The Information Security Engineer will
focus on ensuring the organization’s applications and data is secure and built
according to best security standards. This role will be the subject matter
expert on building secure code, application security, vulnerability testing,
and providing security validation to the organization’s environments.
Key Roles & Responsibilities:
- Perform
scheduled penetration testing of the company’s applications
- Perform
white, gray and black box security assessments.
- Support
the organization, JVs and Subsidiaries in implementing Secure Software
development lifecycle.
- Perform
Mobile Services security Assessments.
- Support
the organizations’ environment monitoring by using available tools or help
build internal tools to enable advanced threat detection and response.
- Conduct
Security Vulnerability Assessments and impact assessment on company’s electronic
assets.
- Perform
Security Assessments on ERP and other on-premise solutions.
Skills,
Knowledge and Behaviors:
- Ability to lead direct
and indirect resources
- Ability to communicate
technical challenges to non-technical audiences
- Ability to quantify risk
and impact vectors - Certified Ethical Hacker
- OCSP level of technical
expertise
- Strong Scripting
capability
- Strong ISO 27000
understanding
- Strong Application
security background
- Strong Infrastructure
security Background
- Strong experience in open source security tools
Qualifications & Experience:
- Security
Certification focusing on offensive or defensive practices
- Bachelor’s degree
in Information Security or Computer Engineering
- 10 + years in
cybersecurity field
- System, network
and/or application background
Preferred Experience:
Product development experience