Skills & Experience:
- Experience with application security and vulnerability management.
- Strong understanding of common application vulnerabilities (OWASP Top 10).
- Experience with SAST/SCA tools such as Fortify, Snyk.
< p style="box-sizing: inherit; margin: 0px; padding: 0px; border: 0px; font-size: 14px; vertical-align: baseline; background: none 0% 0% / auto repeat scroll padding-box border-box rgb(255, 255, 255); -artdeco-reset-typography_getFontSize: 1.4rem; -artdeco-reset-typography_getLineHeight: 1.42857; line-height: 1.42857; color: rgba(0, 0, 0, 0.9); -hue-web-line-height-regular: 1.25; -hue-web-line-height-open: 1.5; font-family: -apple-system, system-ui, BlinkMacSystemFont, "Segoe UI", Roboto, "Helvetica Neue", "Fira Sans", Ubuntu, Oxygen, "Oxygen Sans", Cantarell, "Droid Sans", "Apple Color Emoji", "Segoe UI Emoji", "Segoe UI Emoji", "Segoe UI Symbol", "Lucida Grande", Helvetica, Arial, sans-serif;">•Ability to assess security findings and false positives.
- Strong stakeholder communication and technical writing skills.
- Understanding of secure coding practices and software development lifecycles.
- Demonstrated experience within Vulnerability Management, Application Security, Infrastructure Security, Cyber Operations, or a related cyber security function.
- Strong working knowledge of vulnerability management concepts, vulnerability lifecycles, remediation processes, risk prioritisation, and CVSS scoring.
- Experience working with vulnerability scanning platforms such as Snyk, Tenable, Qualys, Rapid7, or equivalent.
- Strong analytical skills with the ability to investigate issues across multiple technical and business data sources.
- Experience analysing and reconciling data from enterprise platforms including ServiceNow, CMDBs, asset inventories, cloud platforms, or related systems.