Applications Security Specialist

hace 3 meses


Bogotá Remoto, Colombia GSB A tiempo completo
Main Activities / Responsibilities:
● Generation of threat modeling analysis, security requirements and abuse cases for all
developments carried out in ADC.
● Analyze changes to existing software looking for security risks that can be implemented in the
coding process.
● Identify vulnerabilities in the source code and in the runtime application.
● Determine and advise on the recommended security controls required to remediate findings and
issues in an efficient and concise manner.
● Generate awareness campaigns to all stakeholders of the software process.
● Help developers to use secure coding practices, as well as resolve specific doubts about
vulnerabilities identified in the different testing scenarios.
● Align security solutions to Holcim methodologies and standards.
● Design, implement, and support the security model for general security solutions
● Develop and drive the implementation of security best practices and standards.
● Review requests for new systems or changes to existing systems and evaluate the impact to
security.
● Conduct pre-audits on security issues of concern, work with the user community on remediation;
conduct spot checks of user security to ensure compliance.
● Provide technical Support for security issues related to in-scope applications, infraestruture as
code and cloud services .
● Provide support to other colleagues in terms of technical/functional expertise with the assigned
business processes.
● Expert in Vulnerability Management tools like Qualys or Nessus.

Qualifications:
● Bachelor’s degree in Computer Science, Engineering, or related discipline with an IT focus.
● Certifications: CISSP, CISM, CISA, CRISC ITIL, CMMI, ISO 27001, GSEC, CSSLP.
● Ethical Hacking certifications desired.
● Secure coding certifications desired.

Required Experience:
● At least 4 years of experience in IT Security and development, delivering applications with a secure
focus, assessments and audits.
● Experience in fullstack development, object-oriented programming, microservices oriented
architecture, with knowledge in agile methodologies and DevOps model.

Desired Experience:
● Experience on secure development and ethical hacking.
● Experience with vulnerabilities and fixes for different languages (C, C#, Java, Javascript)

Soft skills:
● Experience coordinating and completing multiple tasks within established and changing deadlines.
● Excellent organizational, analytical, and independent problem solving skills.
● Demonstrated excellent oral and written communication skills necessary to interact effectively with
colleagues and with users of varying technological skill levels.
● Strong customer / end-user / client service orientation.
● Thrives working in a highly collaborative and team environment.
● Highly self-motivated and directed.
● Ability to provide 24/7 support to respond to critical incidents or business impacting project
deliverables.
● Keen attention to detail.
● Capability for problem solving, decision making, sound judgment, assertiveness.
● Ability to deal with difficult situations, unclear priorities and blocking stakeholders.
● Ability to work decisively under heavy workload considering the criticality, urgency and extended
work hours required to ensure availability of the service in accordance with service level
commitments.
● Ability to manage multi-cultural and multi-located teams.
Leadership skills:
● Lead by example on values and culture.
● A natural leader whose personality and communication skills instill a sense of credibility and trust.
● Able to coherently explain the proposed design and gain stakeholder buy-in to the proposed
solution.
● Cost conscious and keeps a big picture perspective.

Required skills:
● Authentication and Access Control Tools, Management and Administration.
● Application Security Architecture & Cloud Computing Concepts.
● Change & Security Configuration Audit and Control.
● Encryption Processes, Management and Administration.
● Experience in static and dynamic security testing (code review, vulnerability analysis, Ethical
Hacking)
● Knowledge in offensive security methodologies (OWASP, MASVS, OPENSAMM, CKC, etc).
Knowledge in tools such as OwaspZap, Burpsuite, Nessus, Service Manager, Git, Fortify, Codacy,
Sonarqube.

Desired skills:
● Knowledge in AWS cloud security.

Languages:
● English desired (written & spoken)
● Spanish required (written & spoken)

Benefits:
- Law benefits
- Courses and certifications

  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main ResponsibilitiesWe are seeking a highly skilled Applications Security Specialist to join our team at GSB. As a key member of our security team, you will be responsible for ensuring the security and integrity of our applications and systems.Key Responsibilities:Develop and implement threat modeling analysis, security requirements, and abuse cases for all...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main ResponsibilitiesWe are seeking a highly skilled Application Security Specialist to join our team at GSB. As a key member of our security team, you will be responsible for ensuring the security and integrity of our applications and systems.Key Responsibilities:Conduct thorough threat modeling and security analysis to identify potential vulnerabilities...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    About the JobWe are seeking a highly skilled Application Security Specialist to join our team at GSB. As a key member of our security team, you will be responsible for ensuring the security and integrity of our applications and systems.Main Responsibilities:Conduct threat modeling and security analysis to identify potential vulnerabilities and risks.Develop...

  • Security Specialist

    hace 3 semanas


    Bogotá - Remoto, Colombia GSB A tiempo completo

    Job Description: As a seasoned Application Security Specialist at GSB, you will play a pivotal role in ensuring the security and integrity of our applications. **Key Responsibilities:** • Conduct thorough threat modeling to identify potential security risks and vulnerabilities. • Collaborate with development teams to implement secure coding practices...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main ResponsibilitiesWe are seeking a highly skilled Application Security Specialist to join our team at GSB. As a key member of our security team, you will be responsible for ensuring the security and integrity of our applications and systems.Key Responsibilities:Conduct threat modeling analysis and security requirements for all developments carried out in...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main ResponsibilitiesThe successful candidate will be responsible for generating threat modeling analysis, security requirements, and abuse cases for all developments carried out in ADC. This will involve analyzing changes to existing software to identify potential security risks that can be integrated into the coding process.The selected candidate will also...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main ResponsibilitiesWe are seeking a highly skilled Enterprise Security Specialist to join our team at GSB.Key Responsibilities:Systems Architecture: Ensure the security requirements of our organization are met in all aspects of enterprise architecture.Vulnerability Assessment and Management: Perform assessments of systems and networks, identifying...


