
Application Security Specialist
7 days ago
Secure Our Digital Future
We are seeking a skilled Application Security Engineer to join our team. In this role, you will play a critical part in ensuring the security and integrity of our applications.
About the Role
As an Application Security Engineer, you will be responsible for improving our application security posture and maintaining a secure platform throughout the Software Development Life Cycle (SDLC). You will work closely with our Product and Engineering teams, as well as external testers, to identify and address security vulnerabilities.
Key Responsibilities
- Spearhead Application Security Efforts: Be an advocate for application security within the organization, developing and maintaining a risk-based application security program based on a well-defined application security framework.
- Ensure Platform Compliance: Ensure the platform complies with healthcare-specific security standards such as HIPAA and HITRUST, and follow best practices for handling sensitive patient data.
- Analyze and Address Vulnerabilities: Find common patterns and themes within application vulnerabilities and work with Development teams to address the root causes.
- Participate in Strategic Decisions: Participate in the strategic decisions related to the requirements, design, implementation, and operations of application security framework, processes, and technology.
- Execute Security-Focused Code Reviews: Execute security-focused code, architecture and integration reviews.
- Coordinate Penetration Testing: Coordinate or conduct penetration testing and drive remediation efforts to completion.
- Integrate Security Testing Tools: Collaborate with DevOps teams to integrate security testing tools (SAST/DAST) into CI/CD pipelines to enable DevSecOps practices.
- Stay Up-to-Date with the Latest Security Issues and Technologies: Keep abreast of the latest security issues and technologies.
- Own and Improve Process Documentation: Own and improve process and procedural documentation.
- Assist with Daily Security Activities: Assist with daily activities and functions of the Security team (including alert & incident response) to maintain security posture as well as policy and compliance commitments.
Requirements and Qualifications
- Cybersecurity Framework Expertise: Deep knowledge and familiarity with Cybersecurity Framework, including NIST 800-53, NIST CSF, CIS Top 20, MITRE ATT&CK, and OWASP Top Ten.
- Crypto and Authentication Knowledge: Deep knowledge of crypto, authentication and authorization protocols and standards, including SSL/TLS, SAML, OAuth, JWT Tokens.
- Pentesting and Automation Skills: Possess a relentless desire to (ethically) break into things and can communicate the attack scenarios and mitigation options based on standard framework.
- Programming Language Proficiency: Ability to read and understand Java, JavaScript, and Python.
- Automation Experience: Ability to automate repetitive tasks, using Python or other scripting language.
- Regulated Industry Experience: Experience working in regulated industries, with a focus on healthcare security standards (HIPAA, HITRUST).
Nice-to-Haves
- Penetration Testing Experience: 2+ years of experience in web application penetration testing or a security-focused application development role.
- Certifications: AWS Security, CEH, GWEB, GCIH or equivalent certifications.
- Team Collaboration Skills: Ability to work in a diverse, fast-paced environment and effectively collaborate across teams.
- Communication Skills: Outstanding written and oral communication skills with demonstrated ability to clearly articulate to both a technical and functional audience.
What We Offer
- Competitive Salary
- Health Insurance
- Referral Bonuses
- Generous Vacation Time
- Paid Maternity and Paternity Leave
- Work from Home Days
- Lunch Facility within Office
- Travel Allowance
- Company Equipment
- Professional Development Opportunities
- Award-Winning Team Members
-
Application Security Specialist
2 weeks ago
Lahore, Punjab, Pakistan beBee Careers Full timeSecure Software Engineering RoleEon, a pioneer in patient management and incidental tracking, leverages AI to empower healthcare enterprises. Our mission is to enhance patient health and make healthcare more accessible.We drive adherence to care pathways, increasing patient care and survival, when patients succeed, healthcare systems benefit both clinically...
-
Lahore, Punjab, Pakistan beBee Careers Full timeApplication Security Engineer RoleThis role offers an opportunity to advance application security practices and address security weaknesses enterprise-wide.Enhance the company's application security by ensuring platform security throughout the software development lifecycle (SDLC).Collaborate with Product and Engineering teams to analyze, test, and triage...
-
Application Security Engineer
3 weeks ago
Lahore, Punjab, Pakistan Eonhealth Full timeWork with the industry leaderAt Eon, our mission is to make patients healthier and healthcare affordable. Eon Patient Management ("EPM") identifies patients with disease risk and streamlines clinical decision analysis so clinicians can work at the top of their licenses. With unique solutions across multiple disease states, we drive unprecedented adherence to...
-
Application Security Engineer
3 weeks ago
Lahore, Punjab, Pakistan Eon Full timeJoin to apply for the Application Security Engineer role at Eon23 hours ago Be among the first 25 applicantsJoin to apply for the Application Security Engineer role at EonGet AI-powered advice on this job and more exclusive features.Work with the industry leaderAt Eon, our mission is to make patients healthier and healthcare more affordable. Eon Patient...
-
Advanced Application Security Professional
2 weeks ago
Lahore, Punjab, Pakistan beBee Careers Full timeAbout the RoleAs an Application Security Engineer, you will play a crucial role in improving our application security posture and ensuring the platform remains secure throughout the Software Development Life Cycle (SDLC).You will be responsible for advocating for application security within the organization.Develop and maintain a risk-based application...
-
Data Security Specialist
2 weeks ago
Lahore, Punjab, Pakistan beBee Careers Full timeJob Title:Data Security Specialist">Job Summary">The Data Security Specialist will be responsible for the daily monitoring and maintenance of the enterprise Data Loss Prevention (DLP) solution. This role is part of a team that aims to maintain and improve data security and protection controls, monitoring and incident response framework.This specialist will...
-
Azure Cloud Security Specialist
7 days ago
Lahore, Punjab, Pakistan beBee Careers Full timeJob Title: Cloud Security SpecialistWe are seeking an experienced Cloud Security Specialist to join our team. This role involves securing cloud environments using Azure security measures, including App Service, Endpoint, Azure WAF, Key Vault, and storage account security.
-
Cloud Security Specialist
1 week ago
Lahore, Punjab, Pakistan beBee Careers Full timeAbout this Role">We are looking for an experienced Application Security Engineer to join our team.">This is a critical role that involves improving our application security posture and ensuring the platform is secure throughout the Software Development Life Cycle (SDLC).
-
Network Security
1 week ago
Lahore, Punjab, Pakistan beBee Careers Full timeNetwork Security & Endpoint Support SpecialistAbout the Role:We are seeking a highly skilled Network Security & Endpoint Support Specialist to join our team. The successful candidate will be responsible for managing our network infrastructure, enforcing internet policies, and resolving technical issues across devices.The ideal candidate will have a strong...
-
Network Security Administrator
2 weeks ago
Lahore, Punjab, Pakistan beBee Careers Full timeJob Title:Network & Endpoint Security SpecialistDescription:We are seeking a skilled Network & Endpoint Security Specialist to join our team. The ideal candidate will have a strong background in network administration and endpoint support.The role involves maintaining and troubleshooting internet connectivity, firewalls, switches, and VPNs. Additionally, the...