Application Security Analyst (Mid/Senior)
Application Security Analyst (Mid/Senior)
Celfocus
Celfocus is a European
- tech system integrator, providing professional services focused on creating business value through Analytics and Cognitive solutions – addressing Telecommunications, Energy & Utilities, Financial Services and other sectors.
Make an impact by working for sectors where technology is the enabler, everything is
- breaking and there’s a constant need to be innovative.
Be part of the team that combines business knowledge, technological edge and design experience. Our different backgrounds and
- how are key in developing solutions and experiences for digital clients.
Face challenges and learn other ways of thinking and seeing the world - there’s always room for your energy and creativity.
About the role
Celfocus is looking to add an Application Security Analyst to join our team.
As a part of your job, you will:
- Conduct analysis and threat modeling for new and existing Celfocus products/projects.
- Analyze and discuss requirements; interact with all participants in the software development process.
- Perform penetration testing on web applications.
- Conduct both manual and automated testing.
- Participate in the creation and development of the company's products at all stages of their life cycle.
What are we looking for?
- Previous experience as a Dev
Sec
Ops Security Analyst. - Profound security assurance tool knowledge.
- Profound CI/CD knowledge.
- Profound vulnerability knowledge.
- Basic understanding of security compliance requirements.
- Capability to align with teams from Analysts, Designers, Architects, Developers to Dev
Ops. - Knowledge of HTTP.
- Working knowledge of programming languages.
- Knowledge of the Top 10 OWASP vulnerabilities: how to find, exploit and fix them.
- Knowledge of Burp Suite or other popular web scanners like ZAP, Acunetix, Netsparker, etc.
- The desire and ability to work in a team.
- The desire to develop yourself in the field of application security.
- A lively and flexible mind, clear logic, a
- oriented approach. - Knowledge of English at least at the level of reading technical documentation.
Nice to have:
- Good knowledge of Linux or Windows operating systems.
- Skills in scripting and automating your work using Powershell, Python, Bash, etc.
- Knowledge of the OWASP Application Security Verification Standard (ASVS), OWASP Testing Guide and experience in whole product or feature planning.
- Familiarity with various protocols and attacks against them (OAuth, JWT, websockets, etc. ).
- Experience with public clouds (Azure, AWS, GCP).
- Experience with pipeline Orchestrators (Jenkins, Azure Dev
Ops, Git
Lab CI/CD). - Penetration testing experience.
Ability to adapt to different contexts, teams and clients.
Teamwork skills but also a sense of autonomy.
Motivation for international projects and willingness to travel.
Willingness to collaborate with other players.
Believe this is you? Come join the Team! At Celfocus, we are committed to cultivating a diverse and inclusive workplace. As an
- opportunity employer, we welcome applicants of all backgrounds, gender identities, and abilities. We are dedicated to providing reasonable accommodations for candidates with specific needs. If you require any adjustments during the selection process, please inform our Talent Acquisition Team.
Seja o primeiro a candidar-se à vaga de emprego oferecida!
-
Porque procurar um emprego no Vagas.pt?
Todos os dias oferecemos novas vagas de emprego. Pode escolher entre uma vasta gama de empregos: O nosso objectivo é oferecer a escolha mais vasta possível Receba novas ofertas por e-mail Ser o primeiro a responder a novas ofertas de emprego Todas as ofertas de emprego num só lugar (de empregadores, agências e outros portais de emprego) Todos os serviços para quem procura emprego são gratuitos Vamos ajudá-lo a encontrar um novo emprego