HamburgerMenu
hirist

Job Description

Description :


- Integration of security controls into SDLC / Agile / DevOps processes

- Secure design principles and threat modeling (e.g., STRIDE)

- Application security testing (SAST, DAST, SCA, penetration testing)

- Secure coding standards and vulnerability management

- CI/CD pipeline security integration

- Strong understanding of ISMS frameworks (ISO/IEC 27001, ISO 27002, SOC 2, NIST)

- Ability to design, implement, and maintain ISMS policies, standards, and procedures

- Risk assessment, treatment, and continuous improvement management

- Internal audits, gap assessments, and management review facilitation

- Regulatory and contractual compliance alignment


Technical & Functional Skills :

- ISO 27001 Lead Implementer/Lead Auditor (preferred)

- Application security tooling experience (SAST, DAST, SCA)

- Secure SDLC and DevSecOps practices

- Cloud security fundamentals (AWS / Azure / GCP)

- Familiarity with OWASP Top 10 and CWE


info-icon

Did you find something suspicious?

Similar jobs that you might be interested in