Senior DevSecOps Security and Testing

 

Recruiter:

HR Genie

Job Ref:

KB0315

Date posted:

Wednesday, September 15, 2021

Location:

Midrand, South Africa

Salary:

Market related


SUMMARY:
Deep knowledge of application security engineering principles.

POSITION INFO:

Qualifications and Experience

Required:

  • Minimum of 5-8 years’ experience in application security development, security testing, deployment and security management phases.
  • Deep interest in application specific vulnerabilities, code development and infrastructure knowledge.
  • Investigative and analytical problem-solving skills.
  • Experience in collecting, analysing, and interpreting qualitative and quantitative data from defined application security services related sources (tools, monitoring techniques etc.)
  • Knowledge and experience of OWASP Top 10, SANS Secure Programming, Security Engineering Principles.
  • Hands-on experience in running, installing and managing DAST solutions such as web inspect and AppScan.
  • Hands-on experience in performing code review of dot Net, Java and Swift and objective C code.
  • Hands-on experience in running, installing and managing SAST solutions such as Checkmarx and Fortify.
  • Understanding of leading vulnerability scoring standards, such as CVSS, and ability to translate vulnerability severity as security risk.
  • Hands-on experience in integrating security tools in DevOps processes.
  • Hands-on on at least one CI/CD tool set such as team city, Bamboo, Jenkins, Chef, Puppet, selenium.
  • Knowledge of cloud environments and deployment solutions such as server less computing.
  • Hands on experience in penetration testing of mobile, desktop and web applications.
  • Hands on experience on application containers such as Dockers and Kubernetes.
  • Possession of excellent oral and written communication skill.
  • Knowledge of one or more scripting languages for automation and complex searches.

Preferred:

  • Bachelor’s in computer science or other technical fields.
  • Experience with application monitoring, Managed Services business primarily on DevOps, Threat and Vulnerability Management for Application infrastructure, source code verification, link analysis, and threat modelling.
  • Solid and demonstrable comprehension of Information Security including OWASP/SANS, Security Test Case development (or mis-use case), OOAD notations, emerging threats, attacks, and vulnerability management.
  • Understanding of security essentials including networking concepts, defense strategies, and current security technologies.
  • Ability to research and characterize security threats to include identification and classification of application related threat indicators; and
  • Certification such as SANS Secure Coding, Security Engineering, Web Application Security, ISC2 CSSLP, OSCP etc. are preferred.

 

 

 

 

 



 

NB! This job is now closed. You can apply for other jobs by uploading your CV.



 

 

 

Similar jobs you might be interested in:

Cloud DevOps Engineer
Location: Johannesburg
Salary:
A well-known insurance organization, with branches in multiple African countries, is seeking a Cloud DevOps Engineer to join their team based in Randburg. This organization was established in Australia. They have a hybrid working model.
2 days ago


Cybersecurity Specialist
Location: Centurion
Salary:
Our client is looking for a talented Cybersecurity Specialist to join their team and contribute to the development of secure software solutions while ensuring compliance with emerging cybersecurity standards from the US and Europe, including ad hoc client cybersecurity requirements. This role will primarily focus on Secure Software Development (SGD) and contribute to enhancing their CI/CD developm...
13 days ago


Create a free job alert for Senior DevSecOps Security and Testing in Midrand

Enter your email address below and we will email you similar jobs when they become available:

You can cancel at any time. We will not spam you.
By giving us your email address your agree to our Terms and Conditions