Junior Information Security Specialist
Bet365
Manchester
On-site
GBP 40,000 - 60,000
Full time
Job summary
A prominent online gaming company is seeking an Information Security Specialist in Manchester. You will support security throughout project lifecycles, conduct code reviews, and ensure compliance in third-party software. The ideal candidate has a degree in Information Technology or related experience, and familiarity with automated security testing tools. Strong communication skills are essential for this role.
Qualifications
- Knowledge of a broad range of Information Security topics.
- Educated to degree level in an information technology subject or similar discipline.
- Experience with Secure Development Lifecycles.
Responsibilities
- Support project process for information security considerations.
- Conduct manual and automated code reviews.
- Review third party software for compliance.
Skills
Knowledge of Information Security topics
Communication skills
Understanding of Secure Development Lifecycles
Knowledge of programming languages
Familiar with OWASP
Education
Degree in Information Technology or related field
Tools
Automated security testing tools
Manual security testing tools
Responsibilities
- Supporting the project process to ensure that information security aspects are considered up front and throughout the project lifecycle.
- Performing manual and automated code reviews, escalating remediation where appropriate.
- Providing support to software development teams to ensure security is considered throughout the development lifecycle.
- Conducting reviews on third party packages and software to ensure compliance with the Company's supply chain assurance processes, identifying flaws and vulnerabilities.
- Performing basic risk assessments, threat modelling and design reviews to ensure effective security controls are in place.
- Identifying opportunities for converting manual tasks into automated processes.
Qualifications
- Knowledge of a broad range of Information Security topics.
- Educated to degree level in an information technology subject or similar discipline, or other demonstrable experience.
- Knowledge of Secure Development Lifecycles and the assessment of code.
- Understanding of automated, dynamic and static application security testing tools, as well as manual security testing to find vulnerabilities and logical issues.
- Familiar with OWASP (Open Web Application Security Project) and its utilisation within threat modelling.
- Basic knowledge of software development and programming languages.
- Basic understanding of conducting and reporting on web application penetration testing.
- Strong communication and documentation skills.