Application Authentication: IAM

hace 2 meses


Bogotá Remoto, Colombia GSB A tiempo completo
Main Activities / Responsibilities:
● Generation of threat modeling analysis, security requirements and abuse cases for all
developments carried out in ADC.
● Analyze changes to existing software looking for security risks that can be implemented in the
coding process.
● Identify vulnerabilities in the source code and in the runtime application.
● Determine and advise on the recommended security controls required to remediate findings and
issues in an efficient and concise manner.
● Generate awareness campaigns to all stakeholders of the software process.
● Help developers to use secure coding practices, as well as resolve specific doubts about
vulnerabilities identified in the different testing scenarios.
● Align security solutions to Holcim methodologies and standards.
● Design, implement, and support the security model for general security solutions
● Develop and drive the implementation of security best practices and standards.
● Review requests for new systems or changes to existing systems and evaluate the impact to
security.
● Conduct pre-audits on security issues of concern, work with the user community on remediation;
conduct spot checks of user security to ensure compliance.
● Provide technical Support for security issues related to in-scope applications, infraestruture as
code and cloud services .
● Provide support to other colleagues in terms of technical/functional expertise with the assigned
business processes.
● Expert in Vulnerability Management tools like Qualys or Nessus .

Qualifications:
● Bachelor’s degree in Computer Science, Engineering, or related discipline with an IT focus.
● Certifications: CISSP, CISM, CISA, CRISC ITIL, CMMI, ISO 27001, GSEC, CSSLP.
● Ethical Hacking certifications desired.
● Secure coding certifications desired.

Required Experience:
● At least 4 years of experience in IT Security and development, delivering applications with a secure
focus, assessments and audits.
● Experience in fullstack development, object-oriented programming, microservices oriented
architecture, with knowledge in agile methodologies and DevOps model.

Desired Experience:
● Experience on secure development and ethical hacking.
● Experience with vulnerabilities and fixes for different languages (C, C#, Java, Javascript)

Soft skills:
● Experience coordinating and completing multiple tasks within established and changing deadlines.
● Excellent organizational, analytical, and independent problem solving skills.
● Demonstrated excellent oral and written communication skills necessary to interact effectively with
colleagues and with users of varying technological skill levels.
● Strong customer / end-user / client service orientation.
● Thrives working in a highly collaborative and team environment.
● Highly self-motivated and directed.
● Ability to provide 24/7 support to respond to critical incidents or business impacting project
deliverables.
● Keen attention to detail.
● Capability for problem solving, decision making, sound judgment, assertiveness.
● Ability to deal with difficult situations, unclear priorities and blocking stakeholders.
● Ability to work decisively under heavy workload considering the criticality, urgency and extended
work hours required to ensure availability of the service in accordance with service level
commitments.
● Ability to manage multi-cultural and multi-located teams.

Leadership skills:
● Lead by example on values and culture.
● A natural leader whose personality and communication skills instill a sense of credibility and trust.
● Able to coherently explain the proposed design and gain stakeholder buy-in to the proposed
solution.

Required skills:
● Authentication and Access Control Tools, Management and Administration.
● Application Security Architecture & Cloud Computing Concepts.
● Change & Security Configuration Audit and Control.
● Encryption Processes, Management and Administration.
● Experience in static and dynamic security testing (code review, vulnerability analysis, Ethical
Hacking)
● Knowledge in offensive security methodologies (OWASP, MASVS, OPENSAMM, CKC, etc).
Knowledge in tools such as OwaspZap, Burpsuite, Nessus, Service Manager, Git, Fortify, Codacy,
Sonarqube.
● Cost conscious and keeps a big picture perspective.

Desired skills:
● Knowledge in AWS cloud security.

Languages:
● English desired (written & spoken)
● Spanish required (written & spoken)

Benefits:
- Law benefits
- Courses and certifications

  • Bogotá, Cundinamarca, Colombia GSB A tiempo completo

    Main Activities / Responsibilities: - Generation of threat modeling analysis, security requirements and abuse cases for all developments carried out in ADC. - Analyze changes to existing software looking for security risks that can be implemented in the coding process. - Determine and advise on the recommended security controls required to remediate...


  • Bogotá, Bogotá D.E., Colombia Michael Page Colombia A tiempo completo

    Acerca de la posiciónBuscamos un profesional experimentado en seguridad de la información y redes para ocupar el cargo de Application Authentication IAM. La posición reportará a la Gerencia y será responsable de la implementación y mantenimiento de la infraestructura de red, así como de la entrega de proyectos de seguridad de la información,...

  • IAM Engineer

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia Talan A tiempo completo

    About TalanTalan is a leading international advisory group on innovation and transformation through technology, with a global presence and a turnover of 600M€.Our ServicesWe offer a continuum of services to support our clients at each key stage of their organization's transformation, with four main activities:Consulting in management and innovation:...


  • Bogotá, Cundinamarca, Colombia GSB A tiempo completo

    Main Activities / Responsibilities: - Generation of threat modeling analysis, security requirements and abuse cases for all developments carried out in ADC. - Analyze changes to existing software looking for security risks that can be implemented in the coding process. - Determine and advise on the recommended security controls required to remediate...

  • IAM Engineer

    hace 4 semanas


    Bogotá, Colombia Talan A tiempo completo

    Descripción del empleoAs an, IAM &, Cloud Engineer, ,your objective will be to manage and maximize the value of the products, prioritizing the work of the teams.We need someone like you to help us in different fronts:Working in the deployment, integration and administration of ForgeRock IAM solution in AWS Cloud.Integrate and federate our applications for...

