drjobs Secure Coding Specialist - Application Security

Secure Coding Specialist - Application Security

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Bengaluru - India

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Description:

Description:

Airbus is on its Digital journey and the objective is to transform the company and to prepare it for the future. This transformation includes new global governance new ways of working and the implementation of digital business services and platforms. As a part of this transformation journey we have set up a GIC in the silicon valley of India - Bangalore. This state of the art GIC is responsible for driving excellence in IT and OT for Airbus.

Challenges are numerous and exciting.!

What is the Airbus Application Security team doing

Security for Applications is designed to strengthen Airbus applications against evolving threats reduce vulnerabilities and de-risk them by applying all the necessary security controls. Your role as a Secure Coding Specialist is to work towards promoting and ensuring the implementation of secure coding best practices in the context of the Application Security / SecDevOps (Secure Development and Operations of Software Applications) by detecting analyzing and remediating vulnerabilities and misconfigurations in application code. Your role is key as you contribute to the overall performance and success of Airbus Digital Security Posture.

Qualification & Experience:

We seek out curious minds! We value attention to detail! And we care deeply about outcomes!

Were looking for passionate people who are eager to learn willing to share and establishing innovative ways of working and influencing cultural changes

  • Bachelor or masters in Computer Science Engineering or related field would be preferred

  • 4 to 8 years of relevant experience as Application Security / Secure Coding Specialist

  • Proficiency in at least one major programming language: Java C# Python JavaScript Go etc.

  • Strong understanding and knowledge of Application Secrets Management (Detect & Remediate)

  • In-depth knowledge of common application security vulnerabilities: OWASP Top 10 SANS Top 25 and their mitigation controls & strategies

  • Working experience with SAST (Static Application Security Testing) tools such as: CheckmarxOne and SCA (Software Composition Analysis)

  • Knowledge in setting up & operating Cloud infrastructure using IaC; familiarities with containers and security automation in CI/CD pipelines

  • Good understanding of monolithic & microservices application architecture and knowledge of common web application frameworks

  • Good to have relevant industry certifications: CSSLP CISSP OSCP CompTIA Security etc.

  • Proven ability to prioritise workload meet deadlines and utilise time effectively

  • A team player with excellent interpersonal communication and negotiation skills

  • Knowledge of Agile frameworks: SAFe Scrum Kanban is an added advantage

Responsibilities

As a Secure Coding Specialist with our Application Security team you will work on the following activities:

Governance & Process

  • Contribute towards development continuous enhancement and enforcement of secure coding standards guidelines and policies

  • Setup effective processes and procedures for secure code reviews and remediations of identified vulnerabilities

  • Raise awareness on secure coding best practices among developers & application owners across organization

Code Scanning & Review

  • Onboarding of Airbus Critical applications into Airbus DevOps CI/CD to ensure automated code scanning and be able to conduct manual code reviews when required

  • Be able to conduct code reviews in context of SAST SCA IaC Artifactory for web & mobile apps

  • Identify security vulnerabilities design flaws and insecure coding practices through the review

  • Analyze the identified vulnerabilities for true positive and false positives accordingly propose remediations to the development teams (fine-tuning tools detection capabilities in case of FP)

  • Provide recommendations support and guidance to the developers to prioritize remediations

Collaboration and Documentation:

  • Connect & collaborate with Application Security Product Manager/Owners to ensure alignment of strategies & roadmap

  • Work closely with other Security & IT teams across organization: Security architects Application developers DevOps engineers and Business stakeholders

  • Provide technical support in the areas of application vulnerability risk assessment and security control implementation and always produce detailed and effective documentations

Continuous Learning and Development:

  • Participate in Security threat and monitoring forums to learn and keep abreast of the latest security trends threats and vulnerabilities continually building knowledge in the cyber threat landscapes and good practices

  • Participate in workshops training certifications & security conferences to enhance skills in Cyber Security

Benefits

  • You will be part of a truly international team

  • Travel opportunities (domestic and international)

  • Competitive remuneration bonus and incentives

  • Good work / life balance and career growth opportunities

  • Training and development opportunities (online classroom conferences)

  • Comprehensive benefits package (complementary health and life insurance)

Success Metrics

Success will be measured in a variety of areas including but not limited to

  • Consistently ensure the on-time delivery and quality (first-time-right) of the projects

  • Bring innovative cost effective solutions

  • Achieve customer satisfaction

This job requires an awareness of any potential compliance risks and a commitment to act with integrity as the foundation for the Companys success reputation and sustainable growth.

Company:

Airbus India Private Limited

Employment Type:

Permanent

-------

Experience Level:

Professional

Job Family:

Cyber Security

By submitting your CV or application you are consenting to Airbus using and storing information about you for monitoring purposes relating to your application or future employment. This information will only be used by Airbus.
Airbus is committed to achieving workforce diversity and creating an inclusive working environment. We welcome all applications irrespective of social and cultural background age gender disability sexual orientation or religious belief.

Airbus is and always has been committed to equal opportunities for all. As such we will never ask for any type of monetary exchange in the frame of a recruitment process. Any impersonation of Airbus to do so should be reported to.

At Airbus we support you to work connect and collaborate more easily and flexibly. Wherever possible we foster flexible working arrangements to stimulate innovative thinking.


Required Experience:

Unclear Seniority

Employment Type

Full-Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.