Talent.com
Senior Application Security Engineer
Senior Application Security EngineerDigicert • Pretoria, Gauteng, South Africa
No longer accepting applications
Senior Application Security Engineer

Senior Application Security Engineer

Digicert • Pretoria, Gauteng, South Africa
6 days ago
Job description

Who we are

We're a leading, global security authority that's disrupting our own category. Our encryption is trusted by the major ecommerce brands, the world's largest companies, the major cloud providers, entire country financial systems, entire internets of things and even down to the little things like surgically embedded pacemakers. We help companies put trust - an abstract idea - to work. That's digital trust for the real world.

Job summary

As a Senior Application Security Engineer specializing in application security and DevSecOps within our cybersecurity team, you will play a crucial role in safeguarding our company's web applications by integrating security practices into the Software Development Life Cycle (SDLC). You will be responsible for the proactive identification, assessment, and mitigation of security vulnerabilities, developing and driving the adoption of DevSecOps practices, and ensuring that security is embedded in all phases of software development.

This is a remote position.

What you will do

  • Lead the integration of security measures into the SDLC, ensuring that all aspects of web application development are secure by design.
  • Conduct thorough security assessments and penetration testing for web applications to identify vulnerabilities and security gaps.
  • Play an advisory role with software engineering teams in the architectural design of new applications, emphasizing secure architectural patterns and best practices.
  • Perform and coordinate manual and automated code reviews.
  • Lead threat modeling exercises across engineering teams.
  • Collaborate with software development teams to implement DevSecOps practices, providing guidance on secure coding, automated security testing, and continuous monitoring.
  • Contribute to internal security tooling development or integration.
  • Develop and maintain a secure framework for code deployment, automating security processes where possible to streamline the development workflow.
  • Work cross-functionally with various teams, including IT, engineering, operations, and business units, to communicate security policies and procedures effectively.
  • Establish and maintain strong relationships with stakeholders, presenting complex security concepts in an accessible manner.
  • Stay abreast of the latest security threats, trends, and technologies in web application security and incorporate this knowledge into company practices.
  • Assist in the development and enforcement of security policies and procedures, ensuring compliance with industry standards and regulations.
  • Assist with managing bug bounty program.
  • Develop program documentation to promote operational stability and scalability.
  • Support Leadership in defining and executing the roadmap for DevSecOps maturity and secure SDLC initiatives.
  • Support governance and compliance teams on secure engineering practices for aligning security policies related to SDLC
  • Drive and support security identified remediation efforts.
  • Foster and promote a security-forward culture.
  • Mentor junior team members.
  • Other duties and responsibilities, as assigned.

What you will have

  • Bachelor’s or master’s degree in computer science, cybersecurity, or a related field.
  • Professional security certifications such as CISSP, OSCP, CEH, or equivalent are highly desirable.
  • 5+ years of experience in cybersecurity, with a focus on web application security and secure SDLC.
  • Experience with red team implementation and methodologies.
  • Proven track record of working with DevSecOps tools (such as SAST / DAST / SCA) and methodologies.
  • Strong understanding of security protocols, cryptography, authentication, authorization, and security vulnerabilities.
  • Proficiency with programming / scripting languages such as JavaScript, Python, Java, Bash, PowerShell
  • Excellent communication skills with the ability to engage technical and non-technical stakeholders.
  • Strong analytical and problem-solving abilities, with a meticulous attention to detail.
  • Advanced level of knowledge of Information Security design concepts and principles
  • Nice to have

  • Master's degree in a technical discipline
  • Experience working in highly regulated environments.
  • Advanced level of knowledge of IT frameworks and standards (NIST, OWASP Top Ten, COBIT, ITIL, ISO, PCI-PIN, GDPR, WebTrust, FedRAMP)
  • Certified Information Systems Auditor (CISA)
  • AWS Solutions Architect
  • Benefits

  • Provident Fund
  • Medical Aid + Gap Cover
  • Employee Assistance Program
  • Gym Reimbursement
  • Life Insurance
  • Disability Insurance
  • Sabbatical
  • #LI-GA1

    __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT __PRESENT

    __PRESENT __PRESENT

    #J-18808-Ljbffr

    Create a job alert for this search

    Application Engineer • Pretoria, Gauteng, South Africa

    Related jobs
    SHEQ Manager

    SHEQ Manager

    Chainlink SA • Kempton Park, South Africa
    We are seeking a strategic, results oriented SHEQ Manager to lead our Safety, Health, Environment & Quality function.The successful candidate will design and implement an integrated SHEQ management...Show more
    Last updated: 30+ days ago • Promoted
    IT Operations Manager (Pretoria)

    IT Operations Manager (Pretoria)

    Hired Recruitment (Pty) Ltd • Benoni, South Africa
    To ensure the seamless operation, security, and efficiency of our organization's IT infrastructure across multiple sites and locations. This includes managing and supporting various operating system...Show more
    Last updated: 3 days ago • Promoted
    AWS Developer Cryptography (Senior)