  • Bogotá, Bogotá D.E., Colombia SOS Trabajo A tiempo completo

    Job Title: AWS Security SpecialistAt SOS Trabajo, we are seeking a highly skilled AWS Security Specialist to join our team. As a key member of our security team, you will be responsible for providing technical leadership in the creation, establishment, and maintenance of our information technology/security risk framework, processes, and controls.Key...

  • Security Specialist

    hace 1 mes


    Bogotá, Bogotá D.E., Colombia GSB A tiempo completo

    Job DescriptionCompany: GSBJob Title: Applications Security SpecialistMain Responsibilities:Conduct threat modeling analysis, security requirements, and abuse cases for all developments in ADC.Analyze software changes for security risks and implement them in the coding process.Identify vulnerabilities in source code and runtime applications.Determine and...

  • Cloud Security Specialist

    hace 4 semanas


    Bogotá, Bogotá D.E., Colombia Talan A tiempo completo

    Job Summary:Talans innovative advisory group is seeking a Cloud Security Specialist to join our team in Málaga, Spain. As a key member of our team, you will play a crucial role in managing and maximizing the value of our products, prioritizing team work, and ensuring the seamless integration of our applications with IAM solutions. With 2-3 years of...


  • Bogotá, Cundinamarca, Colombia GSB A tiempo completo

    Main Activities / Responsibilities: - Generation of threat modeling analysis, security requirements and abuse cases for all developments carried out in ADC. - Analyze changes to existing software looking for security risks that can be implemented in the coding process. - Determine and advise on the recommended security controls required to remediate...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Job Title: Enterprise Security ArchitectAt GSB, we are seeking an experienced Enterprise Security Architect to join our team. As a key member of our security team, you will be responsible for ensuring the security and integrity of our organization's information systems and networks.Key Responsibilities:Develop and implement enterprise-wide security...


  • Bogotá, Bogotá D.E., Colombia SOS Trabajo A tiempo completo

    Job Summary:SOS Trabajo is seeking an AWS Security Specialist to lead our security efforts. As a key member of our team, you will be responsible for providing technical leadership in the creation, establishment, and maintenance of the information technology security risk framework, processes, and controls.Key Responsibilities:Lead security investigations...


  • Bogotá, Colombia Universidad Católica de Oriente A tiempo completo

    The Platform Security Specialist is responsible for the hands-on implementation and maintenance of security controls across the organization's cloud and on-premises infrastructure, including AWS, Azure, GCP, and container environments. They ensure the security posture of the cloud environment by conducting thorough risk assessments, collaborating with...


  • Bogotá, Bogotá D.E., Colombia Fortinet, Inc. A tiempo completo

    About the Role:We are seeking a highly skilled Enterprise Network Security Specialist to join our team at Fortinet, Inc.Job Summary:The Enterprise Network Security Specialist will be responsible for pre-sales technical support, sales calls, and post-sales technical assistance. This role requires a strong understanding of networking applications and...


  • Bogotá, Bogotá D.E., Colombia Sos Trabajo A tiempo completo

    Job DescriptionSos Trabajo is seeking an experienced Cloud Security Architect and Compliance Specialist to join our team.Job SummaryThe Cloud Security Architect and Compliance Specialist will be responsible for designing and implementing secure cloud computing solutions and ensuring compliance with relevant regulations and industry standards.Key...


  • Bogotá, Bogotá D.E., Colombia Mitel A tiempo completo

    Job Title: Cybersecurity SpecialistMitel is seeking a highly skilled Cybersecurity Specialist to join our team. As a key member of our security team, you will play a critical role in protecting our customers' data and ensuring the security of our global organization.Key Responsibilities:Develop and implement security policies and procedures to ensure the...


  • Bogotá, Bogotá D.E., Colombia BruntWork A tiempo completo

    Job Title: Security Camera Monitor SpecialistAbout the Job:The BruntWork Security Camera Monitor Specialist will oversee surveillance systems to protect our stores, facilities, and cannabis inventory. This remote position involves monitoring store operations, ensuring compliance with security procedures, reviewing POS system activity for unauthorized...


  • Bogotá, Bogotá D.E., Colombia World Vision A tiempo completo

    World Vision is seeking a highly experienced and skilled Security Risk Management Specialist to join our team. The ideal candidate will have a minimum of 10 years of experience working internationally in a complex global organization, ideally with experience in an INGO setting.The Security Risk Management Specialist will be responsible for driving the...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main Activities / Responsibilities: ● Generation of threat modeling analysis, security requirements and abuse cases for all developments carried out in ADC. ● Analyze changes to existing software looking for security risks that can be implemented in the coding process. ● Identify vulnerabilities in the source code and in the runtime application. ●...