Specialist Application Security Engineer

2 semanas atrás


Lisboa, Portugal Amgen Sa Tempo inteiro

THE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home to over 300 multi-national and multi-cultural employees, representing a broad range of cross functional capabilities, including Commercial, General and Administrative, Research and Development and more. The ACCP will offer rich career growth and development opportunities, regional and global exposure and the opportunity to LIVE, WIN and THRIVE in one of Europe's most attractive cities.

If you feel like you're part of something bigger, it's because you are. At Amgen our shared mission—to serve patients—drives all that we do. It is key to our becoming one of the world's leading biotechnology companies. We are global collaborators who achieve together—researching, manufacturing and delivering ever-better products that read over 10 million patients worldwide. It's time for a career you can be proud of. Join us as:

Specialist Application Security Engineer LIVE
What you will do
The Specialist Application Security Engineer plays an integral role in Information Security for Amgen. The primary responsibility is to support various capabilities within Amgen's Application Security function. You will work with various partners at Amgen in a manner aligned to Amgen's values to define and implement Information Security Services strategies, standards, tools and processes. The Specialist IS Security Engineer will be a part of Amgen's Information Security team and will be expected to contribute to and help deliver services and projects in other areas of information security.

The role will be part of the Information Security team responsible for delivering security services across Amgen globally. This position will focus on Secure SDLC and Application Security services and technologies to ensure a secure by design approach across Amgen's applications.

The individual will partner with developers and business owners from applicable technical teams to assess the security architecture of new products and capabilities via application security assessments, prioritize and advise on options to mitigate identified flaws and vulnerabilities and work with development teams to define and evangelize security best practices. Let's do this. Let's change the world. In this vital role you will:
Manage SAST platform and engagement with development teamsReview code for security vulnerabilities and practices dangerous to security and privacy.Write custom rules on automated source code scanning toolsScript (Python, Perl, Ruby etc) and build automation tools on an ad-hoc basisCreate and deliver knowledge sharing presentations and documentation to educate developers and operations teams on application security best practices and secure coding techniques.Write reports including recommendations, root cause analysis, security summary analysis, and project roadmapsHelp with tools identification, onboarding and/or tools development to assist developers in the secure development of applicationsConfigure, run, maintain, and utilize security tools for the Appsec program, e.g., static and dynamic code analysis toolsBuild process and technology to improve the reporting and prioritization of identified weaknessesDiscover threats, vulnerabilities and exploits through architecture design review, threat modeling, code review, SAST and DAST assessmentsTriage issues found by tools, external reports, and various tests, to accurately assess the real risksOffer remediation guidance to stakeholders for identified issues and serve as an escalation resource for developers as they reduce issuesDraft application security policies, standards and guidance documentation that can be leveraged in the secure development of products and servicesMonitor latest web application security developments and security trends to continually improve internal processes;Work with DevOps team to improve Application Security; Research, Prototype, integrate Security Tools into CI/CD pipeline (container security, SAST, DAST, IAST, third party vulnerability Scanning, etc) aiming to achieve 100% coverage of all deployment/build pipelinesCollaborates cross-functionally with analysts, engineers, data scientists to achieve continuous improvement in cyber defense/resilience.Provide mentorship and training on areas of expertise to junior Application Security team members. WIN
What we expect of you
We are all different, yet we all use our unique contributions to serve patients. The information security professional we seek is team-oriented with these qualifications:
Bachelor or Master degree in Information Systems, Computer Science or equivalent and at 6 years of experience in a related fieldStrong understanding of common software and web application security vulnerabilities. including OWASP top 10, SANS/CWE Top 25 etc.Security verification of web applications or mobile apps using OWASP ASVS/M-ASVS and testing guidesHands-on experience with tools and technologies used throughout secure SDLC (e.g., Burp Suite/ZAP, Fortify/Checkmarx /Veracode, WhiteSource/Blackduck).Experience driving application security requirements in a traditional SDLC and through stories and epics in an Agile and SCRUM development environmentDevOps experience building and deploying infrastructure with cloud deployment, build and test automation technologies like ansible, chef, puppet, docker, jenkins, gitlab etc.Good hands-on experience with AWS foundation services related to compute, network, storage, content delivery, administration and security, deployment and management, automation technologiesAbility to review, understand and proficiency with two or more of (JavaScript, Python, Java, Swift. Kotlin etc)Experience with scripting languages (e.g., Python, Ruby) and automating tasksExperience building and maintaining relationships, excellent verbal and written communication skills and effective working with virtual teamsTeam-oriented, placing priority on the successful completion of team goalsSelf-starter with a high degree of initiative THRIVE
What can you expect of us
As we work to develop treatments that take care of others, so we work to care for our teammates' professional and personal growth and well-being.
Vast opportunities to learn, develop, and move up and across our global organization.Diverse and inclusive community of belonging, where colleagues are empowered to bring ideas to the table, take risks, and act.Generous Amgen Total Rewards Plan comprising healthcare, finance, wealth and career benefits.Flexible work arrangements. APPLY NOW
FOR A CAREER THAT DEFIES IMAGINATION
In our quest to serve patients above all else, Amgen is the first to imagine, and the last to doubt. Join us.
CAREERS.AMGEN.COM

