Information Protection Advisors- Hybrid

Cigna

Austin, TX, United States
Hybrid
Application security subject matter expert
Secure code reviews and appsec assessments
Automated security controls in ci/cd
Act as a subject matter expert on application security to improve and further integrate security best practices into product design and software development lifecycles (SDLC) of the organization

Job Summary

  • Act as a subject matter expert on application security to improve and further integrate security best practices into product design and software development lifecycles (SDLC) of the organization.
  • Assist development teams with secure code reviews and other AppSec assessments to educate development teams on security weaknesses and vulnerabilities.
  • Assist with the education of development teams on the remediation of vulnerabilities detected in SAST, SCA, and DAST security tools.

Matching Summary

Act as a subject matter expert on application security to improve and further integrate security best practices into product design and software development lifecycles (SDLC) of the organization.

Skills & Requirements

Must-have

  • Application security subject matter expert
  • Secure code reviews and AppSec assessments
  • Automated security controls in CI/CD
  • Secure coding standards and best practices
  • Embedding security into CI/CD pipelines
  • Securing applications in cloud environments

Nice-to-have

  • Improve health and increase vitality
  • Relentlessly innovate for accessibility
  • Drive growth and improve lives

Key Requirements

  • Master's Degree in Computer Science or 3 years Cybersecurity experience
  • Bachelor's Degree in Computer Science or 5 years Cybersecurity experience
  • Experience integrating security into SDLC
  • Experience with SAST/DAST tools and techniques
  • Experience with secure coding standards (OWASP Top 10, SEI Cert)
  • Experience with vulnerability remediation tools (Nessus, Qualys, Burp Suite)
  • Experience with secure identity management (OAuth, SAML, JWT)
  • Experience with GitHub Actions and Jenkins for DevSecOps
  • Experience assessing application risk and compliance (NIST, ISO 27001)
  • Experience detecting, analyzing, and responding to security incidents

Work Rights

Not specified

Tailored Resume

Cover Letter