Job Responsibilities
- Collaborate with relevant stakeholders continuously to define, implement, and improve security-by-design principles.
- Develop and implement security testing strategies by leveraging current security research, upskilling the team, and applying findings to the Customer application security assurance program.
- Implement secure coding practices to counter traditional and modern attacks, educating developers through awareness workshops and promoting industry best practices.
- Apply DevSecOps principles by automating security activities such as static and dynamic analysis, container security, and orchestration security.
- Provide security advisory during product grooming sessions, collaborating with developers, Scrum Masters, and product owners to prioritize security backlogs and ensure privacy and security by design.
- Design solutions to complex business problems, evaluating and applying appropriate technologies following security engineering best practices.
- Collaborate with business stakeholders, leadership, and engineering teams to improve cybersecurity practices across Customer.
- Lead cybersecurity expertise within the dnata international portfolio, supporting diverse security requirements while maintaining oversight of activities.
Knowledge and Skills
- Thorough knowledge of OWASP Top 10 for Web & Mobile applications.
- Strong understanding of network and web protocols (TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols).
- Knowledge of technologies such as reverse proxies, Web Application Firewalls, CI/CD, API gateways, SaaS.
- Understanding of IT Risk Management processes.
- Proficiency in using open source and commercial security tools.
- Experience in threat modeling, vulnerability discovery, and vulnerability management processes.
- Experience with Bug Bounty programs or similar initiatives.
- Ability to translate business requirements into technical solutions.
Disclaimer: Naukrigulf.com is a platform connecting jobseekers and employers. Candidates should verify prospective employers independently. We do NOT endorse requests for money or sharing personal/bank details. For security tips, visit Security Advice. Contact abuse@naukrigulf.com for fraud reports.