Senior Application Security Analyst
The Senior Application Security Analyst responsible for conducting in-depth security assessments, identifying vulnerabilities, and implementing security controls to protect applications from potential threats. This role involves analysing application code, performing security testing, and collaborating with development teams to remediate security issues and plays a key role in enhancing the security posture of applications and ensuring compliance with relevant security standards and regulations.
- Conduct comprehensive security assessments, code reviews, and penetration testing of applications to identify potential vulnerabilities and security risks.
- Utilise industry-standard tools and methodologies to assess the security posture of applications and provide actionable recommendations for remediation.
- Identify, prioritise, and track security vulnerabilities identified during security assessments.
- Work closely with development teams to facilitate the remediation of vulnerabilities in a timely manner.
- Monitor the effectiveness of remediation efforts and ensure that security vulnerabilities are addressed effectively.
- Manage and maintain security tools and technologies used for application security testing and monitoring.
- Configure, deploy, and optimise security tools such as static code analysis (SAST), dynamic application security testing (DAST), and web application firewalls (WAFs) to enhance the security posture of applications.
- Provide support during security incidents related to applications, including incident detection, analysis, and response.
- Collaborate with incident response teams to investigate security incidents, identify root causes, and implement corrective actions to prevent future occurrences.
- Promote a culture of security awareness among development teams and stakeholders through training sessions, workshops, and awareness campaigns.
- Educate colleagues on secure coding practices, threat mitigation techniques, and compliance requirements.
- Maintain detailed documentation of security assessments, findings, and remediation efforts.
- Generate regular reports and metrics on application security activities, vulnerabilities, and compliance status to stakeholders and management.
- Collaborate closely with development teams, architects, IT operations, and security stakeholders to integrate security into the software development lifecycle.
- Communicate effectively with stakeholders to articulate security risks, requirements, and recommendations in a clear and concise manner.
- Identify opportunities for process improvement, optimisation, and automation in application security practices.
- Stay abreast of emerging threats, vulnerabilities, and security trends in the application security landscape and recommend appropriate measures to mitigate risks.
- Software Development Background (required)
- At least five years experience in a similar Information Security position (required)
- Customer-oriented person, with the ability to educate and influence a technical audience on Application Security matters (required)
- Fluent in relevant development languages (Java, C/C++, Perl, PHP, .NET, Python …) (required)
- Experience in the following areas: Security Test Management (required)
- Experience in Application Security Assessments (required)
- Experience in Security Assurance (required)
- Experience in Requirements Management (required)
- Knowledge of major frameworks and support libraries (SPRING, OSGI, ASP.NET, etc.) (required)
- Experience in Agile Development (required)
- Experience in Vulnerability management (required)
- Experience in Continues Improvements (required)
- Experience in Penetration Testing (required)
- Experience in Security Evaluation & Functional Testing (required)
- Experience in Application Security Testing (required)
- Safe home pickup and home drop.
- A regular bonus and great pension.
- 24 days annual leave.
- Extra paid leave, including wellbeing and development days.
- Life assurance and Income Protection.
- Private healthcare and wellbeing support.
- INR 3,000 per month Communication allowance.
- Up to INR 16,000 per year in Crèche expenses (children under 3).
Welcome to Entain. Our journey as Entain began when we evolved from GVC Holdings on 9th December 2020, but our brands have been paving the way and making history since the 1880s. Today, we’re one of the world’s largest sports betting and gaming entertainment groups – a FTSE 100 company that is home to more than 25 widely recognised brands, such as bwin, Coral, Foxy, Gala, Ladbrokes and partypoker. But that’s just the beginning. We’re constantly broadening our horizons and expanding our global influence. For example, our partnership with MGM Resorts International has allowed us to make waves in the US by powering BetMGM with our bespoke and top-of-the-line technology. It’s with this unique technology that we’re revolutionising our industry, and we’re boldly working towards being THE world leader in sports betting and gaming. Really though, it’s the people that truly make us who we are. There’s over 30,000 of us around the world and counting, but we all play for the same team. We’re proud to promote a culture that shatters barriers to unite, and encourages uncompromised diversity of background, thought and experience. When we win, we win together. If you share our values and want to be part of the revolution, we want you on our team. With offices across 19 different countries, we have an excellent history of identifying and nurturing the finest talent on a global scale. We’re all about putting our customers at the heart of the action and, with us, you can help bring moments of excitement into people’s lives.
