The role involves proactively identifying and mitigating application security risks while collaborating with developers to embed security early in the SDLC
Job Summary
The role involves proactively identifying and mitigating application security risks while collaborating with developers to embed security early in the SDLC.
Candidates will perform penetration testing on web, mobile, and cloud-based applications alongside conducting secure code reviews and threat modeling.
IG offers a hybrid working model requiring three days in the office, along with tailored development programs and clear career progression opportunities.
Matching Summary
Match Score: 75
The role involves proactively identifying and mitigating application security risks while collaborating with developers to embed security early in the SDLC.
Skills & Requirements
Must-have
3+ years Application Security experience
OSCP certification required
Penetration testing web and mobile apps
SAST DAST SCA tool proficiency
Secure code review and threat modeling
CI/CD pipeline security integration
Purple team exercise execution
Nice-to-have
Container and Kubernetes security knowledge
API security testing experience
Bug bounty program exposure
Cloud environment security controls familiarity
Strong problem-solving and communication skills
Key Requirements
Bachelor's degree in Computer Science or related field
OSCP certified with hands-on penetration testing experience
3+ years professional experience in AppSec or SSDLC