Cyber Application Security Designer

Brussels  ‐ Onsite
This project has been archived and is not accepting more applications.
Browse open projects on our job board.

Description

Cyber Application Security Designer

Role:

  • Define and advise on the control design, implementation and processes necessary to protect information systems assets
  • Perform risk assessments and define application and infrastructure-related security requirements for business and IT projects.
  • Advise on the high level security design of new applications, systems and/or infrastructures.
  • Integration of application security in projects eg authentication and authorisation, non-repudiation, cryptographic controls, data protection
  • Act as security subject matter expert in a security domain and be the security point of contact for the business and project teams.
  • Perform security validation to ensure effective implementation of security controls.
  • Define, implement and ensure the proper functioning of security trust services in line with IT security policies.
  • Recommend and advise on new or improved security services to Cyber security Management.
  • Ensure the adequate functioning of security services.
  • Produce documented security services, technical standards or principles.

Profile:

  • The successful candidate must be a service oriented, organised and independent security professional with solid experience in the security domain or in the IT application security architecture.
  • The candidate must be a team player who communicates in an open, respectful and constructive way with his/her customers and peers, both verbally and in writing. The candidate will take ownership and ensure that organisational quality standards are met.
  • The candidate must be a very good communicator in English, both verbal and written, and able to discuss and defend the security interests with individuals and groups of senior business people as well as deep technical IT experts.
  • The candidate must have proven experience in security risk assessments, development of functional security requirements, process design and management reporting. Experience in security design, architecture and project management is a strong advantage.
  • Familiarity with industry best practices in key domains: risk assessment, network security, system security (various: Windows, Linux, Tandem, Mainframe), identity and access management, and secure application development on all platforms.
  • Sound security design principles, based on confidentiality, integrity and availability requirements and other ISO27002 security principles are an asset;
  • Application security knowledge with a good understanding of software development and OWASP guidelines
  • Knowledge of and experience with security technologies including IDAAS and identity management platforms, PKI and cryptographic solutions, web application Firewalls, automated code review tools, secure management access, virtualization, XaaS solutions
  • Sufficient background knowledge with regard to network principles and protocols used in WAN and LAN's, DMZ, Internet security, network segregation
  • Experience with a subset of Unix, Windows System, Tandem, Mainframe security and assurance
  • Preferred professional certifications are CISSP, CISM, CISA, ISO 27001 LA/LI.
Start date
n.a
Duration
3months +
(extension possible)
From
Base 3
Published at
09.11.2018
Project ID:
1663233
Contract type
Freelance
To apply to this project you must log in.
Register