Plan, test and implement advanced software security techniques in compliance with technical reference architecture.
Organize on-going security testing and code review to improve software security.
Detect, troubleshoot and debug issues that arise.
Prepare and maintain technical documentation.
Provide help and consulting to team members on secure coding practices.
Stay informed about new tools and best practices of the industry.
Experiment with AI security tools such as Microsoft Security Copilot to help with threat analysis.
Create, implement, and manage software security policies across all information systems in the company.
Create, implement, and manage monitoring policies and ensure that all notifications are shared across company.
Work with users to implement policies that continue to support their operations, and provide the security required to ensure integrity of the work done and data involved.
Conduct routine checks and tests to ensure that all known loopholes and vulnerabilities are detected and patched.
Conduct routine checks to discover and respond to security breaches and incidents for cloud-based systems and services.
Provide routine reports on security notifications and breaches.
Perform tasks assigned by direct supervisor.
Conduct security testing and vulnerability assessments, including penetration testing, vulnerability scanning, and code reviews.
Develop and maintain incident response plans, including incident response testing and training.
Requirements:
Degree in Information Technology, Computer Science, or equivalent relevant experience
3 years experience of working on a Software Security position, including experience in secure software development practices, threat modeling, and vulnerability assessments
Experience with Security Best Practices, implementing enterprise-grade security solutions
Profound experience with techniques, standards and methods for authentication and authorization, applied cryptography, security vulnerabilities and remediation
Experience with security testing tools and techniques, including penetration testing, vulnerability scanning, and code reviews
Experience with cloud deployment and management technologies, such as AWS
Experience with incident response planning, testing, and training
Good understanding of all aspects of security research and development
Strong understanding of security frameworks
Relevant certifications, such as AWS Certified Security – Specialty (SCS-C01), Certified Cloud Security Professional (CCSP), Certified Information Systems Security Professional (CISSP), or Certified Ethical Hacker (CEH), are a plus.