Senior Application Security Engineer - Incident Investigation

Senior Application Security Engineer - Incident Investigation
Empresa:

Oracle


Detalles de la oferta

.As a Senior Application Security Engineer with a focus on Incident Investigation, you will be part of the Product Security team and work closely with NetSuite's SOC. You will be the Application Security expert in incident investigations, deep diving through logs and code to provide the best context to Incident Responders and the best remediation path to product teams. Your contributions will be key to securing multiple cloud services and promoting good security practices throughout Oracle. What You'll Do? Lead incident investigations, coordinating different teams and making sure there's a steady pace to the remediation of the events. Find new and strengthen existing detections by participating in and leading threat hunts. Participate in and lead purple team exercises on various applications to strengthen our detection and response capabilities Determine the best strategy to remediate active security incidents in collaboration with Development and Security teams. Implement signature-based detections and mitigations within WAF and RASP solutions to secure our web applications. Build and manage tools / automation to improve our current workflows. Provide support to NetSuite's SOC with Application Security specific knowledge. Improve NetSuite's Incident Detection / Response mechanisms and streamline our internal processes. Cross-train and learn within and across focus groups. Perform proactive research to keep-up with the latest attacks and TTPs, and translate this into actionable input for our detection and response mechanisms. Collaborate with Application Security management on program direction, team growth, and addressing systemic security issues. Career Level - IC3 Your Qualifications & Skills: 4+ years in the field of Software Development, Security Engineering or Incident Response. Experience using Logging tools like OpenSearch or Elastic. Knowledge on how to operate / implement a WAF. Application security and/or Software Development expertise. Incident Response expertise or desire to learn. Strong ethics and understanding of ethics in information security. Capable of working independently while supporting a team environment. Ability to efficiently manage multiple tasks. Strong communication skills in English both to technical and executive audiences. Nice to have Programming experience with one or more programming languages (Java, JavaScript, Python, PHP, Perl, Ruby, Kotlin, Scala, C#, Golang, bash / zsh, C / C++). We're primarily a Java shop, but we work with multiple programming languages daily.. in Computer Science, Computer Engineering, or related field, or commensurate experience. Project coordination / project management skills. Capable of designing, improving and implementing complex workflows. Familiarity with application security projects (.OWASP Top 10), tools (.ZAP, Burp), and how to build safer software. Recognized industry certification and/or continuing education programs are a major plus


Fuente: Jobtome_Ppc

Requisitos

Senior Application Security Engineer - Incident Investigation
Empresa:

Oracle


Cloud & Devops Engineer - N2

¿QUIERES FORMAR PARTE DE NUESTRO CENTRO DE EXCELENCIA CLOUD? Somos una empresa con más de 25 años en el sector de las telecomunicaciones con una amplia carte...


Desde Sirt - Zaragoza

Publicado a month ago

Técnico/A Microinformático/A

Descripción#Ref BCN-JMG #SquadDakarEn Faster Empleo ETT estamos buscando a Un/a Técnico/a Microinformático/a para importante empresa de referencia de Solucio...


Desde Faster - Zaragoza

Publicado a month ago

Personal Oficina Técnica

Desde Gi Group, la firma de servicios de trabajo temporal y permanent placement de Gi Group Holding, multinacional italiana líder en soluciones de Recursos H...


Desde Gigroup - Zaragoza

Publicado a month ago

Supervisor/A Jornada Parcial Noches

Adecco Outsourcing es una empresa comprometida con la igualdad perteneciente a The Adecco Group y especializada en la externalización de servicios cuyo valor...


Desde Adecco (Spain) - Zaragoza

Publicado a month ago

Built at: 2024-07-03T23:09:18.264Z