At a Glance
- Tasks: Join us as an API & Application Security Specialist, focusing on securing web applications and APIs.
- Company: Work with a dynamic client committed to enhancing application security in a remote setting.
- Benefits: Enjoy the flexibility of remote work with occasional trips to London for team collaboration.
- Why this job: Make a real impact by safeguarding applications while collaborating with key stakeholders in a supportive culture.
- Qualifications: Deep knowledge of OWASP API Top 10 and experience with security frameworks required.
- Other info: This is a 6-month contract role operating inside IR35, perfect for mid-level professionals.
The predicted salary is between 36000 - 60000 £ per year.
Our client is looking to hire mid-level API & Application Security Specialist to join them on a 6-month initial contract, to work remotely with some occasional trips to the London site. This role will be operating INSIDE IR35.
Key Skills Required:
- Deep knowledge of OWASP API Top 10
- Able to review Swagger/Open API specs for vulnerabilities
- Advise on secure API design patterns
- Familiar with fallback controls such as WAF's, API gateways
- Experience using SIEM/logging tools to track API threats
- Familiarity with NIST, OWASP SAMM, or internal security frameworks
- Experience producing risk dashboards/reports for API's
- Able to translate technical risks into business language, collaborating with key stakeholders
If interested in this role, please apply today.
API / Web Application Security Specialist | Remote Contract (Ashton-Under-Lyne) employer: Korn Ferry
Contact Detail:
Korn Ferry Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land API / Web Application Security Specialist | Remote Contract (Ashton-Under-Lyne)
✨Tip Number 1
Familiarise yourself with the OWASP API Top 10 vulnerabilities. Being able to discuss these in detail during an interview will show your deep understanding of application security and demonstrate your expertise.
✨Tip Number 2
Prepare examples of how you've reviewed Swagger/Open API specifications in the past. Highlight specific vulnerabilities you identified and how you advised on secure design patterns, as this will showcase your practical experience.
✨Tip Number 3
Brush up on your knowledge of fallback controls like WAFs and API gateways. Be ready to discuss how you've implemented these tools in previous roles to mitigate risks associated with API threats.
✨Tip Number 4
Think about how you can translate technical risks into business language. Prepare to share examples of how you've collaborated with stakeholders to produce risk dashboards or reports, as this will highlight your communication skills.
We think you need these skills to ace API / Web Application Security Specialist | Remote Contract (Ashton-Under-Lyne)
Some tips for your application 🫡
Understand the Role: Before applying, make sure you fully understand the responsibilities and requirements of the API / Web Application Security Specialist position. Familiarise yourself with key skills like OWASP API Top 10 and secure API design patterns.
Tailor Your CV: Customise your CV to highlight relevant experience in API security, including any work with Swagger/Open API specs, SIEM tools, and risk reporting. Use specific examples that demonstrate your expertise in these areas.
Craft a Compelling Cover Letter: Write a cover letter that not only outlines your qualifications but also shows your enthusiasm for the role. Mention how your skills align with the company's needs and your ability to communicate technical risks to stakeholders.
Proofread Your Application: Before submitting, carefully proofread your application materials. Check for spelling and grammatical errors, and ensure that all information is clear and concise. A polished application reflects your attention to detail.
How to prepare for a job interview at Korn Ferry
✨Know Your OWASP API Top 10
Make sure you have a solid understanding of the OWASP API Top 10 vulnerabilities. Be prepared to discuss each vulnerability in detail and how they can be mitigated, as this will likely come up during your interview.
✨Familiarise Yourself with Swagger/Open API Specs
Review some Swagger or Open API specifications before your interview. Being able to identify potential vulnerabilities in these specs will demonstrate your practical knowledge and readiness for the role.
✨Understand Secure API Design Patterns
Brush up on secure API design patterns and be ready to advise on them. This shows that you not only understand security but can also apply it effectively in real-world scenarios.
✨Translate Technical Risks into Business Language
Practice explaining technical risks in a way that non-technical stakeholders can understand. This skill is crucial for collaboration and will set you apart as a candidate who can bridge the gap between tech and business.