AppSec Expert
Company: Art-Fintech
Candidate Requirements:
- Citizenship and location: Russian Federation, Republic of Belarus.
- Understanding of principles for identifying and exploiting vulnerabilities from OWASP Top 10, OWASP Mobile Top 10, CWE Top 25 and developing protection measures against them.
- Understanding of principles for working with SAST, SCA, DAST tools.
- Basic knowledge of one or more programming languages (Python, Java, C/C++, C#, JS, Go).
- Skills in threat modeling for software, vulnerability searching, and selecting protection measures.
- Understanding of principles for assessing the maturity of secure development processes (BSIMM, OWASP SAMM).
- Knowledge of basic architecture and basic security settings for system components of network equipment, OS, DBMS.
- Experience communicating with adjacent teams: development and architects.
Tasks:
- Configuring secure development tools (AppSec);
- Defining parameters for automatic product quality checks at each development stage;
- Analyzing defects and vulnerabilities (jointly with the development team). Assisting the development team in their elimination.
Specialist should have:
- Experience of 3+ years in information security;
- Successful experience in configuring secure development tools;
- Practical experience in analyzing vulnerabilities with the development of sufficient measures (recommendations);
Conditions:
- Full-time, 5/2.
- Salary range up to 200k rubles net.
A little about us:
Art-Fintech Group of Companies has been on the market for over 20 years – an international provider of innovative banking software solutions. Our company develops software for the financial sector.