Empregos actuais relacionados com Specialist Application Security Engineer Dast - Lisboa - Amgen Inc. (Ir)


  • Lisboa, Portugal Noesis Tempo inteiro

    **Description**: **Noesis is looking for professionals with the following profile**: - Bachelor's degree or higher in Information Technology or Computer Engineering or related field; - Minimum 3 years of experience of Application Security roles; - Experience with Authentication/SSO and Encryption mechanisms; - Proficiency with API Security, for REST API and...


  • Lisboa, Portugal askblue Tempo inteiro

    Do you know **AskBlue**? We were born in 2013, and we provide information technology consulting services. We are looking for **Application Security** to join our company in one of our projects, in **Lisbon**. **Tasks**: - Identification of threats, risks scenarios and related impacts; - Identification of security needs and definition of security...


  • Lisboa, Portugal askblue Tempo inteiro

    Do you know **AskBlue**? We were born in 2013, and we provide services in the field of information technology. We are looking for **Application Security Expert** to join our company in one of our projects, in **Lisbon**. **Tasks**: - Identification of threats, risks scenarios and related impacts. - Identification of security needs and definition of...


  • Lisboa, Portugal SysMatch Tempo inteiro

    Senior Application Security Expert (M/F) - Lisbon - Bachelor’s degree in computer science, information technology or related domains; - Authentication/SSO mechanisms: OAUth2, SAMLv2, Kerberos, 2FA ; - Encryption mechanisms: HTTPS, VPN ; - API Security, for REST API and API Gateway; - Knowledge on security tests: DAST, SAST, SCA, Pentest; - OWASP TOP10,...


  • Lisboa, Portugal Essity Tempo inteiro

    About the Role The Application Security Lead guides and support IT Teams in the design and implementation of a Secure Software Development Lifecycle.The role has also a broad responsibility to cover tasks in all parts of the Essity Information Security Management Process (ISMP).Each Information Security team member's responsibility is defined annually and is...


  • Lisboa, Portugal Veeam Tempo inteiro

    Junior/Middle Application Security Engineer Date of publication: 05 April 2024 Lisbon / Portugal Veeam, the #1 global market leader in data protection and ransomware recovery, is on a mission to empower every organization to not just bounce back from a data outage or loss but bounce forward. With Veeam, organizations achieve radical resilience through data...

  • Security Engineer

    Há 1 mês


    Lisboa, Portugal Io Associates Tempo inteiro

    Security Engineer Permanent Location - Lisbon (2/3 days on site) Salary - €65,000 per annum.I am currently looking for a Security Engineer to join an innovative digital transformation company who excel in AI driven transformations based in beautiful Lisbon!Their platform drives innovation to transform the places where people work, travel, play and...

  • Security Engineer

    4 semanas atrás


    Lisboa, Portugal Io Associates Tempo inteiro

    Security Engineer Permanent Location - Lisbon (2/3 days on site) Salary - €65,000 per annum. I am currently looking for a Security Engineer to join an innovative digital transformation company who excel in AI driven transformations based in beautiful Lisbon! Their platform drives innovation to transform the places where people work, travel, play and...


  • Lisboa, Portugal Tn Portugal Tempo inteiro

    col-wideJob Description:Responsibilities:Performing security source code analysis.Analyze application vulnerabilities and provide mitigation strategies.Researching, designing, and writing application security rules for detection, while working closely with a development team for SASTAnalyzing different programming frameworks in different programming...


  • Lisboa, Portugal Olisipo Tempo inteiro

    Referência 13305_Application Security Architect_Lisboa **Descrição**: CyberSecurity Consultant **Perfil**: - Full proficiency in the security features of the development of life cycle technologies (good coding practices, SAST, DAST, SCA, CI/CD integration, DevSecOps, Containerization); - Full proficiency in the security features of main analytics...

  • Security Engineer

    Há 1 mês


    Lisboa, Portugal Tn Portugal Tempo inteiro

    col-wideJob Description:Security EngineerPermanentLocation - Lisbon (2/3 days on site)Salary - €65,000 per annum.I am currently looking for a Security Engineer to join an innovative digital transformation company who excel in AI driven transformations based in beautiful Lisbon! Their platform drives innovation to transform the places where people work,...


  • Lisboa, Portugal AxiansPT Tempo inteiro

    At AXIANS we seek the right talent, for the right place. We work daily to involve our people in a collaborative and inclusive environment, with a culture of proximity. It is also part of our culture to care about the environment and to carry out actions of social and environmental corporate responsibility. This could be your opportunity to join a project of...

