Aktiviere Job-Benachrichtigungen per E-Mail!

Expert Cyber Security (Applications) (m/f/d)

Exyte

Stuttgart

Vor Ort

EUR 60.000 - 90.000

Vollzeit

Vor 10 Tagen

Zusammenfassung

一家全球工程公司正在寻找应用安全专家,您将在软件开发生命周期中确保安全性。职责包括嵌入安全设计、进行渗透测试和优先解决安全漏洞。理想候选人需具备计算机科学或信息安全学位以及5年以上相关经验,熟悉云和DevSecOps环境。期待您的加入。

Qualifikationen

  • 在应用安全、开发安全或渗透测试方面具有5年以上经验。
  • 主导大规模应用的安全管理,定义和报告KPI/KRI。
  • 对OWASP前10名、威胁建模及各种安全测试工具有深入了解。

Aufgaben

  • 在软件开发生命周期中嵌入安全性。
  • 领导渗透测试和代码分析。
  • 优先处理应用缺陷的修复。
  • 引导利益相关者推广安全设计原则。
  • 确保合规性和事件响应。
  • 在DevSecOps工作流程中嵌入安全控制。

Kenntnisse

安全设计
渗透测试
漏洞管理
威胁建模
编程
软技能

Ausbildung

计算机科学或信息安全学位

Tools

Java
Python
SAP S/4HANA
Jobbeschreibung
您的愿景雄心勃勃。这和我们一样。

我们的人才就是我们的成功。作为我们的一员,您将为未来高科技市场的卓越工程贡献力量,包括半导体、电池、制药、生物技术和数据中心等领域。在Exyte,您将成为一个全球性的挑战追求者社区的一部分,我们雄心勃勃,对创新充满热情。我们将携手共进,在公司悠久的历史基础上继续引领通往更美好世界的方向。

Discover your exciting role

As an Expert in Cyber Security (Applications) (m/f/d) at Exyte, you will ensure that security is embedded into every stage of the Software Development Lifecycle (SDLC), while also ensuring that applications and related enterprise platforms remain resilient against evolving threats.

Explore your tasks and responsibilities
  • Embed Security in SDLC: Apply secure design, coding, and deployment practices throughout the software development lifecycle.
  • Drive Testing & Monitoring: Lead penetration tests, code analysis, and continuous monitoring to detect and fix vulnerabilities.
  • Manage Vulnerability Remediation: Prioritize and coordinate timely fixes for application flaws.
  • Track Metrics & Model Threats: Define and report KPIs/KRIs, and conduct threat modelling for critical systems.
  • Enable Stakeholders: Collaborate with developers and business leaders to promote secure-by-design principles.
  • Ensure Compliance & Incident Response: Support incident handling and ensure alignment with OWASP, ISO 27001, NIST, GDPR, and internal policies.
  • Integrate DevSecOps & Standards: Embed security controls into DevSecOps workflows and define standards for ‘Security by Design’.
Show your expertise
  • Education & Experience: Degree in Computer Science or InfoSec; 5+ years in app security, secure development, or pentesting, incl. SAP S/4HANA.
  • Enterprise Security: Led security for large-scale apps; defined and reported KPIs/KRIs.
  • Technical Skills: Strong in OWASP Top 10, threat modeling, and ZAP, SAST/DAST/IAST/SCA.
  • SAP Security: Expertise in RBAC, SAP Notes, Fiori/OData, ABAP scanning, SoD controls.
  • Cloud & DevSecOps: Secured AWS, Azure, GCP; API, container, and microservices security.
  • Programming & Reporting: Skilled in Java, Python, JS/TS, C#, ABAP/UI5; metrics-driven.
  • Soft Skills: Analytical, collaborative, proactive a self-driven, clear communicator, change driver, and results focused.
Contact:

You want to be part of the Exyte team? We look forward to receiving your application!
For further questions and information, please do not hesitate to contact Gerd Fleischmann via E-Mail at gerd.fleischmann@exyte.net

Please note that we only consider applications submitted through our application portal. Applications sent via email will not be considered due to data protection regulations.

联系方式:

Exyte是一个平等就业机会雇主,并致力于提供平等机会和公正待遇。因此,Exyte集团为所有合格的申请者提供平等的就业机会,无论其血统、性别、性取向、性别认同、种族、肤色、宗教、受保护的退伍军人身份、残疾状态或遗传信息如何。

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
eine PDF-, DOC-, DOCX-, ODT- oder PAGES-Datei bis zu 5 MB per Drag & Drop ablegen.