N° Référence: nk365
Présentation société Voir les autres offres
   
 

Computer Recruitment Services - Application Security Analyst

Réf.: nk365

Nk365 Application Security Analyst; Banking, Brussels

 

 

Background

 

You will be part of Component Management team who has a transversal role acting as a service desk for the designers, developers.

The team mainly performs configuration management activities for projects and maintenances. It also has a gatekeeper role, reviewing all naming convention and databases standards and ensuring they are compliant with configuration management good practices.

The Component Management team is spread over 3 locations (Brussels, Paris, and London) with on average 12 team members.

This position is based in Brussels.

 

 

Your part of the deal

  • The organisation is one of the key financial infrastructure providers serving all the big players in the industry with a reputation of being a secure, reliable player on the financial market. It is a strategic goal of the company to maintain a very high standard in IT security to protect the business activities and our customers.
  • Your role as Application Security Analyst is a key to implement a SAST and embed this practice in the Software Development Life Cycle (SDLC) of the bank. You will be using IBM Appscan Source for scanning the bank's applications and become the 1st line of defence through monitoring security policy compliance. 
  • You will be primarily responsible for:
    • Supporting developers with the security assessment of the company's applications.
    • Supporting the organization in the definition of security remediation plans
    • Supporting developers with the usage of IBM Appscan
    • Defining and maintaining the Application Security Guidelines and Coding Guidelines
    • Performing market watch on new coding techniques and threats to ensure Application Security Guidelines and IBM Appscan rules are kept up-to-date.
    • Auditing security assessment made by application developers and auditing IBM Appscan scan configurations as necessary
    • Executing independent security scans on request

 

Your Profile

  • You are a security expert
  • You are familiar with source code analysis (SAST/white box analysis).
  • You are familiar with the most common vulnerability types and you have a good understanding of how malicious attackers can exploit software vulnerabilities and what are the industry best practices to prevent such attacks.
  • You have already used IBM Appscan Source or a similar security source code scanning tool.
  • You are familiar with the challenges of integrating such a tool in the Software Development Life Cycle.
  • You are able to evaluate the outcome of such a tool and decide what is a false positive and what is a relevant finding.
  • You have already performed code reviews.
  • You are able to read the source code to the degree to investigate and validate suspected findings and warnings.
  • You are able to guide developers on why a certain coding practice is an issue and how to solve it.
  • You are able to escalate security issues to the attention of management in order to prevent high risk vulnerabilities to be deployed in production.
  • You are fluent in English.

 

You must be an EU national to apply for this role.

 

 

Reference: Nk365

Location: Brussels

Duration: 6 months

Rate: 500-525 euros per day

Language: English

Description société

CRS is a specialist recruitment business providing resource solutions to the Financial Markets. With its focused teams of specialist recruitment consultants, we supply permanent and contract personnel at all levels. Our market expertise and established procedures have positioned us as the specialist of choice with many blue chip organisations. With a proven track record in Financial Markets we have been expanding into related specialist market sectors including Energy Trading, the Utility and Telco sectors. Our established client base includes Preferred Supplier status with major corporations throughout the UK and mainland Europe.

Lire la suite
Offres d'emploi similaires
Offres similaires basées sur les critères : Security Engineer System Engineer / Administrator Security
Mon compte Pas encore inscrit?