Application Security Consultant
Posted yesterday · 0 applicants
Saving, applying or scoring takes a few seconds to set up your free account.
The role in plain words
- Strong expertise in Application Security and Secure SDLC methodologies
- Experience working with development and infrastructure teams
- Hands-on experience with API Security and API Management platforms (e.g., Apigee, IBM DataPower)
- Deep understanding of cloud-native technologies (Containers, Kubernetes, Serverless architectures)
- Experience with CI/CD pipelines, Git repositories, and Infrastructure as Code (IaC)
- Experience leading Information Security or Application Security projects
- Experience in large enterprise environments
- Knowledge of information security regulations, standards, and governance frameworks
- Professional certifications such as CISSP, CISM, or CISA
- Development or software engineering background
Extracted from the job description · kept up to date automatically
Who this suits
Full job description
Original listing · kept for referenceWe're Hiring | Application Security Consultant
A leading enterprise organization is looking for an experienced Application Security Consultant to join its Cyber Security team and lead application security initiatives across enterprise technology projects.
Key Responsibilities:
• Provide end-to-end application security guidance throughout the software development lifecycle, from project initiation to production
• Define and enforce secure development practices, security policies, and application security standards
• Partner with development, infrastructure, and architecture teams to design secure solutions
• Identify application security gaps and define appropriate security controls
• Lead and support application security assessments, validate findings, and oversee remediation efforts
• Prepare security requirements, technical guidance, and documentation for new security technologies and solutions
• Ensure compliance with organizational security policies, cyber risk management requirements, and regulatory standards
Requirements:
• Strong expertise in Application Security and Secure SDLC methodologies
• Experience working with development and infrastructure teams
• Hands-on experience with API Security and API Management platforms such as Apigee, IBM DataPower, or similar
• Deep understanding of cloud-native technologies, including Containers, Kubernetes, and Serverless architectures
• Experience with CI/CD pipelines, Git repositories, and Infrastructure as Code (IaC)
• Hands-on experience implementing security tools such as SAST, DAST, OSS scanning, and CWPP
• Strong knowledge of the OWASP Top 10
• Experience with Mobile Security
• Hands-on experience performing Threat Modeling
Preferred Qualifications:
• Experience leading Information Security or Application Security projects
• Experience in large enterprise environments
• Knowledge of information security regulations, standards, and governance frameworks
• Professional certifications such as CISSP, CISM, or CISA
• Development or software engineering background
• Experience in the financial or insurance sector
If you're passionate about Application Security and enjoy working at the intersection of development, cloud, and cyber security, I'd love to connect.
Please send your CV to yardenbs@matchpointit.com
Questions about this role
- This listing did not state a salary. We only show pay when the employer publishes it.
- Strong expertise in Application Security and Secure SDLC methodologies, Experience working with development and infrastructure teams, Hands-on experience with API Security and API Management platforms (e.g., Apigee, IBM DataPower), Deep understanding of cloud-native technologies (Containers, Kubernetes, Serverless architectures), Experience with CI/CD pipelines, Git repositories, and Infrastructure as Code (IaC)