IT Security Officer (ITSO) - Application Security - A26190
Core
Develop and maintain IT security policies, frameworks, and incident management processes for customer IT infrastructure, focusing on application security and cloud environments.
Role type
Senior IC application security engineer (IT Security Officer)
Builds
Secure IT infrastructure and application security controls for government and enterprise clients
Domain
Cybersecurity, Application Security, Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
IT security policy development, risk assessment methodologies, security incident management, threat modelling, OWASP Top 10 knowledge, SAST code scanning, CI/CD security integration, security vulnerability remediation, security awareness training
Preferred skills
Government Commercial Cloud (GCC) experience, advanced security certifications (CISSP, OSCP, AWS security)
Technologies
AWS, Gitlab, Github, Ansible, Fortify-on-Demand, Sonarqube, REST, SOAP, SSL/TLS
Responsibilities
Develop and maintain IT security policies and action plans, evaluate and recommend IT security products, implement risk assessment methodologies, manage IT Security Incident Management processes, conduct forensic investigations, monitor and report on emerging security threats, liaise with external suppliers and government bodies, manage IT asset inventory for security monitoring
Seniority
Mid-Senior, hands-on IC