Aktiviere Job-Benachrichtigungen per E-Mail!

Application Security Engineer (m/f/d)

CompuGroup Medical

Deutschland

Vor Ort

EUR 60.000 - 90.000

Vollzeit

Vor 26 Tagen

Erstelle in nur wenigen Minuten einen maßgeschneiderten Lebenslauf

Überzeuge Recruiter und verdiene mehr Geld. Mehr erfahren

Starte ganz am Anfang oder importiere einen vorhandenen Lebenslauf

Zusammenfassung

A leading company in healthcare software solutions seeks a Security Expert to enforce security best practices in software development. The role encompasses close collaboration with development teams to integrate security measures into the Software Development Life Cycle (SDLC) and lead proactive risk management initiatives. Ideal candidates should possess strong analytical skills and a comprehensive background in security principles, alongside a passion for improving security postures in innovative environments.

Leistungen

Fresh food daily
Gym access
On-site kindergarten
Internal events and activities
Ergonomic workspace design

Qualifikationen

  • Deep understanding of security principles.
  • Proficiency in threat modeling.
  • Strong foundation in secure coding practices.
  • Skills in risk management.
  • Familiarity with DevSecOps and compliance requirements.

Aufgaben

  • Serve as an authority on security best practices.
  • Work closely with developers to embed security measures.
  • Lead security reviews and threat modeling sessions.
  • Engage in code reviews for security-related aspects.
  • Support the definition and implementation of security requirements.

Kenntnisse

Security principles
Threat modeling
Secure coding practices
Risk management
DevSecOps practices
Analytical skills
Problem-solving skills
Communication skills

Ausbildung

Background in computer science or related fields

Jobbeschreibung

As a leading company in the field of software solutions for healthcare, we operate in 19 countries and employ over 9,000 dedicated staff members. You will work in a dynamic and innovative environment full of opportunities. With your commitment and passion, you have the chance to make a lasting difference. Together, we are shaping the healthcare system of the future. Become part of our mission and make a difference - for a world where knowledge saves lives!

Your contribution:

  • Serve as an authority on security best practices related to software development, platform infrastructure, and operational processes, ensuring that security considerations are prioritized at every stage of project development.
  • Work closely with developers, architects, and testers to seamlessly embed security measures within the Software Development Life Cycle (SDLC), fostering a culture of security awareness and proactive risk management.
  • Lead security reviews and threat modeling sessions aimed at uncovering potential security risks inherent in software designs, codebases, and cloud infrastructure. This involves analyzing the architecture and implementation for vulnerabilities.
  • Engage in code reviews to evaluate security-related aspects of the code. Provide constructive feedback and actionable recommendations to enhance the security posture of the codebase.
  • Support the definition and implementation of security requirements and controls throughout product development and infrastructure design. Additionally, aid in choosing and deploying the appropriate security tools and technologies to fortify product security while keeping abreast of the latest threats and vulnerabilities for informed decision-making.

What you bring along:
  • Deep understanding of security principles, best practices, and frameworks (e.g., OWASP, NIST, ISO 27001) or willingness to train to acquire expertise.
  • Proficiency in threat modeling to identify potential threats and vulnerabilities in systems and applications.
  • Strong foundation in secure coding practices to guide developers in writing resilient and secure code.
  • Skills in risk management to effectively assess and prioritize security risks while recommending appropriate mitigation strategies.
  • Familiarity with DevSecOps practices, integrating security into the DevOps pipeline, and understanding compliance and regulatory requirements (e.g., GDPR, HIPAA); background in computer science or related fields, relevant experience and certifications, and strong analytical, problem-solving, and communication skills.

What you can expect from us:
  • Feel Good Management: We offer you fresh food daily with a diverse selection of dishes. You can also shape your workday in a hybrid manner, working remotely two days a week.
  • Health: Take advantage of the gym and attend our free sports classes.
  • Childcare: Our on-site kindergarten allows for a more flexible working arrangement.
  • Events: Participate in internal events and activities, which take place regularly both on-site and remotely.
  • Ergonomics: Design your workspace to meet your ergonomic needs, allowing you to work comfortably and healthily on-site.

Diversity is part of CGM! We look forward to your application regardless of ability, gender, nationality, ethnic and social background, religion, age, as well as sexual orientation and identity.

Convinced? Apply online now with your comprehensive application documents (including salary expectations and your earliest possible start date).
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.