Application Security Engineer

Details of the offer

At Stockbit & Bibit, we prioritize the security of our applications and the data of our users. As an Application Security Engineer, you will play a vital role in ensuring the security and integrity of our software and systems. You will work closely with our development teams to identify and remediate security vulnerabilities, conduct penetration testing, and implement best practices to safeguard our applications and infrastructure.
Responsibilities Secure Code Review: Conduct thorough code reviews to identify and address security flaws, including vulnerabilities like SQL injection, cross-site scripting (XSS), and insecure direct object references (IDOR). Security Testing: Design and execute various security tests, such as penetration testing, vulnerability scanning, and static/dynamic analysis, to proactively uncover weaknesses in the application. Threat Modeling: Collaborate with development teams to identify potential threats and vulnerabilities, assess their impact, and develop effective mitigation strategies. Bug Bounty: Triage and validate bug reports submitted by external researchers. Security Architecture: Provide guidance on secure architecture and design patterns to ensure that security is built into the application from the ground up. Incident Response: Assist in the investigation and remediation of security incidents, working to minimize the impact and prevent future occurrences. Security Awareness: Educate development teams about security best practices and promote a culture of security within the organization. Stay Informed: Keep up-to-date with the latest security trends, vulnerabilities, and attack techniques to ensure the application remains protected against evolving threats. Bachelor's degree in Computer Science, Engineering, or a related field. At least 3 years of experience in application security, secure coding practices, and vulnerability management. Strong understanding of web application vulnerabilities, OWASP Top 10, and modern attack vectors. Hands-on experience with web application security testing tools such as Burp Suite, OWASP ZAP, etc. Experience with secure coding practices and common programming languages (e.g., Java, Python, NodeJS). Knowledge of cloud security principles and best practices. Certifications such as CISSP, CEH, or OSCP are a plus. Strong problem-solving and analytical skills. Excellent communication and collaboration abilities to work effectively with cross-functional teams. Capital market sharing session Self development program Health insurance benefits Well being and counseling program


Nominal Salary: To be agreed

Source: Grabsjobs_Co

Requirements

Data Engineer

As Data Engineer, you will gathers and collects the data, stores it, does batch processing or real-time processing on it, and serves it via an API to a data ...


Ibm Careers - Jakarta

Published a month ago

Oracle Net Suite Developer

Duration : 12 Months Extendable Contract Location :Jakarta, Indonesia Payroll under : PT amIT Global Solutions Sdn Bhd Detailed Job Descriptions: Strong k...


Amit Global Solutions Sdn Bhd - Jakarta

Published a month ago

Software Tester

Perform tests on the company software as well as the data used in the software - Keep test case documents accurate and up to date - Provide suggestions on ho...


Chartnexus (M) Sdn Bhd - Jakarta

Published a month ago

Vue Js Developer

**Job Descriptions**: - Develop user-facing features using Vue.js - Build reusable components and front-end libraries for future use - Ensure the technical ...


Pt Lawencon Internasional - Jakarta

Published a month ago

Built at: 2024-11-16T23:24:11.293Z