We are searching for an Application Security Architect to join the Security practice and collaborate closely with one of our primary customers in the Hospitality and Tourism sector.
#LI-DNI
Responsibilities
- Coordinate and lead Security Audits across all stages of the software development lifecycle: Architecture, Process, Risk, and Testing
- Lead the annual PCI certification process via coordination among EPAM, the customer, and QSA
- Implement secure software development lifecycle (SSDLC) programs
- Assist software development teams in adopting secure development methodologies, tools, and processes
- Provide training to Software Development teams on secure development best practices
- Develop Secure Architecture and Design for the projects
- Communicate effectively with customers and teams to stress the importance of a Secure Software development Life Cycle and strategies for establishment
- Collaborate with various sub-teams: BAs, Developers, QAs; foster consistent understanding of Security Requirements, primary Threats, Mitigations implemented
- Coordinate work and communication with other Security Teams - Cloud Security Engineers, Infrastructure Security Engineers, or Penetration Testers
Want more jobs like this?
Get jobs in San Javier, Chile delivered to your inbox every week.
- Software Development or Security-focused university degree OR equivalent experience
- Motivation for development and growth in the Security field
- Familiarity with one or more Security Development methodologies (e.g., Microsoft SDL, OWASP OpenSAMM, BSIMM)
- Familiarity with security threats and attack scenarios, such as OWASP Top 10
- Familiarity with Threat Modeling and hands-on experience with one or more Threat Modeling Tools
- Proficiency in one or more tools in the following categories: Static Code Analysis, Static / Dynamic Application Security Testing, Penetration Testing, Intrusion Detection/ Prevention
- Understanding of main Security-related activities in development such as Security Requirements gathering, Risk Assessment, Security Code Review
- Familiarity with security threats, their implementation, and their classification
- Familiarity with existing PCI DSS and GDPR security standards and experience in requirements implementation
- Understanding of primary security concepts and principles
- Knowledge of various areas of protection and levels of defense
- Flexibility to implement threat mitigation mechanisms
- Understanding of the fundamental principles of infrastructure security and penetration testing
- Expertise in cloud security controls and policies on AWS
- Knowledge of Security Features and Mechanisms provided by at least one OS and development platform/technologies
- Understanding of DevOps principles: CI/CD, test automation, shift-left security, and shared responsibility models
- Expertise in cloud security controls and policies on Microsoft Azure
- Relevant certifications such as CISSP, CCSP, SANS GIAC, or similar credentials provide a benefit
- Improved medical coverage - EPAMers are eligible to participate in a supplementary health insurance program that shall have the usual coverage in the industry, with the Company funding 100% of the value of the monthly premium for participation
- Lunch Allowance - You will receive a daily allowance of CLP $ 7,000 per working day. Enjoy a nice meal on us
- Allowance for internet and electricity - You will receive an allowance of CLP $15,000 per month to cover internet and electricity expense
- National Holiday Bonus - We celebrate joining the Chilean Market. That is why all our employees will receive a bonus of CLP $86,646 in September
- Christmas Bonus - You will receive an End of Year bonus of CLP $170,539. It will be paid during the month of December, to ensure you have a Happy Holiday!
- Learning Culture - We want you to be the best version of yourself, that is why we offer unlimited access to learning platforms, a wide range of internal courses, and all the knowledge you need to grow professionally
- Additional Income - Besides your regular salary, you will also have the chance to earn extra income by referring talent, being a technical interviewer, and many more ways
- Are you open to relocation? - If you want to relocate to another country and we have the right project, we will assist you every step of the way, to help you and your family, reach your new home