Core competencies, knowledge and experience:
Track record of software development expertise - designing and building secure applications from beginning to end of the software development lifecycle
Ability to demonstrate expert knowledge of multiple coding languages and frameworks e.g. Python, Javascript, C, C++, REST APIs, shell scripting
Expert knowledge of application security risks and threats and use of threat modelling and intelligence frameworks e.g. MITRE ATT&CK, STIX
Expert knowledge of security architectures, technologies, standards and industry guidelines, especially those applicable to DevSecOps and Cloud
Expert knowledge of securing applications for an enterprise in key public and private/hybrid cloud vendors e.g. AWS, Azure, Google, VMware, Oracle, RedHat.
Demonstrable experience and proven track record, in designing and deploying security features for a global organisation’s IT infrastructure and applications.
Excellent communication capabilities to provide rapid and concise summaries of complex scenarios and communicate security risk in business terms and the ability to interact effectively with senior internal and external stakeholders.
Recognised to be able to become a (L6 Technical Career Path).
Consultancy Skills delivered in culturally aware global corporate environments.
Ability and willingness to lead teams as well as be an independent single contributor.
Must have technical / professional qualifications:
Master’s degree in a relevant field e.g. IT, Computer Science, Software Engineering, Information Security, Telecoms.
Solid years of hands-on, practical experience of developing products from ideation through to live production
Experience with the secure application development lifecycle and security in CI/CD pipelines
Agile software development methodologies and incorporation of security in agile ways of working
Desired:
Cryptography and Key Management.
Security as a service offerings (identity management & cloud monitoring)