EQUAL OPPORTUNITY STATEMENT
Amgen is an Equal Opportunity employer and will consider you without regard to your race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.
We will ensure that individuals with disabilities are provided a reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request an accommodation.

#J-18808-Ljbffr



  • Lisboa, Lisboa, Portugal Security Bank & Trust Co. Tempo inteiro

    Specialist Application Security Engineer SAST (x2) in Lisbon, Portugal Specialist Application Security Engineer LIVE What you will do The Specialist Application Security Engineer plays an integral role in Information Security for Amgen. The primary responsibility is to support various capabilities within Amgen's Application Security function. You will work...


  • Lisboa, Portugal Lz Security & Service Gmbh Tempo inteiro

    Specialist Application Security Engineer DAST in Lisbon , Portugal Specialist Application Security Engineer LIVE What you will do The Specialist Application Security Engineer plays an integral role in Information Security for Amgen. The primary responsibility is to support various capabilities within Amgen's Application Security function. You will work with...


  • Lisboa, Lisboa, Portugal Lz Security & Service Gmbh Tempo inteiro

    Specialist Application Security Engineer DAST in Lisbon , Portugal Specialist Application Security Engineer LIVE What you will do The Specialist Application Security Engineer plays an integral role in Information Security for Amgen. The primary responsibility is to support various capabilities within Amgen's Application Security function. You will work with...


  • Lisboa, Lisboa, Portugal Amgen Inc. (IR) Tempo inteiro

    Specialist Application Security Engineer SAST (x2) page is loaded Specialist Application Security Engineer SAST (x2) Apply remote type Flex Commuter / Hybrid locations Portugal Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R Career Category Information SystemsJob Description Specialist Application Security Engineer LIVEWhat you...


  • Lisboa, Lisboa, Portugal Amgen Inc. (IR) Tempo inteiro

    Specialist Application Security Engineer DAST page is loaded Specialist Application Security Engineer DAST Apply remote type Flex Commuter / Hybrid locations Portugal Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R Career Category Information SystemsJob Description Specialist Application Security Engineer LIVEWhat you will do The...


  • Lisboa, Lisboa, Portugal Lz Security & Service Gmbh Tempo inteiro

    Specialist Application Security Engineer SAST (x2) in Lisbon , Portugal Specialist Application Security Engineer LIVE What you will do The Specialist Application Security Engineer plays an integral role in Information Security for Amgen. The primary responsibility is to support various capabilities within Amgen's Application Security function. You will work...


