Loading ...

工作内容

Job Description

Role &

Responsibilities As a part of corporate Information Security in GRC division you are expected to. 1. Identify risk in applications that shall be developed, hosted or changed and suggest remediation for the same. 2. Work towards quantify risk by understanding the business and applications support impact in case Confidentiality Integrity Availability is compromised. 3. Liaisons with internal Application development team and identify their strategies. 4. Cater to risks towards application accessed by external entities and parties. 5. Have an understanding of application hosting architectures in Cloud. 6. Prepare reports pertaining to application risk for enterprise and present to senior management.

Skills &

Experience

Required 1. Excellent understanding of OWSAP top 10. 2. Have conducted application security assessment. 3. Have understanding of tired architecture, authentication, application trusts, and certificate security. 4. Should have ability to maps threats and vulnerability and articulate to business owners the impacts/loss.

Certification

Skills Required Any certifications similar to ISC2 CSSLP/ GWEB or others are added advantage but not mandatory.Application Risk assessmentGood to have but not mandatory to have past programming experience in .net C#, Asp .net others etc

List top 4

qualities for

evaluation in

order of

importance 1. Knowledge and SME of the subject 2. Learning zeal and ability 3. Commitment 4. Communication and collaboration
Loading ...
Loading ...

最后期限: 20-06-2024

点击免费申请候选人

申请

Loading ...
Loading ...

相同的工作

Loading ...
Loading ...