At a Glance
- Tasks: Lead application security initiatives and enhance security practices across IT projects.
- Company: Join Canon EMEA, a leader in Information Security with a collaborative culture.
- Benefits: Competitive pay, flexible working options, and opportunities for professional growth.
- Why this job: Make a real impact on application security while representing a global brand.
- Qualifications: Experience in security assessments, cloud platforms, and secure software development.
- Other info: Dynamic role with a focus on continuous learning and career advancement.
The predicted salary is between 36000 - 60000 £ per year.
This role will provide expertise in application security across all phases of the IT lifecycle, including discussions, design reviews, and testing activities. The position will also be responsible for implementation of secure SDLC, training, and assisting other members of IT, development companies and Canon's strategic partners in strengthening application security practices. Additionally, the role will represent Canon EMEA in professional forums, promoting Canon’s position as a thought leader in Information Security.
Responsibilities
- Act as the security representative within project streams for new and upcoming initiatives, translating security policies into risk controls for new and existing projects.
- Conduct security architecture and design reviews.
- Support project and development teams with relevant security knowledge.
- Assist with the implementation of security design principles.
- Guide development and project teams in the remediation of identified security deficiencies.
- Support the planning and execution of application pentests, and the follow-up of remediation measures.
- Be accountable to business and IT for the planning and execution of application pentests, and the follow-up of remediation measures.
- Recommend and assist in the implementation of security controls in the SDLC of supported applications.
- Manage the technical security auditing process within Canon’s internal IT transformation program as well as Canon’s B2C program and ensure auditing follow up and mitigation actions.
Qualifications
- Significant working experience in a technical capacity in a Security or IT department, preferably across multiple security domains.
- Demonstrable experience in performing security assessments and security design reviews.
- In-depth security knowledge for cloud platforms, mainly Azure and AWS.
- Experience in software development and Application Security.
- Knowledge and expertise in secure software development lifecycle (SSDLC) is highly desirable.
- Ability to understand, follow up and progress mitigation activities for security auditing reports, penetration testing reports and/or configuration reviews.
- Good stakeholder management and communication skills.
- Experience working in large international organizations and in handling large enterprise projects is a plus.
- Attention to detail.
- Ability to work independently and as part of a team.
- A continuous learning mindset, to stay up to date with the latest developments in the industry.
- Degrees and certifications are welcome, but are not required.
Specific Security & IT Skills
- Secure Architecture and Design principles
- Pentesting tools and techniques
- Threat Modelling
- Secure coding for common languages and platforms
- Security frameworks, such as OWASP, NIST CSF, CIS etc.
- Understanding of EU and international compliance requirements, such as GDPR, PCI-DSS, CRA etc.
- Containers and serverless technologies
Canon Core Behaviours
- Drive for results
- Focus on the Customer
- Take ownership and accountability
- Act as a team player
- Shows courage and conviction
- People orientated
- Caring for self and others
Application Security Lead (Contractor) in Uxbridge employer: Canon EMEA
Contact Detail:
Canon EMEA Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Application Security Lead (Contractor) in Uxbridge
✨Tip Number 1
Network like a pro! Get out there and connect with folks in the industry. Attend meetups, webinars, or even online forums where you can chat about application security. The more people you know, the better your chances of landing that dream role!
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your work in application security. Whether it's projects you've led or contributions to open-source, having tangible evidence of your expertise can really set you apart from the crowd.
✨Tip Number 3
Prepare for interviews like a champ! Research common interview questions related to application security and practice your responses. Don’t forget to have some questions ready for them too – it shows you're genuinely interested in the role and the company.
✨Tip Number 4
Apply through our website! We’ve got loads of opportunities waiting for you. By applying directly, you’ll ensure your application gets the attention it deserves. Plus, it’s a great way to show your enthusiasm for joining our team!
We think you need these skills to ace Application Security Lead (Contractor) in Uxbridge
Some tips for your application 🫡
Tailor Your Application: Make sure to customise your CV and cover letter to highlight your experience in application security. We want to see how your skills align with the role, so don’t hold back on showcasing your relevant projects!
Showcase Your Expertise: When detailing your experience, focus on specific security assessments and design reviews you've conducted. We love seeing concrete examples of how you've implemented secure SDLC practices in past roles.
Be Clear and Concise: Keep your application straightforward and to the point. Use bullet points for easy reading and make sure to emphasise your key achievements in application security without overwhelming us with too much information.
Apply Through Our Website: We encourage you to submit your application through our website. It’s the best way for us to receive your details and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at Canon EMEA
✨Know Your Stuff
Make sure you brush up on your application security knowledge, especially around secure SDLC and pentesting. Be ready to discuss specific tools and techniques you've used in past roles, particularly with cloud platforms like Azure and AWS.
✨Showcase Your Experience
Prepare examples from your previous work where you've successfully conducted security assessments or design reviews. Highlight how you translated security policies into actionable risk controls for projects, as this will resonate well with the interviewers.
✨Communicate Clearly
Since stakeholder management is key, practice explaining complex security concepts in simple terms. This will demonstrate your ability to guide development teams effectively and show that you can be a team player.
✨Stay Current
Keep yourself updated on the latest trends in application security and compliance requirements like GDPR and PCI-DSS. Mention any recent developments or certifications you've pursued to show your continuous learning mindset.