  • IAM Engineer

    hace 3 semanas


    Bogotá, Colombia Talan A tiempo completo

    Descripción de la empresa Talan is an international advisory group on innovation and transformation through technology, with 5000 employees, and a turnover of 600M€. We offer our customers a continuum of services to support you at each key stage of your organization's transformation, with 4 main activities: CONSULTING in management and...

  • Iam Engineer

    hace 4 semanas


    Bogotá, Cundinamarca, Colombia Talan A tiempo completo

    **Descripción de la empresa** Talan is an international advisory group on innovation and transformation through technology, with 5000 employees, and a turnover of 600M€.** We offer our customers a continuum of services to support you at each key stage of your organization's transformation, with 4 main activities: - ** CONSULTING** in management and...


  • Bogotá, Colombia Emerging Tech, LLC A tiempo completo

    Job Summary: Support the EHRM-IO IAM team and provide Identity Management and analyst support. Reports to the Identity and Authentication Management workstream lead. Duties include but are not limited to: Support the development of the overarching strategy and project plans for Identity and other IAM components as required. Support partnerships and...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    About the JobWe are seeking a highly skilled Application Security Specialist to join our team at GSB. As a key member of our security team, you will be responsible for ensuring the security and integrity of our applications and systems.Main Responsibilities:Conduct threat modeling and security analysis to identify potential vulnerabilities and risks.Develop...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main Activities / Responsibilities:As a key member of our team, you will be responsible for generating threat modeling analysis, security requirements, and abuse cases for all developments carried out in ADC. You will analyze changes to existing software looking for security risks that can be implemented in the coding process.You will identify...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main ResponsibilitiesWe are seeking a highly skilled Application Security Specialist to join our team at GSB. As a key member of our security team, you will be responsible for ensuring the security and integrity of our applications and systems.Key Responsibilities:Conduct threat modeling analysis and security requirements for all developments carried out in...


  • Bogotá, Bogotá D.E., Colombia Talan A tiempo completo

    Talan is an international advisory group on innovation and transformation through technology, with 5000 employees, and a turnover of 600M€.We offer our customers a continuum of services to support you at each key stage of your organization's transformation, with 4 main activities:CONSULTING in management and innovation: supporting business, managerial,...

  • Senior Analyst

    hace 7 días


    Bogotá, Colombia Talan A tiempo completo

    Senior Analyst & Software Integration IAM Team Talan is an international advisory group on innovation and transformation through technology, with 5000 employees, and a turnover of 600M€. We offer our customers a continuum of services to support you at each key stage of your organization's transformation, with 4 main activities: CONSULTING in...


  • Bogotá - Remoto, Colombia GSB A tiempo completo

    Main Activities / Responsibilities:Our ideal candidate will be responsible for generating threat modeling analysis, security requirements, and abuse cases for all developments carried out in ADC. They will analyze changes to existing software looking for security risks that can be implemented in the coding process.Key responsibilities include:Identifying...

  • Senior Analyst

    hace 2 meses


    Bogotá, Colombia Talan A tiempo completo

    Company Description Talan is an international advisory group on innovation and transformation through technology, with 5000 employees, and a turnover of 600M€. We offer our customers a continuum of services to support you at each key stage of your organization's transformation, with 4 main activities: CONSULTING in management and innovation :...


  • Bogotá, Bogotá D.E., Colombia Michael Page Colombia A tiempo completo

    About our client Our client is a leading IT consulting firm, specializing in security and risk management. Description Reporting to the Management, the Chief Information Security Officer - Identity and Access Management will be responsible for: 1. Experience in IT Security, management of network infrastructure, including implementation and maintenance,...

  • Cloud Security Engineer

    hace 2 semanas


    Bogotá, Bogotá D.E., Colombia Talan A tiempo completo

    Job Title: Cloud Security EngineerJob Description:We are looking for a skilled Cloud Security Engineer to join our team at Talan. As an IAM Engineer, your main objective will be to manage and maximize the value of our products, prioritizing the work of the teams.The ideal candidate will have experience in administration of IAM solutions, such as AzureAD,...


  • Bogotá, Colombia Unisys A tiempo completo

    What success looks like in this role: Contribuir al desarrollo de las mejoras de los procesos de la operación de los servicios dentro del alcance, incluyendo el desarrollo de tareas automatizadas. Coordinar los esfuerzos para la recopilación de información, evidencia y reportes para las auditorías. Brindar soporte y acompañamiento al cliente en...


  • Bogotá, Colombia Unisys A tiempo completo

    What success looks like in this role: Contribuir al desarrollo de las mejoras de los procesos de la operación de los servicios dentro del alcance, incluyendo el desarrollo de tareas automatizadas. Coordinar los esfuerzos para la recopilación de información, evidencia y reportes para las auditorías. Brindar soporte y acompañamiento al cliente en...

  • Cloud Security Architect

    hace 20 horas


    Bogotá, Bogotá D.E., Colombia Talan A tiempo completo

    Talan is an international advisory group on innovation and technology, with 5000 employees, and a turnover of 600M€. Our company offers a continuum of services to support clients at each key stage of their organization's transformation.Main Activities:CONSULTING in management and innovation: supporting business, managerial, cultural, and technological...