AISB-1049 Lead Application Security Expert

Abakus IT-Solutions

Namen

Hybride

EUR 85 000 - 120 000

Plein temps

Il y a 6 heures
Soyez parmi les premiers à postuler
Générateur de candidature

Une candidature complète en une minute — CV personnalisé et lettre de motivation, prêts à envoyer.

Passez les filtres ATS

Résumé du poste

Abakus IT-Solutions seeks a Lead Application Security Expert to lead a dedicated security team with a strong DevSecOps dimension. The role focuses on risk analyses, architecture reviews and automating security controls across the full application lifecycle.

The candidate will coordinate a small team, manage security deliverables, and work with DevSecOps and SecOps teams, project managers and developers to strengthen application security in a large estate.

Qualifications

  • Senior IT security professional with leadership experience.
  • Experience coordinating a team of at least three people.
  • Experience integrating SAST/DAST/SCA into CI/CD pipelines.
  • Ability to implement security controls across full application lifecycle.

Responsabilités

  • Allocate cases among team members.
  • Track progress, deadlines and blockers.
  • Review high-stakes deliverables and align practices.
  • Prepare decisions for arbitration and produce reporting.

Connaissances

IT security leadership
DevSecOps
SAST/DAST/SCA
CI/CD pipelines
Risk analysis
Team coordination

Formation

Bachelor's degree in IT security

Outils

SAST tools
DAST tools
SCA tooling

Description du poste

AISB-1049 Lead Application Security Expert

Lead and go-to expert in application security, within a dedicated team, with a strong DevSecOps dimension.

Context and Project

An organisation manages an extensive application estate, including many web applications, built on a wide range of technologies and supplied by various vendors. Poor control of their lifecycle exposes the organisation to service interruptions, data compromise, exploitation of vulnerabilities, growing technical debt and non-compliance with security requirements (NIS2, CyFun).

A dedicated application security team sits within the security department. Its goal is to replace one-off, manual controls with a shared approach that is proportionate to risk, more automated and covers the full application lifecycle.

The team works with project managers, developers, architects, operations teams, functional owners, DevSecOps and SecOps teams, the SOC, business units and suppliers.

Role and Responsibilities
  • Allocate cases among team members.
  • Track progress, deadlines and blockers.
  • Review high-stakes deliverables and align working practices.
  • Prepare decisions for arbitration and produce reporting (tracking dashboards, evolution plans).

Operational Expertise

  • Carry out risk analyses following the established methodology.
  • Support critical projects, from initial qualification to go-live.
  • Take part in architecture, design and code reviews.
  • Analyse SAST, DAST, SCA, vulnerability scan and penetration test results.
  • Define and prioritise recommendations.

Methodological Framework

  • Maintain application security standards and checklists.
  • Adapt controls to application criticality and ensure decisions are traceable.

Application Vulnerability Management

  • Follow up on recommendations, exemptions and residual risks.
  • Monitor application obsolescence and decommissioning.

Projects and DevSecOps

  • Embed security controls in projects and CI/CD pipelines.
  • Contribute to the automation of controls.
  • Advise project managers, developers, architects and operations teams.
  • Workload plan, dashboard and case tracking.
  • Risk analyses and security opinions.
  • Requirements and control plans.
  • SAST, DAST, SCA and penetration test reports.
  • Application security standards and templates.
Profile

Education and Experience

  • Senior experience in IT security, in an expert role (IT Security Expert, senior level).
  • Experience coordinating a team of at least three people.
  • Experience securing critical applications.
  • Experience integrating SAST, DAST or SCA into a CI/CD pipeline.
  • Experience improving an application security approach across the full lifecycle, at the scale of an organisation of more than 1,000 people.

Required Technical Skills

  • Application security and SSDLC (risks, requirements, reviews, vulnerabilities): senior level, with recent experience (this year).
  • DevSecOps: SAST, DAST, SCA, CI/CD, secrets management and penetration testing: senior level.
  • Backlog management based on risk and criticality: senior level.
  • Processes, standards, templates, indicators and knowledge transfer: confirmed level.

Soft Skills

  • Leadership: set direction, support and empower the team (confirmed level).
  • Communication with projects, IT, business units, suppliers and management: senior level. Messages are tailored to each audience.
  • Sense of responsibility: take ownership of assignments and report back.
  • Technical credibility: handle complex cases and substantiate decisions.
  • Prioritisation: arbitrate based on risk and capacity.
  • High standards and supportiveness: ensure quality and help the team grow.
  • Pragmatism: propose measures that can be applied in practice.
  • Autonomy and synthesis: follow up on commitments and flag decisions that need arbitration.
Language Requirements
Location and Conditions
  • Working model: hybrid, with on-site presence of 60% of the time or more if needed.
Obtenez votre examen gratuit et confidentiel de votre CV.

ou faites glisser et déposez votre fichier ici.

Similar jobs

Postes similaires à comparer

AISB-1050 Senior Application Security Analyst (Risk-Oriented)
AISB-1050 Senior Application Security Analyst (Risk-Oriented)

Abakus IT-Solutions • Namen

Hybride
EUR 70 000 - 110 000
AISB-1052 Application Security Analyst (Technical Controls and DevSecOps)
AISB-1052 Application Security Analyst (Technical Controls and DevSecOps)

Abakus IT-Solutions • Namen

Hybride
EUR 60 000 - 90 000
AISB-1047 Senior IT Security Analyst
AISB-1047 Senior IT Security Analyst

Abakus IT-Solutions • Namen

Hybride
EUR 60 000 - 90 000
AISB-1048 Medior IT Security Analyst
AISB-1048 Medior IT Security Analyst

Abakus IT-Solutions • Namen

Hybride
EUR 60 000 - 85 000
Senior Cyber Security Risk Assessment Consultant – DAST / SAST/ OWASP
Senior Cyber Security Risk Assessment Consultant – DAST / SAST/ OWASP

Salt • Brussel Hoofdstad

Hybride
EUR 90 000 - 140 000
Expert Lead Sécurité Applicative
Expert Lead Sécurité Applicative

Rhox • Namen

Sur place
EUR 90 000 - 130 000
Application Security Analyst
Application Security Analyst

Editx • Corbais

Sur place
EUR 60 000 - 90 000
Expert Lead Sécurité Applicative
Expert Lead Sécurité Applicative

Community Consulting • Namen

Hybride
EUR 90 000 - 120 000
Application Architect with Security Focus
Application Architect with Security Focus

Keystone Solutions • Brussel

Sur place
EUR 90 000 - 130 000
Application Security Analyst — DevSecOps & Tech Controls
Application Security Analyst — DevSecOps & Tech Controls

Abakus IT-Solutions • Namen

Hybride
EUR 60 000 - 90 000