Senior Application Security Engineer
JobandtalentJob Description
📋 Description Act as the Application Security SME, partnering with Engineering and Product teams to embed Lead application security reviews, threat modelling, code reviews and pen testing to identify and Design, implement and automate security controls across CI/CD pipelines, including SAST, SCA and Drive the technical roadmap of the Application Security program, improving secure development Improve and manage application security controls, including WAF, Kubernetes security and Mentor Security Champions and junior engineers, promoting a strong security culture across 🎯 Requirements 3-4 years of experience in Information Security, including at least 2 years in Application Security. Strong experience with Secure SDLC, threat modelling, application security reviews and secure code Hands-on experience with SAST, SCA and automated security testing integrated into CI/CD pipelines. Strong knowledge of OWASP Top 10, OWASP ASVS, API Security and secure coding best practices. Experience implementing and managing WAF solutions, as well as conducting internal penetration Solid understanding of Kubernetes security, cloud-native applications and networking fundamentals