  • Reverse Engineer

    Há 5 dias


    Lisboa, Portugal Cognizant Tempo inteiro

    Work Model: Hybrid (Lisbon) What makes Cognizant a unique place to work? The combination of rapid growth and an international and innovative environment! This is creating a lot of opportunities for people like YOU — people with an entrepreneurial spirit who want to make a difference in this world. At Cognizant, together with your colleagues from all around...


  • Lisboa, Portugal Cloudflare Tempo inteiro

    At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding...


  • Lisboa, Portugal Ankix Tempo inteiro

    **Oportunidade**: A Ankix é uma empresa especialista em competências tecnológicas que presta serviços nas áreas de IT Outsourcing e Consultoria / Desenvolvimento à medida. O nosso posicionamento carateriza-se pela qualidade e inovação das soluções que propomos, assim como pela dedicação e orientação para os nossos consultores & clientes, bem...


  • Lisboa, Portugal Ankix Tempo inteiro

    **Oportunidade**: A Ankix é uma empresa especialista em competências tecnológicas que presta serviços nas áreas de IT Outsourcing e Consultoria / Desenvolvimento à medida. O nosso posicionamento carateriza-se pela qualidade e inovação das soluções que propomos, assim como pela dedicação e orientação para os nossos consultores & clientes, bem...


  • Lisboa, Portugal Datadog Tempo inteiro

    .Engineering Manager I - Application Security Libraries (Lisbon) Lisbon, Portugal Datadog Application Security Management (ASM) allows customers to manage application security risk with continuous, real-time monitoring of vulnerabilities and threats against your web applications, serverless applications, and APIs, in production. Automatically integrated with...

  • Engineering Manager I

    1 semana atrás


    Lisboa, Portugal Datadog Tempo inteiro

    .Engineering Manager I - Application Security Libraries (Lisbon)Lisbon, PortugalDatadog Application Security Management (ASM) allows customers to manage application security risk with continuous, real-time monitoring of vulnerabilities and threats against your web applications, serverless applications, and APIs, in production. Automatically integrated with...


  • Lisboa, Portugal Go IT Concept Tempo inteiro

    **GO IT Concept** is a Portuguese technological start-up based in the interior of Portugal, in the beautiful city of Seia, Serra da Estrela. **We have offices in Portugal and Brazil,** to help our clients put tech talented teams at the heart of their business. Our goal is to disrupt things not just on the business front, **but also building cultures that are...

  • Security Engineer

    4 meses atrás


    Lisboa, Portugal Ecoplanet Green Operations Gmbh Tempo inteiro

    Press Tab to Move to Skip to Content Link Select how often (in days) to receive an alert: To expand our interdisciplinary team in Zurich and Portugal, we are looking for a Security Engineer / Operations Engineer with a particular emphasis on application service and with an interest in information security. In this role, you will have the opportunity to...

Specialist Application Security Engineer Dast

3 meses atrás


Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

Specialist Application Security Engineer DAST page is loaded Specialist Application Security Engineer DAST Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R-181836 Career CategoryInformation SystemsJob DescriptionSpecialist Application Security Engineer LIVE
What you will do The Specialist Application Security Engineer plays an integral role in Information Security for Amgen. The primary responsibility is to support various capabilities within Amgen's Application Security function. You will work with various partners at Amgen in a manner aligned to Amgen's values to define and implement Information Security Services strategies, standards, tools and processes. The Specialist IS Security Engineer will be a part of Amgen's Information Security team and will be expected to contribute to and help deliver services and projects in other areas of information security.

The role will be part of the Information Security team responsible for delivering security services across Amgen globally. This position will focus on Secure SDLC and Application Security services and technologies to ensure a secure by design approach across Amgen's applications.

