Responsibilities
The SSDLC Specialist is tasked with collaborating across cross-functional teams to promote security and compliance best practices throughout the enterprise. They should be aware of current policies and procedures and ensure they are being followed properly. The specialist should have experience working with development teams to deliver secure products.
Responsibilities:
- Partnering with Developers and Global Security teams to review upcoming features and implement security best-practices
- Perform internal and external reviews to assess security maturity and assure that security principles are correctly applied
- Analyze review results to identify recommended security and supply chain management process improvements
Want more jobs like this?
Get Software Engineering jobs in Sydney, Australia delivered to your inbox every week.
- Interpret and implement applicable standards and regulations as they apply to products, processes, and practices
- Support regulatory compliance monitoring and reporting
- Support exception handling and escalation
Qualifications
Minimum Qualifications:
-Working knowledge/experience with Build and Deploy tooling and technologies (Maven, Artifactory, Jenkins, etc...)
-Working knowledge of vulnerability chaining techniques in web applications to maximize the impact of an attack and a basic understanding of encryption concepts
-Ability to describe inherent weaknesses in web technology and protocols to cross-functional audiences
- Ability to work alongside other security functions to determine vulnerability impact and appropriate mitigations
- Ability to examine issues both strategically and analytically.
- Ability to conduct root cause analysis against vulnerabilities and determine feasible technical solutions.
- Strong analytical and problem-solving skills
Preferred Qualifications:
- CISSP, CISM, or equivalent certification
- Software development experience
- Familiarity with vulnerability management across SaaS and IaaS cloud platforms (e.g., AWS, Google Cloud, etc.)
- Working knowledge/experience with Python, SQL and REST APIs
- Ability to handle ambiguity and collaborate with a global team
- Ability to coach junior staff and contractors