In depth knowledge of DevSecOps/Application Security Management
Experience of 3-5 years in DevSecOps/Application Security Management
Hands on with threat modelling, BIA, PIA and risk management
Excellent knowledge of security control frameworks (ISO 27001, NIST CSF, CIS, ATT&CK)
Excellent knowledge of privacy controls (OECD, ISO 27701)
Consulting background of 5+ years
Certifications such as CISSP, CISM, CRISC, CSSLP, E|CDE, CDP, GCSA (good to have)