Application Security Specialist

 

Recruiter:

Kgadi Staffing Solutions

Job Ref:

Application Security..

Date posted:

Wednesday, June 9, 2021

Location:

Johannesburg, South Africa

Salary:

Negotiable


SUMMARY:
A vacancy exists for an Application Security Specialist based at Head Office, Rosebank reporting into the Group Chief Information Security Officer

POSITION INFO:

Qualifications & Experience:

  • 6 Years IT Experience
  • 5 Years’ experience in Information Security
  • Undergraduate or masters’ degree preferably in one of the following areas Business Management, Information Systems, Computer Science, Engineering, and other related majors
  • And /or technical experience working within large IT type environments
  • 5+ Years direct incident response, cyber security red team / pen tester experience
  • Certifications such as CEH, OSCP, Application Security
 

Key Responsibilities:

  • Build secure development processes aligned with development methodologies,
  • Create security awareness and train developers, testers, and business analysts on secure development,
  • Create and maintain technical documents such as secure coding guidelines, security checklists, and technical security requirements,
  • Ensure security is built into developed applications,
  • Perform security assessments: Attack surface analysis and reduction, threat modeling, data protection, secure code reviews, SAST and DAST analysis, security testing,
  • Code pipeline security
  • Develop fixes and seek solutions for software vulnerabilities,
  • Assess and monitor the production cloud infrastructure hosting applications for vulnerabilities and misconfigurations,
  • Conduct security audits across the product stack and underlying infrastructure and tooling
  • Mitigate future IT security risk,
  • To manage own professional and self-development
  • Identify security risks and vulnerabilities, analyse impact thereof and engage relevant stakeholders (e.g. governance bodies and product owners) on relevant security solutions, as well as to drive and monitor the implementation thereof in order to mitigate, remediate security vulnerabilities. ·
  • Provide guidance with regard to the design and implementation of software components in support of building an advanced security posture. ·
  • Proactively broaden knowledge in the area of application security and apply new knowledge and skills. ·
  • Participate in application security audits through the provision of relevant information. ·
  • Participate in information technology (IT) security projects as the application security Subject Matter Expert (SME) ensuring compliance during each stage of the project development life cycle. ·
  • Identify security risks and vulnerabilities, engage relevant stakeholders (e.g. governance bodies and product owners) on relevant security solutions, and drive and monitor the implementation thereof in order to mitigate, remediate security vulnerabilities. ·
  • Engage with the larger security community to acquire new information and adopt new security capabilities within the LHC solution delivery environment. ·
  • Identify and implement opportunities for integration and consolidation, while ensuring the optimal use of security best practice with the development of new solutions. · Develop and maintain secure system development life cycle (SDLC) procedures and standards. 
  • Manage the Security Major Incident Response Procedures, during a security breach, for the designated business application support area:

Cloud Security - IAM, NSG, ASG, ID Federation, VPN’s, IPSec
Cloud Security - Policies, controls, procedures and technologies

  • WAF Implementations
  • OWASP top 10 mitigation approaches – Service based environments e.g. REST
  • Mastery of Linux/Mac/Windows operating systems
  • Network/Wireless Penetration Testing
  • Ability to understand and modify code in a diverse range of programming languages and frameworks - OO Programming concepts
  • Proficiency in cryptographic protocols and cipher suites
  • Thorough understanding of network protocols, data on the wire, and covert channels
  • Source code reviews.
  • Experience with penetration testing methodology and standards
  • Deep understanding of Secure SDLC

Present periodic reports and analytics pertaining to the security landscape surrounding the designated business applications.



 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Senior Java Back-End Engineer (Remote)
Location: Johannesburg
Salary: 70000.00 Monthly
Our client, a boutique software engineering firm supporting fintech projects globally, is seeking a Senior Backend Software Engineer to architect, develop, and optimize high-performance backend systems. This is a fully remote, work-from-home position.
Today


Integration Specialist – Identity & Access Management (IAM
Location: Centurion
Salary:
Calling specialists who are passionate about secure digital experiences and thrive on integrating complex systems and streamlining identity and access management
7 days ago


Integrations Developer
Location: Johannesburg
Salary: TBC Annually
Love building slick integrations and keeping websites fast, secure, and fresh? Join a tech-forward team where you’ll work on real-world logistics challenges, connect systems, and keep our digital presence sharp. If you’re into APIs, automation, and clean code - this is your next big move.
7 days ago


Innovations Technologist
Location: Johannesburg
Salary: 420 000 Annually
Ready to build cool stuff that actually makes a difference? Join a fast-moving team where your Power Platform skills will automate real-world problems, connect systems, and wow users. If you're into smart tech, fast prototyping, and seeing your work in action - this is your dream role.
7 days ago


General Manager – Issuer Regulation
Location: Johannesburg
Salary:
Our client, a leading Financial Institution, is looking for a General Manager – Issuer Regulation to join their team.
9 days ago


Front-end Developer
Location: Johannesburg
Salary: TBC Annually
A leading tech team is looking for a skilled Front-end Developer to join their development division. If you’re passionate about building responsive, user-centric web applications and have strong experience with modern JavaScript frameworks -especially Vue - this is your opportunity to work on innovative projects in the tourism and travel sector.
13 days ago


Solutions Architect
Location: Johannesburg
Salary: 1 300 000 Annually
A leading organisation is seeking an experienced IA Solution Architect to lead the design and implementation of intelligent automation solutions. This role is ideal for someone who thrives in a strategic, cross-functional environment and is passionate about driving innovation through automation, architecture, and business transformation.
13 days ago


Full Stack Developer
Location: Centurion
Salary: 450 000 Annually
A dynamic tech team is seeking a Full Stack Developer with 2–3 years of experience to help design, develop, and maintain cutting-edge software applications. This is a great opportunity to work across the entire stack, from front-end interfaces to back-end systems, while contributing to innovative solutions that drive client success.
13 days ago


Software Tester
Location: Centurion
Salary: 350 000 Annually
Are you passionate about ensuring software works flawlessly? A leading tech company is looking for a skilled Software Tester to help maintain the quality and reliability of its enabling software solutions. You’ll be part of a collaborative team working on exciting projects, using both manual and automated testing to drive excellence across the development lifecycle.
13 days ago


Senior Active Directory Specialist (Architect)
Location: Johannesburg
Salary: 500 Hourly
Senior Active Directory specialist
13 days ago


Create a free job alert for Application Security Specialist in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions