Applications Security Specialist

hace 1 semana


Bogotá Remoto, Colombia GSB A tiempo completo
Main Activities / Responsibilities:
● Generation of threat modeling analysis, security requirements and abuse cases for all
developments carried out in ADC.
● Analyze changes to existing software looking for security risks that can be implemented in the
coding process.
● Identify vulnerabilities in the source code and in the runtime application.
● Determine and advise on the recommended security controls required to remediate findings and
issues in an efficient and concise manner.
● Generate awareness campaigns to all stakeholders of the software process.
● Help developers to use secure coding practices, as well as resolve specific doubts about
vulnerabilities identified in the different testing scenarios.
● Align security solutions to Holcim methodologies and standards.
● Design, implement, and support the security model for general security solutions
● Develop and drive the implementation of security best practices and standards.
● Review requests for new systems or changes to existing systems and evaluate the impact to
security.
● Conduct pre-audits on security issues of concern, work with the user community on remediation;
conduct spot checks of user security to ensure compliance.
● Provide technical Support for security issues related to in-scope applications, infraestruture as
code and cloud services .
● Provide support to other colleagues in terms of technical/functional expertise with the assigned
business processes.
● Expert in Vulnerability Management tools like Qualys or Nessus.

Qualifications:
● Bachelor’s degree in Computer Science, Engineering, or related discipline with an IT focus.
● Certifications: CISSP, CISM, CISA, CRISC ITIL, CMMI, ISO 27001, GSEC, CSSLP.
● Ethical Hacking certifications desired.
● Secure coding certifications desired.

Required Experience:
● At least 4 years of experience in IT Security and development, delivering applications with a secure
focus, assessments and audits.
● Experience in fullstack development, object-oriented programming, microservices oriented
architecture, with knowledge in agile methodologies and DevOps model.

Desired Experience:
● Experience on secure development and ethical hacking.
● Experience with vulnerabilities and fixes for different languages (C, C#, Java, Javascript)

Soft skills:
● Experience coordinating and completing multiple tasks within established and changing deadlines.
● Excellent organizational, analytical, and independent problem solving skills.
● Demonstrated excellent oral and written communication skills necessary to interact effectively with
colleagues and with users of varying technological skill levels.
● Strong customer / end-user / client service orientation.
● Thrives working in a highly collaborative and team environment.
● Highly self-motivated and directed.
● Ability to provide 24/7 support to respond to critical incidents or business impacting project
deliverables.
● Keen attention to detail.
● Capability for problem solving, decision making, sound judgment, assertiveness.
● Ability to deal with difficult situations, unclear priorities and blocking stakeholders.
● Ability to work decisively under heavy workload considering the criticality, urgency and extended
work hours required to ensure availability of the service in accordance with service level
commitments.
● Ability to manage multi-cultural and multi-located teams.
Leadership skills:
● Lead by example on values and culture.
● A natural leader whose personality and communication skills instill a sense of credibility and trust.
● Able to coherently explain the proposed design and gain stakeholder buy-in to the proposed
solution.
● Cost conscious and keeps a big picture perspective.

Required skills:
● Authentication and Access Control Tools, Management and Administration.
● Application Security Architecture & Cloud Computing Concepts.
● Change & Security Configuration Audit and Control.
● Encryption Processes, Management and Administration.
● Experience in static and dynamic security testing (code review, vulnerability analysis, Ethical
Hacking)
● Knowledge in offensive security methodologies (OWASP, MASVS, OPENSAMM, CKC, etc).
Knowledge in tools such as OwaspZap, Burpsuite, Nessus, Service Manager, Git, Fortify, Codacy,
Sonarqube.

Desired skills:
● Knowledge in AWS cloud security.

Languages:
● English desired (written & spoken)
● Spanish required (written & spoken)

Benefits:
- Law benefits
- Courses and certifications
  • Security Specialist

    hace 17 horas


    Bogotá, Bogotá D.E., Colombia GSB A tiempo completo

    About the RoleWe are seeking a highly skilled Security Specialist to join our team at GSB. As a key member of our security team, you will be responsible for ensuring the security and integrity of our applications and systems.Main ResponsibilitiesConduct threat modeling analysis, security requirements, and abuse cases for all developments carried out in...


  • Bogotá, Cundinamarca, Colombia GSB A tiempo completo

    Main Activities / Responsibilities: - Generation of threat modeling analysis, security requirements and abuse cases for all developments carried out in ADC. - Analyze changes to existing software looking for security risks that can be implemented in the coding process. - Determine and advise on the recommended security controls required to remediate...


  • Bogotá, Bogotá D.E., Colombia Scotiabank A tiempo completo

    Job SummaryWe are seeking a highly skilled Web Application Security Specialist to join our team at ScotiaTech. As a key member of our Cybersecurity Program, you will play a critical role in monitoring and reporting vulnerabilities found on Scotiabank web applications.About the RoleThe Web Application Security Program's main objective is to provide monitoring...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main Activities / Responsibilities: ● Generation of threat modeling analysis, security requirements and abuse cases for all developments carried out in ADC. ● Analyze changes to existing software looking for security risks that can be implemented in the coding process. ● Identify vulnerabilities in the source code and in the runtime application. ●...


  • Bogotá, Bogotá D.E., Colombia Amadeus A tiempo completo

    About the RoleWe are seeking a highly skilled Cyber Security Specialist to join our team at Amadeus. As a key member of our Security Operations Center (SOC), you will play a critical role in protecting our organization from cyber threats.Key ResponsibilitiesMonitor and Analyze Security Events: Utilize advanced tools and techniques to monitor and analyze...

  • Cloud Security Specialist

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia SOS Trabajo A tiempo completo

    General Overview The Cloud Security Specialist plays a crucial role in the development and implementation of secure cloud solutions, ensuring that all necessary security measures and requirements are integrated into the cloud architecture. Key Responsibilities Safeguard the organization's cloud assets in accordance with applicable governance laws,...

  • Security Analyst

    hace 6 días


    Bogotá, Bogotá D.E., Colombia Softgic A tiempo completo

    About the RoleWe are seeking a highly skilled Security Analyst to join our team at Softgic. As a key member of our security team, you will be responsible for ensuring the confidentiality, integrity, and availability of our systems and data.Key ResponsibilitiesProtection Needs Assessment: Conduct initial assessments to identify potential security risks and...

  • Security Analyst

    hace 6 días


    Bogotá, Bogotá D.E., Colombia Softgic A tiempo completo

    About the RoleWe are seeking a highly skilled Security Analyst to join our team at Softgic. As a key member of our security team, you will be responsible for ensuring the confidentiality, integrity, and availability of our systems and data.Key ResponsibilitiesProtection Needs Assessment: Conduct initial assessments to identify potential security risks and...

  • Cloud Security Specialist

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia SOS Trabajo A tiempo completo

    General Overview The Cloud Security Specialist plays a pivotal role in the design and engineering of secure cloud environments, ensuring that all necessary security controls and requirements are integrated into cloud solutions. Key Responsibilities Safeguard the organization's cloud assets in accordance with governance laws, regulatory compliance, and...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main Activities / Responsibilities: ● Systems Architecture: Ensures that the stakeholder security requirements necessary to protect the organization’s mission and business processes are adequately addressed in all aspects of enterprise architecture including reference models, segment and solution architectures, and the resulting systems supporting those...


  • Bogotá, Bogotá D.E., Colombia Scotiabank A tiempo completo

    Job SummaryWe are seeking a highly skilled Cyber Security Specialist to join our team at Scotiabank. As a key member of our Cyber Problem Management team, you will play a critical role in ensuring the overall success of our operations.Key ResponsibilitiesConduct Post-Incident Response: Lead the post-incident response process for cyber incidents globally,...


  • Bogotá, Colombia SOS Trabajo A tiempo completo

    General Description Provide technical leadership in the creation, establishment, and maintenance of the information technology/security risk framework, processes, and controls, taking into consideration the overall business strategy, legal/regulatory requirements, and other best practices. Perform security assessment to applications, systems, and vendors....


  • Bogotá, Bogotá D.E., Colombia SOS Trabajo A tiempo completo

    About the RoleWe are seeking a highly skilled Cloud Security DevOps Engineer to join our team at SOS Trabajo. As a key member of our security team, you will be responsible for ensuring the security and integrity of our cloud-based systems and applications.Key ResponsibilitiesDesign and implement secure cloud-based systems and applicationsDevelop and maintain...

  • Security Analyst

    hace 2 semanas


    Bogotá, Colombia SOFTGIC S.A.S. A tiempo completo

    Job Description This is a remote position.At Softgic, we work with the sharpest minds, with those who build, with those who love what they do, with those who have a 100% attitude because that's our #Coolture. Join our purpose of making life easier with technology and be part of our team as a Security Analyst.Compensation:USD 10 - 17/hour.Location:Remote...

  • Security Analyst

    hace 2 semanas


    Bogotá, Colombia SOFTGIC S.A.S. A tiempo completo

    This is a remote position.At Softgic, we work with the sharpest minds, with those who build, with those who love what they do, with those who have a 100% attitude because that's our #Coolture. Join our purpose of making life easier with technology and be part of our team as a Security Analyst.Compensation:USD 10 - 17/hour.Location:Remote (anywhere).Mission...


  • Bogotá, Colombia SOS Trabajo A tiempo completo

    Job Type Full Time General Description Responsible for analysis, design and implementation coordination for tool and service designs within the cloud security & identity domain. Securing software built and maintained by Popular. Work closely with in-house software development teams and vendors/third-party organizations to ensure that security, privacy, and...


  • Bogotá, Bogotá D.E., Colombia Quorum Software A tiempo completo

    About the RoleWe are seeking a highly skilled and motivated individual to join our team as a Reservoir Engineering Applications Specialist. As a key member of our technical support team, you will be responsible for providing timely and effective solutions to complex business problems through the troubleshooting, triaging, and testing of our reservoir...


  • Bogotá, Bogotá D.E., Colombia TeleTech Holdings, Inc. A tiempo completo

    Job DescriptionJob Title: Cloud Security ArchitectJob Summary:We are seeking a highly skilled Cloud Security Architect to join our team at TeleTech Holdings, Inc. As a Cloud Security Architect, you will be responsible for designing and implementing secure cloud-based systems, including infrastructure, platforms, and applications.Key Responsibilities:Security...


  • Bogotá, Bogotá D.E., Colombia Dedalus A tiempo completo

    Transform Healthcare with PurposeMake a meaningful impact in the healthcare industry by joining Dedalus as an IT Infrastructure Specialist.About the RoleKey Responsibilities:Infrastructure Analysis and DesignContribute to the analysis, design, and implementation of IT infrastructure (on premise and/or cloud based) that supports Dedalus Solutions at regional...


  • Bogotá, Bogotá D.E., Colombia Pinkerton A tiempo completo

    Job Summary:The Security Coordinator assigned to a specific client will be responsible for developing all security programs, personnel, contractors, and consultants. The coordinator will be responsible for the strategic identification of security risks, threats, and vulnerabilities as well as the prevention and protection of the client's employees, assets,...