Ver oferta completa

SECURITY ENGINEER

Descripción de la oferta de empleo

Verisure, operating under two brand names (Securitas Direct & Verisure) in Verisure, we’re constantly developing new technology to better protect our customers. Our highly skilled and experienced product teams work with urgency and passion when researching and developing new ways to keep our customers safe.The role will reports to the Head of Security Architecture & Engineering (day to day work will be coordinated and supervised by the Technical Lead of Software & Hardware Security Assurance area) and will work with Security Architecture & Engineering team members, SW Developers and Engineers, Product Owners, Business Owners, Regional Information Security Managers, Global Governance, Risk and Assurance Analysts Technical SMEs.Responsibilities:The software security engineer (SSE) is responsible for improving the software security posture of Verisure software globally.In particular the SSE will maintain and improve the secure development standard and guidelines and automate the security tools and controls in the software development pipelines for all development and engineering teams in Verisure.The SSE will also support the development teams to understand and solve security vulnerabilities detected in their code and applications. In principle, the support will be provided to teams located in South region (Spain, Portugal, Italy, France, LATAM), but can expand globally to North region as well.The SSE will prepare and deliver training for developers on security best practices and how to use software security tools.The SSE will coordinate the pentesting service globally for Verisure, contributing as well technically by conducting activities that include verifying vulnerabilities, and discussing and guiding developers on how to mitigate vulnerabilities.As a member of the Group InfoSec team, the SSE will also cultivate a culture of security awareness and incorporate a security mindset in developers’ daily work.Qualifications:You are a perfect match for this position if you bring an excellent academic record in Computer Science or similar degree, you are eager to learn new things in a fast paced environment, have a good experience in software development, and bring passion for the interplay between cybersecurity and software.You will work in an international environment with many teams and people from different nationalities, so having a collaborative approach and strong communication skills are a must.The candidate is expected to have a thorough knowledge and experience of Cybersecurity, Secure SW development, SAST, SCA and IAST/DAST tools.We expect that the candidate has previous experience in SW development (preferable Java, C and Python), SW testing and package management tools like Maven, Gradle and NPM, as well as CI/CD environments.The candidate stays up to date with the latest cyber threats, security standards as well as defensive and offensive solutions and methods.More specifically:5+ years of experience in IT / Cybersecurity, of which 3+ years within software security.Deep knowledge of software development practices, tools and processes.Expert knowledge of software security best practice and frameworks (e.g. OWASP).Expert knowledge of security tooling as SAST, SCA and IAST/DAST.Experience of security review of Java, C and Python code.Experience of working with CI/CD.Experience of working package management tools like Maven, Gradle and NPM.Integrity and the ability to handle confidential matters.Excellent written and verbal communication skills.- Fluent in Spanish and English, both written and verbal.DesiredExperience working with IoT products and ecosystems.Experience of working with cloud solutionsExperience with risk and regulation frameworks and standards, such as NIST 800, ISO 270/01/17/18, ISF SOGP, ISF SOGP, etc.Experience and trainingWork with Infosec teams and development teams to achieve alignment between information security and business objectives.· Develop and communicate software security guidelines, standards and procedures of mandatory applicability by all Verisure developers, engineers and third-party providers.· Educate SW developers in secure development best practices.Establish tooling (SAST, SCA, IAST/DAST, etc.) for the purpose of evaluating security standards and security controls within CI/CD.· Support developers to mitigate identified security weaknesses.· Risk assessment; identity risks and help stakeholders to understand the implications towards making an informed decision.· Coordinate pentesting service globally, interacting with providers and application owners.LocationWorking under a Hybrid Model, you’ll work from home and at our Madrid offices.
Ver oferta completa

Detalles de la oferta

Empresa
  • Verisure
Localidad
  • En toda España
Dirección
  • Sin especificar - Sin especificar
Fecha de publicación
  • 22/02/2024
Fecha de expiración
  • 22/05/2024
Qa automation engineer
Innoit

Your profile: at least 3y of experience working as a qa automation engineer... are you a qa automation engineer looking for new challenge? we aspire to reach everyone and connect them to top projects... what we can offer you: you will join a highly motivated team, where everyone is developing themselves......

ELECTRICAL ENGINEER FV DESIGNER BIZKAIA
Engineers Sourcing

Electrical fv engineer bizkaiajob description: company dedicated to engineering, assembly and industrial maintenance... job description electrical engineer (solar project designer), for the development of epc projects in the photovoltaic sector... requisitos del puestorequired qualifications electrical......

CAD Engineer with Solidworks
Recruit4Work

Exciting opportunity for a cad engineer in the recycling industry! are you a skilled engineer with a passion for developing machines and promoting sustainability through recycling? if you have experience in cad drawing using solidworks and a deep understanding of conveyors, shredders, mills, and structural......

Devops engineer
Innoit

Are you a devops / site reliability engineer seeking new interesting opportunity? so... we’re very open to hear your opinions and ideas about how we can do things better, so please, let us know there’re much much more, so, if you want to hear it, just apply ! meanwhile you can check out our web: https://www......

Data Engineer
Innoit

Are you a big data engineer looking for a new challenge? so... your profile: bachelor's or master's in information technology or equivalent education with it focus... proven practical experience in managing data ingestion projects in hadoop environments using agile methodologies... com/es-es/meetup-de-innoit-consulting-en-barcelona/?_locale=es-es......

CALL 37-2023-1 Satellite Communications Engineer
Centre Tecnològic de Telecomunicacions de Catalunya

Who are we looking for ? the space and resilient communications and systems unit is looking for a satellite communications engineer... the institute has a multicultural environment with more than 130 members (scientific, technical and administrative staff) from all over the world... cat/wp-content/uploads/2022/02/cttc-professional-categories......

CALL 41-2023-1 - Satellite Communications Engineer
Centre Tecnològic de Telecomunicacions de Catalunya

Who are we looking for ? the space and resilient communications and systems unit is looking for a satellite communications engineer... career path promotion (either professional category and/or annual gross salary)... the institute has a multicultural environment with more than 130 members (scientific......

Cybersecurity Engineer
Involve rh

Confidencial cuenta con una posición como cybersecurity engineer para proteger la infraestructura digital de una organización mediante la identificación y mitigación de posibles amenazas cibernéticas... investigar incidentes de seguridad y llevar a cabo respuestas inmediatas... realizar análisis de vulnerabilidades......

Ingeniero proyectista PTC Creo Parametric (Pro/Engineer)
Surf engineering

Carácter abierto, proactivo, capacitado para el trabajo en equipo... ingeniero técnico... se precisan proyectistas de ptc creo parametric (pro/egineer) enfocado en elsector industrial mecánico y que tenga una experiencia mínima indispensable y demostrable de 2 años en el desarrollo de proyectos de piezas......

Java engineer
Innoit

Proven experience in server-side development of restful services & apis... you also will be working with and kubernetes... what we can offer you: you will join a highly motivated team, where everyone is developing themselves to higher levels of professionality... com/es-es/meetup-de-innoit-consulting-en-barcelona/?_locale=es-es......