Manage and analysis SAST tool results and software composition tool results
Application penetration testing and security validation of design requirement
Threat modeling and manage security requirement of new solutions
Analyze new application architecture against the security standards and best practice and provide security sign-off before live deployment
Participating in design and initial implementation of new technical security controls
Implements security improvements by assessing current situation; evaluating trends; anticipating requirements
Security risk assessment of current applications against regulation (PCI-DSS , PCI-PIN , PCI-3DS , Egypt financial security framework
Carry out other tasks related to compliance activities as requested by management.
Develop and maintain security testing plans
Actively involved in different security operations projects and deliverables. This include but not limited to NAC, PAM, EDR, and NDR solutions
Produce Clear actionable, threat-based, reports on security/Penetration testing results
Coordinate with different teams across the organization including but not limited to application developers, systems administrators, Application owners, IT, 3rd parties to demonstrate security testing results, explain the threat presented by the results, and consult on remediation
Communicate security issues to a wide variety of internal and external “customers” to include technical teams, executives, risk groups, vendors and regulators
متطلبات الوظيفة
Bachelor degree or any relevant degree
5+ years of experience in the InfoSec
Experienced in application development processes and at least one programing or scripting language (e.g., Java, Scala, C#, Ruby, Perl, Python, PowerShell)