Application Security Architect (freelancer)
Devoteam is a leading consulting firm focused on digital strategy, tech platforms and cybersecurity. By combining creativity, tech and data insights, we empower our customers to transform their business and unlock the future. With 25 years’ experience and 10.000 employees across Europe, the Middle East and Africa, Devoteam promotes responsible tech for people and works to create better change. Key ResponsibilitiesWork with various stakeholders across the organization to ensure security of applications throughout their lifecycle considering industry best practices, regulatory requirements, and organizational needsSteer external partner on conducting comprehensive security assessments of applications, identifying vulnerabilities and recommending appropriate remediation strategiesCollaborate with development teams to integrate security controls and measures into the application development process effectivelyDefine and enforce application security policies, standards, and procedures, ensuring compliance with internal and external security requirementsStay up to date with emerging security threats, vulnerabilities, and industry trends related to application security and assess their potential impact on the companyProvide guidance and support to development teams on secure coding practices, secure configuration management, and vulnerability remediationAct as a subject matter expert and provide guidance on application security to stakeholders, management, and executivesAny other Security Architecture topic relevant to project deliverablesStay abreast of industry standards and frameworks such as OWASP, SANS, and NIST, and incorporate relevant practices into the application security programDevelop and maintain strong relationships with key vendors and strategic external partners Minimum Requirements University degree or equivalent experience in computer science, engineering, information technology or other relevant field(s) Fluent in written and spoken English Proven experience working as an Application Security Architect or in a similar role, with a focus on securing applications Strong knowledge of application security principles, including secure coding practices, input validation, authentication, access controls, and encryption Experience with application security standards and frameworks, such as OWASP Top Ten, SANS CWE Top 25, and secure software development lifecycle (SDLC) methodologies Hands-on experience with security testing techniques ideally including code review, vulnerability scanning, and penetration testing Experience working in a global company and designing / deploying solutions at scale Excellent negotiation, communication, and interpersonal skills, ability to develop influential relationships with different stakeholders across all levels Preferred Requirements: Knowledge and experience of industry standards such as ISO 27001, CIS Controls, NIST, Cyber Essentials is a...