Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузите резюме
описание
AIFC is the Astana International Financial Centre.
задачи
Design, implement, and maintain secure application architectures across AIFC’s platforms
Perform security assessments and code reviews
Identify and remediate vulnerabilities
Integrate security tools into the software development lifecycle
Develop and enforce secure coding standards
Monitor applications for security threats and respond to security incidents
Prepare technical documentation and support audits and compliance efforts
Provide colleagues with guidance and training on application security best practices
требования
Demonstrated expertise in application security, secure software design, threat modeling, and vulnerability assessment
Hands-on experience with SAST, DAST, dependency scanning, and penetration testing frameworks
Strong understanding of web and API security principles, common attack vectors, including OWASP Top 10, and mitigation techniques
Proficiency in at least one programming language commonly used for enterprise applications, such as Java, C#, Python, or JavaScript, and secure coding practices
Experience integrating security into CI/CD pipelines and working in DevSecOps environments
Knowledge of security standards and regulations such as ISO/IEC 27001, PCI DSS, and GDPR-like data protection requirements
Ability to analyze complex technical issues, communicate risks clearly, and propose practical security improvements
Bachelor’s degree in Computer Science, Information Security, Engineering, or a related field
Strong collaboration skills and experience working with cross-functional teams in a financial or regulated environment is highly beneficial
Advanced English proficiency
Будет плюсом: relevant professional certifications