Application Security Lead
Social network you want to login/join with:
The Application Security Lead guides and supports IT Teams in the design and implementation of a Secure Software Development Lifecycle. The role has a broad responsibility to cover tasks in all parts of the Essity Information Security Management Process (ISMP). Each Information Security team member’s responsibility is defined annually and is assigned based on Essity’s current risk exposure as well as the team member’s competences and individual development goals. The job reports to the Director of Information Security (CISO).
What You Will Do
- Manage Essity’s application security programs.
- Closely collaborate with multiple development and delivery teams of various software products.
- Continuously drive threat intelligence and technology watch in selected areas.
- Be a trusted security advisor and provide security guidance to Essity colleagues.
- Make decisions based on information security standards and instructions.
- Annually plan and set priorities for security services and programs within own responsibility.
- Assess the need for security documents, develop and maintain information security standards.
- Coordinate more advanced security programs related to application security.
- Evolve Essity’s information security capabilities consistent with the risk portfolio.
- Participate in internal and external audits.
- Monitor compliance towards Essity security standards and follow up on remediating activities.
- Compile reports to IT Management providing assurance that Info
Sec is being adequately addressed.
Who You Are
Education
Higher education (at least a bachelor’s degree) in computer science, Information Technology, or a related field.
Professional security certifications such as CISSP or CISA are meritorious.
Work Experience
Several years of working experience in the areas of software engineering, application security, and ethical hacking.
Functional Skills
Deep understanding of application
- related frameworks and maturity models.
Advanced level of understanding of the OWASP top 10 vulnerabilities.
Experience with Dev
Sec
Ops practices and App
Sec tools (e. g. , SAST, SCA, DAST).
Experience in conducting threat modeling.
Knowledge of programming languages.
Skills in several IT security areas.
Good knowledge in regulatory compliance.
Ability to explain complex security concepts in simple terms.
Quality-oriented with high documentation and presentation skills.
Ability to motivate Essity employees to maintain a
- conscious behavior.
Languages
Application
Interested? Please send your application in English. If you are up for the challenge and think this sounds like you, apply online today! Kindly note that due to data protection, we will not accept applications via mail. As we will be making ongoing selections, interviews might start before the application deadline. Please use the link to apply via our career site. We may conduct background checks in the final stages of the recruitment process to verify your qualifications and fit for the role.
Together, we are improving lives, every day.
Working at Essity is not just a career; it is a chance to directly make the world a healthier, more hygienic, and safer place. With impactful innovations coupled with sustainable solutions, we strive to reach more people every year with the necessary and essential solutions for
- being.
Seja o primeiro a candidar-se à vaga de emprego oferecida!
-
Porque procurar um emprego no Vagas.pt?
Todos os dias oferecemos novas vagas de emprego. Pode escolher entre uma vasta gama de empregos: O nosso objectivo é oferecer a escolha mais vasta possível Receba novas ofertas por e-mail Ser o primeiro a responder a novas ofertas de emprego Todas as ofertas de emprego num só lugar (de empregadores, agências e outros portais de emprego) Todos os serviços para quem procura emprego são gratuitos Vamos ajudá-lo a encontrar um novo emprego