Social network you want to login/join with:
Client:
VeriSign
Location:
-
Job Reference:
e0dbeba3950c
Job Views:
3
Posted:
17.04.2025
Expiry Date:
01.06.2025
Job Description:
Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services.
We are a mission focused, values driven company where each individual can contribute to building a stronger, more secure internet. We offer a dynamic and flexible work environment with competitive benefits and the ability to grow your career.
Key Responsibilities:
1. Lead and participate in the design and implementation of secure coding practices across development teams
2. Conduct detailed threat modeling exercises for new and existing applications to identify potential security issues
3. Perform security reviews and code analysis to proactively identify and mitigate security vulnerabilities
4. Work closely with developers to provide guidance on remediation strategies and secure coding techniques
5. Implement and maintain automated security testing tools and processes
6. Evaluate third-party libraries and dependencies for security risks
7. Stay abreast of emerging security threats, vulnerabilities, and technologies to continuously improve application security measures
8. Collaborate with cross-functional teams including Engineering and Operations to integrate security into the software development lifecycle (SDLC)
Requirements:
1. Bachelor’s degree in Computer Science, Information Technology, or related field (or equivalent experience)
2. 10+ years of proven experience as an Application Security Engineer or a similar role
3. In-depth knowledge of OWASP ASVS and application security best practices
4. Strong understanding of threat modeling methodologies and tools
5. Hands-on experience with secure coding practices and techniques (e.g., encryption, authentication mechanisms, secure API design)
6. Proficiency in conducting security assessments (e.g., penetration testing, code reviews)
7. Experience with security tools such as Burp Suite, Fortify, Veracode, etc.
8. Excellent communication skills with the ability to articulate complex technical issues to non-technical stakeholders
9. Certifications such as CEH, or equivalent are a plus
#J-18808-Ljbffr