Key Responsibilities :
- Serve as part of the Application Security function, covering engineering, assurance, and operations for in-scope security systems and tools.
- Promote the enablement and adoption of security technologies for :
- Manual, static, and dynamic application security testing
- Software Composition Analysis (SCA) for open-source libraries
- Container / image scanning
- API security scanning
- Collaborate with local and group application teams and other technology units to ensure quality and consistency in DevSecOps adoption.
Required Core Competencies :
Knowledge of OWASP Top 10 and related standardsFamiliarity with application-specific vulnerabilities (e.g., CSRF, XSS, Injection attacks)Strong understanding of SDLC, DevSecOps, containers, and cloud technologiesProficiency in scripting languages such as Python, Perl, or Shell scriptingSkills Required
DevSecOps, Application Security Testing