication and authorization such as OIDC, SAML and OAUTH).
  • Experience building and automating security testing.
  • Knowledge and understanding of networking, network security and cryptographic algorithms.
  • Threat Modeling experience.
  • Strong communication skills.

 

Deliverables include, but are not limited to:

  • Assist with designing product and service security controls.
  • Collaborate with engineering teams to perform threat modeling for the proposed architecture.
  • Research security vulnerabilities in current architecture and communicate mitigation strategies to impacted teams.
  • Engage with engineering teams to perform security reviews of the architecture, design, and code throughout the SDLC process.
  • Work with product architects to provide remediation and potential fixes for security issues found from pen tests, static (SAST) and dynamic (DAST) analysis and provide fix recommendations, ensure that findings are addressed.
  • Perform ongoing security posture assessments using commercial or native tools to identify and track remediation of cyber risk in cloud environments.
  • Contributing security-focused feedback to engineers during all phases of the development lifecycle.
  • Report to management and key stakeholders on the product security status.

Qualifications

CISSP

CISM

Bachelor Degree 

By clicking the link above or any third-party link within this posting, you are leaving this site and going to a third-party website where the third-party website's terms and privacy policy apply