Application Security Specialist

 

Recruiter:

Kgadi Staffing Solutions

Job Ref:

Application Security..

Date posted:

Wednesday, June 9, 2021

Location:

Johannesburg, South Africa

Salary:

Negotiable


SUMMARY:
A vacancy exists for an Application Security Specialist based at Head Office, Rosebank reporting into the Group Chief Information Security Officer

POSITION INFO:

Qualifications & Experience:

  • 6 Years IT Experience
  • 5 Years’ experience in Information Security
  • Undergraduate or masters’ degree preferably in one of the following areas Business Management, Information Systems, Computer Science, Engineering, and other related majors
  • And /or technical experience working within large IT type environments
  • 5+ Years direct incident response, cyber security red team / pen tester experience
  • Certifications such as CEH, OSCP, Application Security
 

Key Responsibilities:

  • Build secure development processes aligned with development methodologies,
  • Create security awareness and train developers, testers, and business analysts on secure development,
  • Create and maintain technical documents such as secure coding guidelines, security checklists, and technical security requirements,
  • Ensure security is built into developed applications,
  • Perform security assessments: Attack surface analysis and reduction, threat modeling, data protection, secure code reviews, SAST and DAST analysis, security testing,
  • Code pipeline security
  • Develop fixes and seek solutions for software vulnerabilities,
  • Assess and monitor the production cloud infrastructure hosting applications for vulnerabilities and misconfigurations,
  • Conduct security audits across the product stack and underlying infrastructure and tooling
  • Mitigate future IT security risk,
  • To manage own professional and self-development
  • Identify security risks and vulnerabilities, analyse impact thereof and engage relevant stakeholders (e.g. governance bodies and product owners) on relevant security solutions, as well as to drive and monitor the implementation thereof in order to mitigate, remediate security vulnerabilities. ·
  • Provide guidance with regard to the design and implementation of software components in support of building an advanced security posture. ·
  • Proactively broaden knowledge in the area of application security and apply new knowledge and skills. ·
  • Participate in application security audits through the provision of relevant information. ·
  • Participate in information technology (IT) security projects as the application security Subject Matter Expert (SME) ensuring compliance during each stage of the project development life cycle. ·
  • Identify security risks and vulnerabilities, engage relevant stakeholders (e.g. governance bodies and product owners) on relevant security solutions, and drive and monitor the implementation thereof in order to mitigate, remediate security vulnerabilities. ·
  • Engage with the larger security community to acquire new information and adopt new security capabilities within the LHC solution delivery environment. ·
  • Identify and implement opportunities for integration and consolidation, while ensuring the optimal use of security best practice with the development of new solutions. · Develop and maintain secure system development life cycle (SDLC) procedures and standards. 
  • Manage the Security Major Incident Response Procedures, during a security breach, for the designated business application support area:

Cloud Security - IAM, NSG, ASG, ID Federation, VPN’s, IPSec
Cloud Security - Policies, controls, procedures and technologies

  • WAF Implementations
  • OWASP top 10 mitigation approaches – Service based environments e.g. REST
  • Mastery of Linux/Mac/Windows operating systems
  • Network/Wireless Penetration Testing
  • Ability to understand and modify code in a diverse range of programming languages and frameworks - OO Programming concepts
  • Proficiency in cryptographic protocols and cipher suites
  • Thorough understanding of network protocols, data on the wire, and covert channels
  • Source code reviews.
  • Experience with penetration testing methodology and standards
  • Deep understanding of Secure SDLC

Present periodic reports and analytics pertaining to the security landscape surrounding the designated business applications.



 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Junior Training Facilitator
Location: Johannesburg
Salary:
5 days ago


Senior Operational Risk Manager
Location: Johannesburg
Salary:
Are you an experienced risk leader ready to drive enterprise-wide operational risk maturity in a highly regulated environment? This is a senior opportunity for a strategic thinker with strong governance, assurance, and stakeholder influence capabilities.
6 days ago


Data Analyst
Location: Johannesburg
Salary:
Are you a detail‑driven Data Analyst who enjoys turning complex data into clear, actionable business insights? Join a forward‑thinking environment where your analytical skills will directly influence operational, tactical, and strategic decision‑making.
6 days ago


Senior Data Analyst
Location: Centurion
Salary:
Are you a data-driven specialist who thrives on turning complex data into powerful business insights? This is an opportunity to make a real impact by driving strategy, managing risk, and shaping data-driven decision-making in a highly regulated environment.
6 days ago


Senior Software Developer (Python/Django)
Location: Johannesburg
Salary:
Our client is looking for a Senior Software Developer (Python/Django) to join their high-performing team based in Johannesburg North (fully in-office). This role is ideal for a passionate Developer who thrives in a fast-paced, innovative environment and enjoys building robust, scalable web applications.
8 days ago


IT Audit Specialist
Location: Johannesburg
Salary: 850000 Annually
Exciting IT Audit specialist position in Gauteng
12 days ago


Solutions Architect (Network, Security & Cloud)
Location: Johannesburg
Salary: 70000.00 Monthly
Our client is looking for a skilled Solutions Architect to design and implement robust, scalable technical solutions that align with business objectives. This role is ideal for a well-rounded professional with strong experience in network infrastructure, security, and cloud technologies, combined with the ability to translate business needs into effective technical architecture. You will act as a ...
12 days ago


Solution Architect
Location: Johannesburg
Salary: 50000.00 Monthly
Our client is seeking a forward-thinking Solution Architect with strong expertise in IDP to lead the design and delivery of enterprise-scale document automation solutions. You will take ownership of designing and implementing end-to-end document processing solutions, leveraging cutting-edge OCR, AI, and automation technologies. You will play a key role in driving digital transformation and deliver...
18 days ago


Senior Full Stack Developer (.NET & React)
Location: Cape Town
Salary:
Are you a seasoned Full Stack Developer with strong .NET and React experience? Join a globally recognised leader in cinema technology and be part of an innovative engineering team shaping the future of digital entertainment.
18 days ago


IT Director
Location: Johannesburg
Salary: 80000.00 Monthly
Are you a strategic technology leader with a strong background in ICT operations, cybersecurity, and enterprise systems? Our client is seeking an IT Director to lead its technology function, drive digital transformation, and ensure the delivery of secure, reliable, and cost-effective IT services aligned to organisational objectives.
18 days ago


Create a free job alert for Application Security Specialist in Johannesburg

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions