الوصف الوظيفي
• Perform and support application security reviews and threat modelling, including security code review and dynamic testing.
• Own and perform application security vulnerability management.
• Participate and support the preparation of security releases.
• Support and consult with product and development teams in the area of application security.
• Assist in creation of security training.
• Assist in development of automated security testing to validate that secure coding best practices are being used.
• Develop Secure Software development life cycle and support the implementation of DevSecOps.
Requirements• Bachelor’s degree or higher in Computer Science or any other related field preferred
• Familiarity with common security libraries, security controls, and common security flaws.
• Basic development or scripting experience and skills. Ruby and Ruby on Rails is preferred.
• Knowledge of Containers and Kubernetes is preferred.
• Experience with static code review and Application Security Testing (SAST, DAST, Container Security).
• Outstanding understanding and Experience of any of continuous Integration & Delivery Tools.
• Experience working with developers, DevOps to support the implementation of DevSecOps.
• Familiarity with cloud security controls and best practices