Browse
Employers / Recruiters
Negotiable
Full-time
Continue
By pressing the button above, you agree to our Terms and Privacy Policy, and agree to receive email job alerts. You can unsubscribe anytime.
Our client is a global financial services firm located in New York City. They are seeking an Application Security Lead to join the team.
 
The Application Security Lead will lead, develop, test and recommend solutions on matters relating to Application Security. This role will be responsible for partnering with the application development team to provide secure applications to firm's Asset Management and Financial Advisory businesses. This role focuses on automation, process, architecture review, and building/monitoring necessary tools to support a Secure SDLC for the firm's Agile application development environment and technology operations. The role requires a strong grasp of application security principles and practices and a background working in an application development and coding environment within a large DevOps based enterprise.
 
Requirements
•             Bachelor's Degree in Information Technology, Computer Science or a related field
•             5+ years of experience designing, developing, and testing of software applications and/or infrastructure
•             3+ years of hands on security experience with AWS/Azure/GCP Cloud Architecture – Experience with writing secure and functional AWS IAM Roles, Policies, and Procedures.
•             Strong experience with writing secure and functional AWS/Cloud IAM roles and policies.
•             Strong Experience with building secure pipeline tools like; Jenkins, Jira, Sonatype Nexus, Veracode
•             Strong Experience with secure code development using OWASP principles, static and dynamic code scanning and remediation
•             Understanding of application threat modelling and Agile SDLC security practices
•             Experience in developing secure code and application security standards
•             Experience working with/patching open-source code/libraries
•             Experience conducting application security testing and source-code reviews
•             Certification in CEH, CISSP, CISM, CompTIA Security, CISSP, or GSEC (similar)
 
Responsibilities
Build a very close working relationship with DevOps, application development and QA teams.
Designing and delivering security training to developers
Determine security requirements by evaluating business strategies
Conducting system security and vulnerability analyses, penetration testing and risk assessments
Partnering with Developers to implement security remediation's for identified weakness.
Conduct and facilitate periodic application security awareness training and workshops
Develop and Manage Web Application Firewall (WAF) security policies to mitigate OWASP and application security threats,
Create and maintain Application Security policies including secure coding policies, procedures and standards, coding standards, and the Software Development Life Cycle (SDLC) to include necessary security checkpoints, code review methodologies, etc.
Ensuring acquired or developed systems are consistent with the solution engineering and security architecture guidelines
Defining and documenting how the implementation of a new system or interface impacts the security posture of the current environment
 

Last updated on Jun 26, 2019

See more

More jobs at 4xjdnwrmkmr2t0nmjqxi2c1gm3a2zk02d3e0zcognekjntetsn0d39f190pyzb0x

Analyzing

Atlanta, Georgia

 · 

30+ days ago

New York, New York

 · 

30+ days ago

New York, New York

 · 

30+ days ago

Salt Lake City, Utah

 · 

30+ days ago

Chicago, Illinois

 · 

30+ days ago

More jobs like this

Analyzing
ELECT - IT Security Analyst 2
B
b6jdnwcpcemgg8el3r9winlpunj8hc038b1vkhowrzxn9gitznreodi38t7rirkp

Richmond, Virginia

 · 

30+ days ago

Information Security Officer
9
9xjdnwf8nt489qdiu4ab0qq7clsnet01f27n6pjaxju02yq1u697ou3dvfougsq9

Santa Clara, California

 · 

30+ days ago

Security Engineer
0
01jdnwg028j5z7sqr5v2kknizydum00361uo9lv9r7k3dur17h5v7wx2rj64vu35

Frisco, Texas

 · 

30+ days ago

Security Analyst
Q
qualis-corporation

Huntsville, Alabama

 · 

30+ days ago

KNG OF PRUSSA, Pennsylvania

 · 

30+ days ago

Fredericksburg, Virginia

 · 

30+ days ago

Security Engineer | Fully remote
T
two95-international-inc-3

Remote

 · 

30+ days ago

Marinette, Wisconsin

 · 

30+ days ago

Remote

 · 

30+ days ago

Developed by Blake and Linh in the US and Vietnam.
We're interested in hearing what you like and don't like! Live chat with our founder or join our Discord
Changelog
🚀 LaunchpadNov 27
Create a site and sell services based on your CV.
🔥 Job search dashboardNov 13
Revamped job search UI with a sortable grid, live filtering, bookmarks, and application tracking.
🫡 Cover letter instructionsSep 27
New Studio settings give you control over AI output.
✨ Cover Letter StudioAug 9
Automatically generate cover letters for any job.
🎯 Suggested filtersAug 6
Copilot suggests additional filters above the results.
⚡️ Quick applicationsAug 2
Apply to jobs using info from your CV. Initial coverage of ~200k jobs in Spain, Germany, Austria, Switzerland, France, and the Netherlands.
🧠 Job AnalysisJul 12
Have Copilot read job descriptions and extract out key info you want to know. Click "Analyze All" to try it out. Click on the Copilot's gear icon to customize the prompt.
© 2024 RemoteAmbitionAffiliate · Privacy · Terms · Sitemap · Status