  • Lisboa, Portugal Lz Security & Service Gmbh Tempo inteiro

    Specialist Application Security Engineer SAST (x2) in Lisbon , Portugal Specialist Application Security Engineer LIVE What you will do The Specialist Application Security Engineer plays an integral role in Information Security for Amgen. The primary responsibility is to support various capabilities within Amgen's Application Security function. You will work...


  • Lisboa, Lisboa, Portugal Amgen Inc. (IR) Tempo inteiro

    Specialist Application Security Engineer page is loaded Specialist Application Security Engineer Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 8 Days Ago job requisition id R Career Category Information SystemsJob Description THE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home to...


  • Lisboa, Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

    Specialist Application Security Engineer page is loaded Specialist Application Security Engineer Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 8 Days Ago job requisition id R Career CategoryInformation SystemsJob DescriptionTHE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home to over...


  • Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

    Specialist Application Security Engineer page is loaded Specialist Application Security Engineer Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 8 Days Ago job requisition id R-181834 Career CategoryInformation SystemsJob DescriptionTHE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home...


  • Lisboa, Lisboa, Portugal Security Bank & Trust Co. Tempo inteiro

    Amgen Specialist Security Engineer – Email in Lisbon, Portugal Specialist Security Engineer LIVE WHAT YOU WILL DO Amgen is searching for a Specialist Security Engineer covering Email and Data Loss Prevention (DLP) technologies. This role will work for the Manager of Data Security in direct support of the global email management group. This position will...


  • Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

    Specialist Application Security Engineer DAST page is loaded Specialist Application Security Engineer DAST Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R-181836 Career CategoryInformation SystemsJob DescriptionSpecialist Application Security Engineer LIVE What you will...


  • Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

    Specialist Application Security Engineer DAST page is loaded Specialist Application Security Engineer DAST Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R-181836 Career CategoryInformation SystemsJob DescriptionSpecialist Application Security Engineer LIVE What you will...


  • Lisboa, Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

    Specialist Application Security Engineer DAST page is loaded Specialist Application Security Engineer DAST Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R Career CategoryInformation SystemsJob DescriptionSpecialist Application Security Engineer LIVEWhat you will do The...


  • Lisboa, Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

    Specialist Application Security Engineer SAST (x2) page is loaded Specialist Application Security Engineer SAST (x2) Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R Career CategoryInformation SystemsJob DescriptionSpecialist Application Security Engineer LIVEWhat you...


  • Lisboa, Portugal Buscojobs PT C2 Tempo inteiro

    THE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home to over 300 multi-national and multi-cultural employees, representing a broad range of cross functional capabilities, including Commercial, General and Administrative, Research and Development and more. The ACCP will offer rich career growth and development opportunities, regional and global...


  • Lisboa, Lisboa, Portugal Amgen Sa Tempo inteiro

    THE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home to over 300 multi-national and multi-cultural employees, representing a broad range of cross functional capabilities, including Commercial, General and Administrative, Research and Development and more. The ACCP will offer rich career growth and development opportunities, regional and global...


  • Lisboa, Lisboa, Portugal Amgen Tempo inteiro

    THE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home to over 300 multi-national and multi-cultural employees, representing a broad range of cross functional capabilities, including Commercial, General and Administrative, Research and Development and more. The ACCP will offer rich career growth and development opportunities, regional and global...


  • Lisboa, Lisboa, Portugal Amgen Tempo inteiro

    THE AMGEN CAPABILITY CENTER IN LISBON, PORTUGAL (ACCP) will be home to over 300 multi-national and multi-cultural employees, representing a broad range of cross functional capabilities, including Commercial, General and Administrative, Research and Development and more. The ACCP will offer rich career growth and development opportunities, regional and global...


  • Lisboa, Portugal Amgen Inc. (Ir) Tempo inteiro

    Specialist Application Security Engineer SAST (x2) page is loaded Specialist Application Security Engineer SAST (x2) Apply remote type Flex Commuter / Hybrid locations Portugal - Lisbon time type Full time posted on Posted 3 Days Ago job requisition id R-181835 Career CategoryInformation SystemsJob DescriptionSpecialist Application Security Engineer...