Application Security Engineer

OneByte


Date: 6 days ago
City: Lahore
Contract type: Full time

As Application Security Engineer, you will be improving Eon's application security posture and keeping the platform secure throughout the Software Development Life Cycle (SDLC)! We are looking for someone who loves to analyze, test and triage application vulnerabilities, participate in code and product security reviews, and help our Developers bake security into their day-to-day workflows and CICD. You will partner closely with our Product and Engineering teams, and external testers, so solid interpersonal skills are a must. This role is a great opportunity to advance an application security program and drive remediation of security weaknesses with an enterprise-wide impact!



In this role you will


  • :
    Be an advocate for application security within the organizati
  • onHelp develop and maintain a risk-based application security program based on a well-defined application security framewo
  • rkEnsure the platform complies with healthcare-specific security standards such as HIPAA and HITRUST, and follow best practices for handling sensitive patient dat
  • a.Find common patterns and themes within application vulnerabilities and work with Development teams to address the root caus
  • esParticipates in the strategic decisions related to the requirements, design, implementation, and operations of application security framework, processes, and technolo
  • gyExecute security-focused code, architecture and integration revie
  • wsCoordinate or conduct penetration testing and drive remediation efforts to completi
  • onCollaborate with DevOps teams to integrate security testing tools (SAST/DAST) into CI/CD pipelines to enable DevSecOps practice
  • s.Keep abreast of the latest security issues and technologi
  • esOwn and improve process and procedural documentati
  • onAssist with daily activities and functions of the Security team (including alert & incident response) to maintain security posture as well as policy and compliance commitmen


tsSkills & Requirement


  • s:
    3+ years of experience in web application penetration testing or a security-focused application development role is a m
  • ustAWS Security, CEH, GWEB, GCIH or equivalent certifications are prefer
  • redDeep knowledge and familiarity with Cybersecurity Framework, including NIST 800-53, NIST CSF, CIS Top 20, MITRE ATT&CK, and OWASP Top
  • TenDeep knowledge of crypto, authentication and authorization protocols and standards, including SSL/TLS, SAML, OAuth, JWT Tokens is a m
  • ustPossess a relentless desire to (ethically) break into things and can communicate the attack scenarios and mitigation options based on standard framework is desi
  • redAbility to read and understand Java, JavaScript, and Pyt
  • honAbility to automate repetitive tasks, using Python or other scripting language, is a p
  • lusExperience working in regulated industries, with a focus on healthcare security standards (HIPAA, HITRUST) is a pl
  • us.Ability to work in a diverse, fast-paced environment and effectively collaborate across te
  • amsOutstanding written and oral communication skills with demonstrated ability to clearly articulate to both a technical and functional audie


nce
“So what’s in it for me,” you


ask?
We pride ourselves for being a culture-based company buzzing with high-energy. Aside from the enthusiastic environment, you'll e


  • njoy:
    Competitive
  • salaryHealth ins
  • uranceReferral b
  • onusesGenerous vacatio
  • n timePaid Maternity and Paternity
  • leaveWork from hom
  • e daysLunch facility within
  • officeTravel all
  • owanceCompany equipment (laptop, internet device, screen
  • s etc)Professional development and career growth opportu
  • nitiesAwesome team m


embers
If we still have your attention, don't delay, send us your

resume!

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.

Post a resume

Similar jobs

Territory Sales Manager, Mardan

Mondelēz International, Lahore
13 hours ago
Job DescriptionAre You Ready to Make It Happen at Mondelēz International?Join our Mission to Lead the Future of Snacking. Make It With Pride.You lead a field sales representative team to ensure delivery of the sales strategy and achievement of annual KPIs and targets for a particular area. You work closely with cross-functional colleagues to deliver on activation and reporting against...

Workplace Experience Coordinator | Lahore

CBRE, Lahore
1 day ago
Lahore - Punjab - PakistanAbout The RoleAs a CBRE Workplace Experience Coordinator, you'll be responsible for delivering a world-class customer service experience to employees and guests of a designated building.This job is part of the Workplace Experience function. They are responsible for providing world-class customer service to the clients and visitors of a designated building.What You’ll DoFirst point of contact...

SQA Engineer

Base Camp Data Solutions, Lahore
1 day ago
Job Summary: We are seeking a dedicated and detail-oriented Quality Assurance Engineer with 3-4 years of experience in software testing and QA processes. The ideal candidate will have a strong background in creating and managing test cases, conducting manual and automated testing, and collaborating with development teams to ensure the highest quality of deliverables. A focus on documentation and effective...