Senior Security Testing Engineer
Our opportunityAs Test Manager within BTO Security Testing, you will be part of a Global team providing Application Security services to Zurich Business Units across the world, joining a young and motivated team that is growing fast with focus on a key area for our business. You will be working with both Zurich Security and Application teams to ensure that Application Security Testing requirements are met by coordinating and providing support to the SDLC application scanning and Manual Pen Testing projects across the world. As part of this role, you will not only be using your AppSec skills, but also coordinating both Zurich internal and external teams in different countries, work with the top ranked AppSec toolset and boost your career to the next level. Your roleAs a Test Manager your main responsibilities will involve :Lead and participate in the Information Gathering Sessions to evaluate the requirements from the clients and take the prerequisites required to elaborate the Proposal of CollaborationEvaluate together with the technical lead, the proposal notes and share them with the Test Service ManagerOperate with the Security Pipeline to identify next Security Assessment projects in scope and : Work the stakeholders on confirming scope of projects and access requirements. Elaborate and send the Security Assessment Plan before the projects start. Upload the information gathered and share it with the testers. During the project execution Be the SPOC of both testers and clients and facilitate the resolution of potential issues that might occur during the MPT projects. Provide support and guidelines to the testers on the project execution when needed. After project execution : Ensure that final reports are sent over to the stakeholders. Ensure that Finding Agreements meeting is schedule and assigned to the Tech lead or his / her delegates. Oversee Retest process and ensure that testers take the required actions to run them as per the schedule. Support and be the SPOC for the Veracode Service supporting the Global Test Service ManagerAttend to any required meeting related to Veracode delegated by the Global Test Service ManagerSupport the team providing services to Veracode and facilitate coordination between the Operations team and the clients. Oversee the Security Test engineering team mailbox and : Share any relevant proposal received via Forms for Security Assessments with the team contacts. Oversee the request related to Veracode or any Security scan requirements are completed by the Security operations team. Participate and work together with the Global Security Test Manager on the process and procedures documentation related to the services provided by the unit. Work with external providers and oversee their activities related to Security Assessments and Application Security services. Act as a backup of the Global Security Test Service Manager if required and to cover actions related to the Project execution and designed tasks related to the Run&Maintain services. Your Skills and ExperienceAs a Test Manager your skills and qualifications will ideally include :Bachelor’s Degree or equivalent in Computer Science or related subjectUnderstanding of Application Security Testing requirements related to the SDLC. Proven experience managing or executing Manual Pen Testing during the SDLCHands on experience on AppSec scanning : SAST, DAST IAST, SCA, Experience on DevSecOps / Cloud Security is a plus. Understanding of Information / IT governance and risk managementProven experience with common AppSec Frameworks such as OWASP, PTES, NISTExcellent communication skills, being able to take part in meetings and provide expert advice. Preferred QualificationsProfessional Security Qualification - CISSP, CISM, CCSP (or other similar cloud security qualification), CEH, CompTIA Security+Knowledge & Experience of working with AppSec scanning and Manual Pen Testing tools, (Veracode, Checkmarks, Burp suite, among others)Experience as an Application Security Consultant / Manager / DeveloperFamiliar with Agile project management methodologies#J-18808-Ljbffr
¡Sea el primero en responder a este anuncio de trabajo!
-
¿Por qué está buscando trabajo en Trabajas.es?
Crear alerta de empleo
Cada día nuevos anuncios de trabajo Puede elegir entre una amplia gama de trabajos: nuestro objetivo es ofrecer una selección lo más amplia posible Déjenos enviar nuevos anuncios por correo electrónico Sea el primero en responder a las nuevas ofertas de empleo Todos los anuncios de trabajos en un único lugar (de empleadores, agencias y otros portales) Todos los servicios para demandantes de empleo son gratuitos Le ayudaremos a encontrar un nuevo empleo