The individual will partner with developers and business owners from applicable technical teams to assess the security architecture of new products and capabilities via application security assessments, prioritize and advise on options to mitigate identified flaws and vulnerabilities and work with development teams to define and evangelize security best practices. Let's do this. Let's change the world. In this vital role you will:
Manage Dynamic Application Security Testing platforms and engagement with development teams and SOC.Review DAST results for security vulnerabilities and practices dangerous to security and privacy.Create processes for efficient triaging and remediation of alerts and identified weaknesses produced by DAST platforms.Script (Python, Perl, Ruby etc) and build automation tools on an ad-hoc basis.Create and deliver knowledge sharing presentations and documentation to educate developers and operations teams on application security best practices and secure coding techniques.Write reports including recommendations, root cause analysis, security summary analysis, and project roadmaps.Help with tools identification, onboarding and/or tools development to assist developers in the secure development of applications.Configure, run, maintain, and utilize security tools for Dynamic Application Security Testing (DAST) platforms and other relevant analysis tools.Discover threats, vulnerabilities and exploits through architecture design review, threat modeling, code review, DAST and SAST assessments.Triage issues found by tools, external reports, and various tests, to accurately assess the real risks.Offer remediation guidance to stakeholders for identified issues and serve as an escalation resource for developers as they remediate issues.Draft application security policies, standards and guidance documentation that can be leveraged in the secure development of products and services.Monitor latest application security developments and security trends to continually improve internal processes.Work with DevOps team to improve Application Security; Research, Prototype, integrate Security Tools into CI/CD pipelines (DAST, SAST, IAST, Container security, API security, third party vulnerability Scanning, etc).Collaborates cross-functionally with analysts, engineers, data scientists to achieve continuous improvement in cyber defense/resilience.Provide mentorship and training on areas of expertise to junior Application Security team members. Specialist IS Security Engineer will also present project status reports to senior management, adhere to policies and practices relative to technical guidelines and change management processes, and may contribute to the development of new policies and practices by suggesting innovative ideas.
WIN
What we expect of you We are all different, yet we all use our unique contributions to serve patients. The information security professional we seek is team-oriented with these qualifications:
Bachelor or Master degree in Information Systems, Computer Science or equivalent and at 6 years of experience in a related fieldStrong understanding of common software and web application security vulnerabilities. including OWASP Top 10,, OWASP API Top 10, SANS/CWE Top 25 etc.Strong working knowledge and hands-on experience with tools and technologies used for Application Security testing (e.g., Burpsuite Enterprise, Burp Suite/ZAP, Synk, Checkmarx, Rapid7, Accunetix, Netsparker, Veracode, WhiteSource, Postman, Swagger, SoapUI, Fiddler, Insomnia)Security verification of web applications OWASP ASVS and testing guidesExperience driving application security requirements in a traditional SDLC and through stories and epics in an Agile and SCRUM development environmentDevOps experience deploying automated security testing within CI/CD pipelines with GitLab, GitHub etc.Experience with scripting languages (e.g., Python, Ruby) and automating tasks.Good hands-on experience with AWS foundation services related to compute, network, storage, content delivery, administration and security, deployment and management, automation technologiesAbility to review, understand and proficiency with two or more of (JavaScript, Python, Java, Swift. Kotlin etc)Experience with scripting languages (e.g., Python, Ruby) and automating tasksWorking knowledge of API technologies and platforms e.g., SOAP, REST, GraphQL, gRPC, XML, AWS API GW, MuleSoftExperience building and maintaining relationships, excellent verbal and written communication skills and effective working with virtual teamsTeam-oriented, placing priority on the successful completion of team goalsSelf-starter with a high degree of initiative One or more security certifications such as CSSLP, CISSP, GWEB, GSSP-JAVA or CEH THRIVE
What can you expect of us As we work to develop treatments that take care of others, so we work to care for our teammates' professional and personal growth and well-being.
Vast opportunities to learn, develop, and move up and across our global organization.Diverse and inclusive community of belonging, where colleagues are empowered to bring ideas to the table, take risks, and act.Generous Amgen Total Rewards Plan comprising healthcare, finance, wealth and career benefits.Flexible work arrangements. APPLY NOW
FOR A CAREER THAT DEFIES IMAGINATION In our quest to serve patients above all else, Amgen is the first to imagine, and the last to doubt. Join us.
 
CAREERS.AMGEN.COM

EQUAL OPPORTUNITY STATEMENT
Amgen is an Equal Opportunity employer and will consider you without regard to your race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.
We will ensure that individuals with disabilities are provided a reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request an accommodation.
. Similar Jobs (1) Specialist Application Security Engineer SAST (x2) remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 3 Days Ago
Amgen is committed to unlocking the potential of biology for patients suffering from serious illnesses by discovering, developing, manufacturing and delivering innovative human therapeutics. This approach begins by using tools like advanced human genetics to unravel the complexities of disease and understand the fundamentals of human biology. Amgen focuses on areas of high unmet medical need and leverages its biologics manufacturing expertise to strive for solutions that improve health outcomes and dramatically improve people's lives. A biotechnology pioneer since 1980, Amgen has grown to be one of the world's leading independent biotechnology companies, has reached millions of patients around the world and is developing a pipeline of medicines with breakaway potential.
#J-18808-Ljbffr