At a Glance
- Tasks: Join a dynamic team to enhance application security and protect APIs.
- Company: Work with a leading client in the tech industry, known for innovation.
- Benefits: Enjoy a hybrid work model with competitive pay of £650 per day.
- Why this job: Make a real impact on security while collaborating with key stakeholders.
- Qualifications: Strong background in security and development, with knowledge of OWASP and API vulnerabilities.
- Other info: This is a 6-month contract role, perfect for those seeking flexible work.
The predicted salary is between 46800 - 78000 £ per year.
Our client is looking to hire an experienced Application Security Specialist to join them on a 6-month initial contract, to work on a hybrid (London, remote), inside IR35 model. The pay rate for this role will be circa £650 per day, inside IR35.
Key Skills Required:
- Strong Security and Development background, in SDLC-focused roles
- Deep knowledge of OWASP API Top 10
- Able to review Swagger/Open API specs for vulnerabilities
- Advise on secure API design patterns
- Familiar with fallback controls such as WAF's, API gateways
- Experience using SIEM/logging tools to track API threats
- Familiarity with NIST, OWASP SAMM, or internal security frameworks
- Experience producing risk dashboards/reports for APIs
- Able to translate technical risks into business language, collaborating with key stakeholders
- Experience in large-scale, enterprise environments is a big plus
If interested in this role, please apply today.
Application Security Specialist employer: Korn Ferry
Contact Detail:
Korn Ferry Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Application Security Specialist
✨Tip Number 1
Network with professionals in the application security field. Attend meetups, webinars, or conferences where you can connect with others who work in similar roles. This can help you gain insights into the industry and potentially lead to referrals.
✨Tip Number 2
Showcase your knowledge of OWASP API Top 10 by discussing relevant projects or experiences during networking conversations. Being able to articulate how you've applied this knowledge in real-world scenarios can set you apart from other candidates.
✨Tip Number 3
Familiarise yourself with the specific tools and frameworks mentioned in the job description, such as SIEM/logging tools and NIST standards. Having hands-on experience or even just a solid understanding of these can give you an edge in discussions with potential employers.
✨Tip Number 4
Prepare to discuss how you can translate technical risks into business language. Think of examples where you've successfully communicated complex security issues to non-technical stakeholders, as this is a key skill for the role.
We think you need these skills to ace Application Security Specialist
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in application security and development. Emphasise your familiarity with the SDLC and any specific projects where you've applied OWASP principles or worked with API security.
Craft a Strong Cover Letter: In your cover letter, address the key skills mentioned in the job description. Discuss your experience with Swagger/Open API specs and how you've advised on secure API design patterns in previous roles.
Showcase Relevant Experience: When detailing your work history, focus on your experience with SIEM/logging tools and producing risk dashboards. Provide examples of how you've translated technical risks into business language for stakeholders.
Proofread Your Application: Before submitting, carefully proofread your application to ensure there are no errors. A well-presented application reflects your attention to detail, which is crucial in security roles.
How to prepare for a job interview at Korn Ferry
✨Showcase Your Security Knowledge
Make sure to brush up on the OWASP API Top 10 and be ready to discuss how you've applied this knowledge in previous roles. Highlight specific examples where you identified vulnerabilities and implemented solutions.
✨Demonstrate Your Development Background
Since a strong development background is crucial, prepare to talk about your experience in SDLC-focused roles. Be ready to explain how your development skills complement your security expertise.
✨Prepare for Technical Questions
Expect questions about reviewing Swagger/Open API specs and advising on secure API design patterns. Practise explaining these concepts clearly, as you'll need to translate technical risks into business language.
✨Familiarise Yourself with Relevant Frameworks
Get comfortable discussing NIST, OWASP SAMM, and any internal security frameworks you've worked with. Being able to reference these frameworks will show your depth of knowledge and commitment to security best practices.