Application Security Engineer

IG Group Holdings

3d onsite
3+ years application security experience
Oscp certification required
Penetration testing web and mobile apps
The role involves proactively identifying and mitigating application security risks while collaborating with developers to embed security early in the SDLC

Job Summary

  • The role involves proactively identifying and mitigating application security risks while collaborating with developers to embed security early in the SDLC.
  • Candidates will perform penetration testing on web, mobile, and cloud-based applications alongside conducting secure code reviews and threat modeling.
  • IG offers a hybrid working model requiring three days in the office, along with tailored development programs and clear career progression opportunities.

Matching Summary

Match Score: 75

The role involves proactively identifying and mitigating application security risks while collaborating with developers to embed security early in the SDLC.

Skills & Requirements

Must-have

  • 3+ years Application Security experience
  • OSCP certification required
  • Penetration testing web and mobile apps
  • SAST DAST SCA tool proficiency
  • Secure code review and threat modeling
  • CI/CD pipeline security integration
  • Purple team exercise execution

Nice-to-have

  • Container and Kubernetes security knowledge
  • API security testing experience
  • Bug bounty program exposure
  • Cloud environment security controls familiarity
  • Strong problem-solving and communication skills

Key Requirements

  • Bachelor's degree in Computer Science or related field
  • OSCP certified with hands-on penetration testing experience
  • 3+ years professional experience in AppSec or SSDLC
  • Not specified work authorization status

Work Rights

Not specified

Tailored Resume

Cover Letter