At a Glance
- Tasks: Secure applications by analysing code, supply chains, and conducting penetration testing.
- Company: Join bet365, a leading online gambling company with a global presence.
- Benefits: Enjoy hybrid working, competitive salary, and opportunities for professional growth.
- Why this job: Make a real impact on application security using cutting-edge technology like AI.
- Qualifications: Experience with security testing tools and knowledge of software development is essential.
- Other info: Collaborate with diverse teams and mentor junior members in a dynamic environment.
The predicted salary is between 36000 - 60000 ÂŁ per year.
About bet365
At bet365, we’re one of the world’s leading online gambling companies, revolutionising the industry since 2000. Founded by Denise Coates CBE, we now employ over 9,000 people and serve more than 100 million customers across 27 languages. Our focus on In‑Play betting has solidified our market‑leading position, offering an unmatched experience across 96 sports and 700,000 streaming events.
Location
Stoke‑On‑Trent, England, United Kingdom
Job Description
As an Information Security Specialist, you will focus on securing the company’s applications through analysis of code, supply chains, and threat modelling, ensuring the effectiveness of security measures. The application security team deals with the security of closed‑source, open‑source, and proprietary applications. It is our mission to ensure applications are developed and implemented in a secure manner, and potential risks are found and remediated efficiently through penetration testing.
You will work alongside our Software Development teams to ensure application‑based vulnerabilities are understood and mitigated. It is important that you possess an understanding of Secure Development Lifecycles (SDL) and the assessment of code. The role is part of the broader Information Security department, which is comprised of engineers and analysts from varying backgrounds. Collectively, the team utilises enterprise and bespoke tooling to identify and mitigate threats to the Business.
We utilise AI to enhance our existing security processes and practices, embracing the advantages it brings. You will play a key role in our journey to leverage this powerful technology in strengthening our application security. This role is eligible for inclusion in the company’s hybrid working from home policy.
Qualifications
- Understanding of and demonstrable experience with automated, dynamic and static application security testing tools, as well as manual security testing to find vulnerabilities and logical issues.
- Knowledge and understanding of Open Web Application Security Project (OWASP) and its utilisation within threat modelling.
- Knowledge of software development and languages.
- Working knowledge of CI/CD pipelines and security tooling associated with them.
- Experience in conducting and reporting on web application penetration testing.
- Strong communication and documentation skills.
Additional Information
- Providing support to senior members of the team and mentoring junior members of the team.
- Taking an active role in the project process to ensure that information security aspects are considered up front and throughout the project lifecycle.
- Contributing to and continuously improving the company’s security testing methodologies, updating documentation where applicable.
- Performing manual and automated code reviews and escalating remediation where appropriate.
- Providing support to software development teams to ensure security is considered throughout the development lifecycle.
- Contributing to and continuously improving our supply chain assurance processes, identifying flaws and vulnerabilities.
- Performing risk assessments, threat modelling and design reviews to ensure effective security controls are in place.
- Identifying opportunities for converting manual tasks into automated processes.
Seniority level
Associate
Employment type
Full‑time
Job function
Information Technology
Industries
Gambling Facilities and Casinos
#J-18808-Ljbffr
Information Security Specialist employer: bet365
Contact Detail:
bet365 Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Information Security Specialist
✨Tip Number 1
Network like a pro! Reach out to folks in the industry, attend meetups, and connect with people on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your work in application security, including any projects or contributions to open-source. This gives potential employers a taste of what you can bring to the table.
✨Tip Number 3
Prepare for interviews by brushing up on common security scenarios and challenges. Be ready to discuss how you would handle specific vulnerabilities or threats, especially those related to OWASP and secure development lifecycles.
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at bet365.
We think you need these skills to ace Information Security Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV is tailored to the Information Security Specialist role. Highlight your experience with application security, threat modelling, and any relevant tools you've used. We want to see how your skills match what we're looking for!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about application security and how you can contribute to our team. Be sure to mention your understanding of Secure Development Lifecycles and any relevant projects you've worked on.
Showcase Your Skills: In your application, don't forget to showcase your skills in automated and manual security testing. Mention specific tools and methodologies you've used, like OWASP, to demonstrate your expertise. We love seeing candidates who are proactive about their skills!
Apply Through Our Website: We encourage you to apply through our website for the best chance of getting noticed. It’s super easy, and you'll be able to keep track of your application status. Plus, we love seeing applications come directly from our site!
How to prepare for a job interview at bet365
✨Know Your Security Tools
Make sure you’re familiar with automated, dynamic, and static application security testing tools. Be ready to discuss how you've used these tools in past projects, as well as any manual testing experiences. This will show that you have the hands-on experience bet365 is looking for.
✨Understand OWASP Inside Out
Brush up on the Open Web Application Security Project (OWASP) guidelines and be prepared to explain how you’ve applied them in threat modelling. Being able to articulate your understanding of OWASP will demonstrate your commitment to secure development practices.
✨Communicate Clearly
Strong communication skills are key in this role. Practice explaining complex security concepts in simple terms, as you’ll need to collaborate with software development teams. Clear documentation and reporting are also crucial, so think about examples where you’ve excelled in these areas.
✨Show Your Passion for Automation
Bet365 values innovation, so highlight any experiences where you’ve identified opportunities to automate manual processes. Discuss how you’ve contributed to improving security methodologies or tools, as this aligns with their mission to leverage AI in enhancing security.