About Nexttech
Founded in 2015 Nexttech has built a solid foundation in delivering comprehensive IT solutions tailored to meet diverse client needs. With expertise spanning five key industry sectorsBanking Energy Telecom Automotive andEcommerce & Logisticswe provide nearshore and onshore services designed to drive efficiency and support strategic growth.
Our team supports every phase of the Software Development Life Cycle (SDLC) from developing detailed roadmaps and resolving complex software challenges to ensuring quick timetomarket and optimized ROI.
About the Role:
TheSecurity Championserves as a bridge between the security team and development teams helping integrate secure coding practices into the software development lifecycle. This role plays a key part in promoting a strong security culture and ensuring that security is considered early and often in the development process.
Key Responsibilities
- Integrate Security Tools: Work with CI/CD teams to integrate security scanning tools (e.g. Fortify) into deployment pipelines ensuring security checks are automated and effective.
- Ticket Management: Open and manage securityrelated tickets in Jira boards ensuring vulnerabilities and risks are properly tracked and prioritized.
- Developer Engagement: Act as a security liaison for development teams promoting secure coding practices and advocating for security considerations during planning and development.
- Security Report Analysis: Review and interpret security scan reports provide clear summaries and help development teams understand findings and their implications.
- Vulnerability Remediation Support: Collaborate with developers to troubleshoot and resolve identified security issues offering guidance on fixes and best practices.
MustHave Skills & Experience
- Solid understanding of application security concepts and secure development practices.
- Experience with static and dynamic code analysis tools (e.g. Fortify SonarQube etc..
- Familiarity with DevOps and CI/CD pipelines.
- Strong communication and collaboration skills.
- Experience using Jira or similar issuetracking tools.
- Good knowledge of Java/Spring and experience with Spring Boot framework.
NicetoHave
- Handson experience in a securityfocused role within an agile or DevSecOps environment.
- Familiarity with OWASP Top 10 and common software threat modeling approaches.
- Experience supporting regulated environments (e.g. banking finance healthcare).
- Contributions to internal security enablement (e.g. running workshops documentation security tooling advocacy).
What We Offer
- Ahighimpact role helping shape secure software development across a largescale engineering organization.
- The chance to influence security tooling practices and culture from within the delivery lifecycle.
- Autonomy and visibility working closely with both the securityand engineering leadership.
- Competitive compensation and career growth in a highimpact role.