Application Security Analyst (Mid/Senior)

Detalhes da Vaga

Make an impact by working for sectors where technology is the enabler, everything is ground-breaking and there's a constant need to be innovative.

Be part of the team that combines business knowledge, technological edge and a design experience. Our different backgrounds and know-how are key in developing solutions and experiences for digital clients.
Face challenges and learn other ways of thinking and seeing the world - there's always room for your energy and creativity.

About the role

Celfocus is looking to add an Application Security Analyst to join our team.
As a part of your job, you will:
Conduct analysis and threat modeling for new and existing Celfocus products/projects.
Analyze and discuss requirements; interact with all participants in the software development process.
Perform penetration testing on web applications.
Conduct both manual and automated testing.
Participate in the creation and development of the company's products at all stages of their life cycle.
What are we looking for?
A lively and flexible mind, clear logic, a detail-oriented approach.
Capability to align with teams from Analysts, Designers, Architects, Developers to DevOps.
Knowledge of HTTP.
Working knowledge of programming languages.
Knowledge of the Top 10 OWASP vulnerabilities: how to find, exploit, and fix them.
Knowledge of Burp Suite or other popular web scanners like ZAP, Acunetix, Netsparker, etc.
The desire and ability to work in a team.
The desire to develop yourself in the field of application security.
Knowledge of English at least at the level of reading technical documentation.
Nice to have:
Good knowledge of Linux or Windows operating systems.
Skills in scripting and automating your work using Powershell, Python, Bash, etc.
Knowledge of the OWASP Application Security Verification Standard (ASVS), OWASP Testing Guide and experience in whole product or feature planning.
An understanding of browser security mechanisms (SOP, cookies, CSP, HSTS, etc.).
Familiarity with various protocols and attacks against them (OAuth, JWT, websockets, etc.).
Experience with public clouds (Azure, AWS, GCP).
Experience with pipeline orchestrators (Jenkins, Azure DevOps, GitLab CI/CD).
Penetration testing experience.
Personal traits:
Ability to adapt to different contexts, teams, and clients.
Teamwork skills but also a sense of autonomy.
Motivation for international projects and willingness to travel.
Willingness to collaborate with other players.
Strong communication skills.
We want people who like to roll up their sleeves and open their minds. Believe this is you? Come join the Team!

#J-18808-Ljbffr


Salário Nominal: A acordar

Fonte: Allthetopbananas_Ppc

Função de trabalho:

Requisitos

It And Cybersecurity Risk Officer

.Working as IT and Cybersecurity Officer, the successful candidate will be engaged in all areas of the business part of Euronext group and will mainly focus ...


Euronext - Porto

Publicado a month ago

Site Reliability Engineer Join Consulteer And Be A Key Player In Our Journey Porto

Join Consulteer and be a key player in our journey! Your Role & Responsibility Keep an ever-watchful eye on our systems capacity and performance. Manage the ...


Consulteer Gmbh - Porto

Publicado a month ago

Senior Site Reliability Engineer

.```html Sword Health is on a mission to free two billion people from pain as the world's first and only end-to-end platform to predict, prevent and treat pa...


Sword Health, Inc - Porto

Publicado a month ago

Senior Qa Automation Engineer – (F/M/X)

Senior QA Automation Engineer – (f/m/x) Porto Full-time employee Professional/Experienced 40 - 63 K 4,2 Your tasks: Popular technologies and tools like JavaS...


Hubert Burda Media - Porto

Publicado a month ago

Built at: 2024-11-15T09:39:51.046Z