A complete application in a minute — tailored resume and cover letter, ready to send.
Levy Global is seeking a Secure Coding Domain Expert in Amstelveen to bridge software development and application security. You will analyze security findings, improve tooling and standards, and help respond to risks such as AI-driven threats.
The role involves working with developers to translate security concepts into practical solutions, refining rulesets, and contributing to in-house tooling like RESC, in a large corporate banking environment, with English as the working language.
This is a hands‑on role at the intersection of software development and application security. You'll work directly with developers, analyse security findings, improve security tooling and standards, and help the organisation respond to emerging risks such as AI-driven attacks and agentic development.
Maintain and improve the bank's secure software development posture.
Maintain and develop Secure Coding Standards.
Triage and analyse findings from SAST and SCA tools, such as Fortify and Nexus Lifecycle.
Analyse and prioritise vulnerabilities and explain their impact to development teams.
Support developers in understanding and resolving security findings in their code.
Fine-tune security rulesets to reduce false positives and improve the quality of findings.
Contribute to internally developed security tooling, including the Repository Scanner (RESC).
Help assess and address emerging security risks, including AI-driven attacks and agentic development.
Share knowledge, guidance and best practices with development teams across the bank.
The role is varied: one day you may be analysing code and security findings, while the next you may be working with developers on a solution or improving the tooling used across the organisation.
Experience in secure coding and/or application security.
Strong software development experience in at least one programming language.
Experience with SAST and SCA tools, such as Fortify, Nexus Lifecycle, or similar.
Experience analysing, triaging and prioritising software security findings.
Ability to work comfortably with developers and translate security concepts into practical solutions.
Strong communication skills and the ability to explain technical security topics clearly.
Experience working effectively within a large corporate environment.
Fluent in English.