Description
Summary:
This role seeks an application security expert with a development background, strong programming skills, and experience in secure code reviews and application security testing.
Highlights:
1. Leading application security initiatives and program development
2. Utilizing expertise in various application and security testing technologies
3. Driving change with excellent communication and leadership skills
Full Time \| Central \& Latin America or Remotely within the CET/GMT time zone
If you like this offer, please send your CV mentioning the job title to: corporate.sales@united\-its.com
Location: Central \& Latin America or Remote working on the CET time zone
Teleworking option: **Yes**
#### **Required Technical Skills**
The resource **MUST** have the following skills and experience:
* Have a developer background
* Strong programming/scripting skills in two of the following languages: Python, Java, .Net, JavaScript, TypeScript
* Performing secure code reviews
* Establishing and implementing key security metrics to measure the success of the application security program
* Experience in planning, researching, and developing security standards and procedures
* Experience and expertise in application and security testing technologies including static code analysis (SAST), software composition analysis (SCA), dynamic analysis (DAST), container security, and policy as code
* Experience in running projects and coordinating team members’ work
* Bilingual Spanish\-English
The resource **SHOULD** have the following skills and experience:
* Conducting threat modeling exercises to identify and prioritize potential security threats
* Experience with configuring and managing GitHub Security Advisories
* Knowledge of using GitHub Actions for security scanning and automated testing
* Knowledge of YAML\-based pipeline configuration for defining builds and releases
* Familiarity with Azure Artifacts for managing and hosting artifacts like packages and dependencies
* Experience integrating Azure DevOps with other Azure services, such as Azure Key Vault
* Knowledge of security features in Azure DevOps, including role\-based access control (RBAC) and compliance reporting
* Familiarity with OWASP ASVS
**Soft skills:**
* Excellent communication and leadership skills, with the ability to influence and drive change
* Customer facing experience and oral communication skills
* Conflict management and cooperation
* Creativity on finding innovative solutions
**Desirable certifications:**
* Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field.
* Preference for Cybersecurity certification in software development (CSSLP or a combination of others).
**Teleworking Option:**
* Yes
**On\-call requirements:**
* Not required