Application Security Specialist

 

Recruiter:

Kgadi Staffing Solutions

Job Ref:

Application Security..

Date posted:

Wednesday, June 9, 2021

Location:

Johannesburg, South Africa

Salary:

Negotiable


SUMMARY:
A vacancy exists for an Application Security Specialist based at Head Office, Rosebank reporting into the Group Chief Information Security Officer

POSITION INFO:

Qualifications & Experience:

  • 6 Years IT Experience
  • 5 Years’ experience in Information Security
  • Undergraduate or masters’ degree preferably in one of the following areas Business Management, Information Systems, Computer Science, Engineering, and other related majors
  • And /or technical experience working within large IT type environments
  • 5+ Years direct incident response, cyber security red team / pen tester experience
  • Certifications such as CEH, OSCP, Application Security
 

Key Responsibilities:

  • Build secure development processes aligned with development methodologies,
  • Create security awareness and train developers, testers, and business analysts on secure development,
  • Create and maintain technical documents such as secure coding guidelines, security checklists, and technical security requirements,
  • Ensure security is built into developed applications,
  • Perform security assessments: Attack surface analysis and reduction, threat modeling, data protection, secure code reviews, SAST and DAST analysis, security testing,
  • Code pipeline security
  • Develop fixes and seek solutions for software vulnerabilities,
  • Assess and monitor the production cloud infrastructure hosting applications for vulnerabilities and misconfigurations,
  • Conduct security audits across the product stack and underlying infrastructure and tooling
  • Mitigate future IT security risk,
  • To manage own professional and self-development
  • Identify security risks and vulnerabilities, analyse impact thereof and engage relevant stakeholders (e.g. governance bodies and product owners) on relevant security solutions, as well as to drive and monitor the implementation thereof in order to mitigate, remediate security vulnerabilities. ·
  • Provide guidance with regard to the design and implementation of software components in support of building an advanced security posture. ·
  • Proactively broaden knowledge in the area of application security and apply new knowledge and skills. ·
  • Participate in application security audits through the provision of relevant information. ·
  • Participate in information technology (IT) security projects as the application security Subject Matter Expert (SME) ensuring compliance during each stage of the project development life cycle. ·
  • Identify security risks and vulnerabilities, engage relevant stakeholders (e.g. governance bodies and product owners) on relevant security solutions, and drive and monitor the implementation thereof in order to mitigate, remediate security vulnerabilities. ·
  • Engage with the larger security community to acquire new information and adopt new security capabilities within the LHC solution delivery environment. ·
  • Identify and implement opportunities for integration and consolidation, while ensuring the optimal use of security best practice with the development of new solutions. · Develop and maintain secure system development life cycle (SDLC) procedures and standards. 
  • Manage the Security Major Incident Response Procedures, during a security breach, for the designated business application support area:

Cloud Security - IAM, NSG, ASG, ID Federation, VPN’s, IPSec
Cloud Security - Policies, controls, procedures and technologies

  • WAF Implementations
  • OWASP top 10 mitigation approaches – Service based environments e.g. REST
  • Mastery of Linux/Mac/Windows operating systems
  • Network/Wireless Penetration Testing
  • Ability to understand and modify code in a diverse range of programming languages and frameworks - OO Programming concepts
  • Proficiency in cryptographic protocols and cipher suites
  • Thorough understanding of network protocols, data on the wire, and covert channels
  • Source code reviews.
  • Experience with penetration testing methodology and standards
  • Deep understanding of Secure SDLC

Present periodic reports and analytics pertaining to the security landscape surrounding the designated business applications.



 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Mulesoft Integration Platform Engineer
Location: Johannesburg
Salary:
Join an exciting and dynamic team of API Gateway Platform Engineers, who are responsible for shaping the technical API economy for the bank.
2 days ago


Platform Engineer (Mulesoft Integration)
Location: Johannesburg
Salary: Hourly
We are in search of a PLATFORM ENGINEER with expertise in Mulesoft Integration for one of our banking industry clients, for a 12-month rolling employment contract. The incumbent will be joining the Platforms and Engineering Gateway technology tribe responsible for the development, design and run of the Mulesoft API and Integration platform residing on‐premises and AWS Cloud.Apply platform e...
2 days ago


Cyber Security Specialist
Location: Germiston
Salary: R550 - 650 per hour
Cyber security specialist
2 days ago


Solutions Architech
Location: Johannesburg
Salary: Hourly
Our client is a firm believer in technical innovation, to help them guarantee exceptional client service and leading-edge financial solutions. Their growing global success reflects our commitment to the latest solutions, the best people, and a uniquely flexible and vibrant working culture. To help our drive their success into the future, we are looking for an experienced Solution Architect, PBB SA...
10 days ago


Cyber Security Specialist - Networks
Location: Midrand
Salary:
Interfaces across multiple channels throughout the enterprise seeking business, technical and infrastructure issues and identifying potential areas of risk. Analysing network logs for suspicious activity. Configuring firewalls and intrusion detection systems. Conducting Penetration Testing (i.e., simulating attacks to identify vulnerabilities) and collaborating with colleagues on incident response...
16 days ago


Electronic Technician
Location: Centurion
Salary: Annually
Elevate your career with our vibrant team at a cutting-edge engineering firm! Showcase your expertise in electronic design and contribute to groundbreaking advancements in life safety, security, and monitoring systems. Don't miss out on shaping the future—apply now!
19 days ago


AWS Cloud Developer – Hybrid – R620 per hour
Location: Pretoria
Salary: 1228800
AWS Cloud Developer – Hybrid – R620 per hour
30 days ago


FINANCIAL CONTROLLER - (Must have logistics industry experience)
Location: Johannesburg
Salary: R40 000 pm Monthly
Exiting opportunity in Elandsfontein for a qualified and experienced candidate  This position reports into the Group Financial Controller.
Today


Chief Technology Officer (CTO)
Location: Pretoria
Salary: R1 902 477 Annually
Exciting career opportunity for a candidate with a relevant B Degree and a minimum of 6 (six) years' experience in a senior technology management role (gambling industry experience essential). PURPOSEThe position will be responsible for overseeing all aspects of technology within the Organisation. This includes developing and implementing technology strategies, managing the IT infrastructure,...
Today


Chief Executive Officer (CEO)
Location: Pretoria
Salary:
We are looking for a CEO for a well known company within the Transportation industry in Pretoria on a 5 year fixed term contract.
Today


Create a free job alert for Application Security Specialist in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions