8226473 - Application Security Engineer Pl
Published on DECEMBER 03, 2024
Applications open until MARCH 31, 2025
Job type: Effective Effective
Responsibilities and Assignments
Personalized Security Consulting:
- Provide tailored consulting services that address users' security needs prior to process initiation;
- Support users at every stage with technical requirement assistance to ensure comprehensive security coverage.
Needs Assessment:
- Review regular risk assessments and vulnerability assessments to identify potential threats and develop appropriate mitigation strategies;
- Conduct initial meetings with users to understand their specific security needs and objectives;
- Coordinate with suppliers to gather requirements and perform preliminary assessments based on PwC standards.
Documentation Support:
- Assist users in completing necessary documentation for various security processes;
- Ensure submission of accurate information to prevent delays and minimize rework.
Permanent Support Hub:
- Establish and manage a dedicated support channel to address queries and issues related to security processes;
- Expedite resolution of doubts and provide users with quick access to necessary information.
Coordination Between Teams:
- Facilitate effective communication and collaboration among different teams involved in security processes.
Monitoring and Feedback:
- Continuously monitor security processes and provide feedback to optimize performance and address any issues;
- Knowledge with automation scripts to perform inventory assessment;
- Collaborate with cross-functional teams to ensure the integration of security measures into the organization's systems and processes;
- Stay up to date with the latest industry trends, technologies, and best practices in information security;
- Establish and maintain strong relationships with internal and external stakeholders, including executive management, business units, vendors; and uphold the firm's code of ethics and business conduct.
Requirements and Qualifications
- Between 3 to 5 years of progressively responsible roles in information security and/or IT management.
Penetration Test Report Analysis:
- Conduct thorough analysis and interpretation of penetration testing reports to identify security vulnerabilities;
- Evaluate the severity and potential impact of identified vulnerabilities on the organization's security posture.
Vulnerability Assessment:
- Perform detailed vulnerability assessments to detect and prioritize security weaknesses;
- Utilize various tools and methodologies to ensure comprehensive coverage of potential threats;
- Assess the risk associated with identified vulnerabilities and provide actionable recommendations to mitigate these risks;
- Collaborate with cross-functional teams to develop and implement effective remediation strategies.
Documentation and Reporting:
- Prepare clear and concise reports summarizing the findings of vulnerability assessments and penetration tests;
- Ensure documentation is accurate, comprehensive, and accessible to relevant stakeholders;
- Stay updated with the latest security trends, vulnerabilities, and threat landscapes;
- Contribute to the continuous improvement of vulnerability management processes and practices.
Communication and Collaboration:
- Work closely with internal teams and external partners to ensure a coordinated approach to vulnerability management;
- Provide expert guidance and support to stakeholders in understanding and addressing security vulnerabilities.
Compliance and Standards:
- Ensure all activities comply with relevant security standards, regulations, and best practices;
- Support the organization in maintaining a robust security posture and achieving compliance objectives.
Training and Awareness:
- Assist in developing and delivering training programs to raise awareness of security vulnerabilities and best practices among employees;
- Promote a culture of security awareness across the organization.
Additional Information
- Acting:
- 100% Home Office
- CLT
- Health insurance
- Life insurance
- Mental Health and Wellness Program
Process Stages
- Step 1: Registration
- Step 2: Behavioral Interview
- Step 3: Hiring