    AWS Developer Cryptography (Senior)

    Khonology (Pty) Ltd • Randburg, GP, ZA
    The Cloud Security Engineer is responsible for designing, building, and maintaining secure, scalable cloud infrastructure primarily on AWS, with integration across Azure environments.This role ensu...Show more
    Last updated: 30+ days ago
    Manager : Security Systems Design + Applications

    Manager : Security Systems Design + Applications

    SHARON NUROCK RECRUITMENT CC • Pretoria, South Africa
    Lead the design, research and build of security systems (ACS, CCTV, alarms, sensors, perimeter systems).Provide strategic oversight for the teams security research and system design initiatives.Hig...Show more
    Last updated: 3 days ago • Promoted
    Azure Data Engineer

    Azure Data Engineer

    Dina Gates Recruitment (Pty) Ltd • Kempton Park, South Africa
    We are seeking a skilled Azure Data Engineer with a minimum of 2 years of experience to join our dynamic data team.The ideal candidate will have a strong background in SQL, Microsoft Azure, data wa...Show more
    Last updated: 30+ days ago • Promoted
    Tech Officer : IAM Security Engineer

    Tech Officer : IAM Security Engineer

    BCX • Centurion, ZA
    Job title : Tech Officer : IAM Security Engineer.Job Location : Gauteng, Centurion.The Identity and Access Management (IAM) Tech Officer provides, removes, modifies, and reviews user access to infor...Show more
    Last updated: 11 hours ago • Promoted • New!
    Applications Engineer

    Applications Engineer

    Boardroom Appointments • Kempton Park, South Africa
    Work with suppliers to create detailed technical requirements, including system architecture, hardware, software, and data, ensuring risk management, quality considerations, and product deployment ...Show more
    Last updated: 30+ days ago • Promoted
    Information Security Officer

    Information Security Officer

    Boardroom Appointments • Sandton, South Africa
    Maintain Operational Systems, Networks and Security.Facilitate annual PCI audits and ensure ongoing compliance.Ensure Linux systems are patched promptly and securely, coordinating through the corre...Show more
    Last updated: 30+ days ago • Promoted
    Systems Analyst - M365 and AWS- Contract

    Systems Analyst - M365 and AWS- Contract

    HR Genie • Roodepoort, South Africa
    We are seeking a technically proficient Security Analyst with 2 to 3 years of experience, focused on securing systems, applications, and infrastructure. The ideal candidate will have hands-on experi...Show more
    Last updated: 14 days ago • Promoted
    Network Security Engineer

    Network Security Engineer

    Sabenza IT & Recruitment • Pretoria, GT, za
    Quick Apply
    Network Security Engineer – 24-Month Contract | Pretoria (Hybrid).Are you passionate about protecting enterprise networks from evolving cyber threats? Join our team as a Network Security Engineer o...Show more
    Last updated: 7 days ago
    Quality Controller

    Quality Controller

    Omega Human Capital • Rosslyn, South Africa
    Are you a sharp problem-solver with a strong steel industry background and a passion for precision? A leading steel company in Rosslyn is looking for a. Track, report, and resolve all open claims wi...Show more
    Last updated: 11 days ago • Promoted
    Product Specialist Senior- Cars

    Product Specialist Senior- Cars

    Emporium Human Capital • Meadowdale, South Africa
    Product Specialist Senior Passenger Vehicles POS25195.To act as the product knowledge expert and brand ambassador for the passenger vehicle range. The Product Specialist supports the dealership or ...Show more
    Last updated: 30+ days ago • Promoted
    Security Engineer (Pretoria)

    Security Engineer (Pretoria)

    Hired Recruitment (Pty) Ltd • Benoni, South Africa
    Responsible for company-wide cybersecurity and related documents, process and record management to ensure that systems and products are safe and effective. Ensures data integrity, and that informati...Show more
    Last updated: 3 days ago • Promoted
    Process Engineer

    Process Engineer

    Profile Personnel • Rosslyn, South Africa
    We are seeking a Process Engineer to lead continuous improvement and ensure world-class quality in automotive production. Drive continuous improvement initiatives to enhance product quality and proc...Show more
    Last updated: 30+ days ago • Promoted
    IT Analyst

    IT Analyst

    Abantu Staffing Solutions • Rosslyn, South Africa
    Our client in the automotive sector is looking to employ a IT Analyst responsible for ensuring continuous operation of the company’s IT systems in the plant by supervising the ICT infrastructure ha...Show more
    Last updated: 30+ days ago • Promoted
    Senior Team Leader : Security Systems Support

    Senior Team Leader : Security Systems Support

    Kamo Placements • Pretoria, South Africa
    Provide leadership for the technical and physical aspects of security infrastructure maintenance to ensure the integrity, reliability, availability and advancement of security measures across the c...Show more
    Last updated: 5 days ago • Promoted