Application security engineer

Full-time

GVA PARTNERS LIMITED

APPLICATION SECURITY ENGINEER

An exciting opportunity exists for a highly skilled Application Security Engineer to join a dynamic project team. The resource shall be responsible for the following
  • Ensuring the security of the company's networks, data and applications.
  • Provides technical leadership and guidance to the application security team
  • Manages the application security program, defines standards, policies, and procedures, and coordinates with engineering teams to implement and maintain integrated applications.
  • Maintain all IT system work flows.
  • Maintain and update all IT Networks.
  • Maintain and contribute to the development of IT Network.
  • Participate actively in developing, planning and implementing advance IT systems.
  • Other duties as assigned.
Functions:
  • Conduct web application security testing to identify vulnerabilities and ensure compliance with security requirements before deployment.
  • Collaborate with cross-functional teams to prioritize security issues and recommend mitigation strategies.
  • Develop and maintain security test plans, procedures, and documentation.
  • Communicate security risks and recommendations to stakeholders.
  • Lead cybersecurity initiatives in conjunction with Group Cybersecurity team.
  • Design and implement security controls to safeguard and monitor events for information systems, enterprise applications and data.
  • Lead the implementation of Information Security projects
  • Drive internal and external vulnerability assessment, penetration tests engagements and manage results to remediation.
  • Respond to escalated security events and drive security incident response processes to ensure timely resolution with minimal disruption.
  • Design, document, and deploy secure infrastructure solutions to enhance and evolve the security posture of the business to ensure integrity, availability and confidentiality of all critical enterprise data.
  • Provide expertise on security tools, including but not limited to firewalls, Web Application firewalls, IDS/IDP, anti-malware software
  • Liaise with stakeholders in respect of operational implementation of security policies and best practices
  • Collaborate with the Client Server Team to ensure that technical plans are practical, controls are sustainable, and implementations are managed to minimize risks and adverse impact to servers, workstations and user productivity.
  • Implement the infrastructure, configurations and processes to monitor security related events
  • Prevent data loss and service interruptions by researching new technologies that will effectively protect the enterprise network.
Supervisory/Managerial Responsibilities:
  • Ensure conformance to Cybersecurity Blueprint/Roadmap
  • Provide inputs to company strategic plan on all initiatives to ensure that Security gaps/vulnerabilities are identified & closed
  • Establish and ensure credibility through strong relationships, value-add to operations and professionalism
Experience:
  • Minimum of 6 years’ experience in an area of Security specialisation; with experience working with others
  • Experience working in a Large organization and preferably in the financial industry
  • Strong background as an Engineer/Architect in application security infrastructure and various network technologies to include devices such as firewalls, VPN, intrusion/extrusion detection, vulnerability & risk assessment tools, encryption technologies, virus/worm/malware prevention, E-business and web application technologies, Data Loss Prevention, whole disk & device encryption solutions, two-factor authentication, common Windows (desktop & server) platforms
  • Experience with Microsoft, Solaris, Unix, Oracle and MS SQL
  • Experience working in telecommunications industry
  • Managing network and / or network security
  • Knowledge should be current with information security best practices and global trends
  • Knowledge of security best practices such as; defense in-depth, least privileges, need-to-know, separation of duties, access controls, encryption
  • User account identity, authorization and authentication management.
  • Security incident and event management
  • Experience in researching new or emerging technologies and processes that may be incorporated as solutions to reoccurring security concern
Training:
  • Penetration Testing
  • Vulnerability lifecycle management
  • Advanced Security Incidence Reponse
  • Systems Auditing, Database Security, Firewall Design, Intrusion detection system administration Implementation
  • Security enforcement on systems level, security audit and vulnerability management
  • Telecommunications, Network, wireless & Internet Security

Vacancy posted a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application security engineer. Be the first to apply!

subscribeToSimilarBanner
Sign up to access all features of our service
  • Job search
  • Favorites
  • Create a CV
    New
  • Subscriptions