At a Glance
- Tasks: Join us as an API & Application Security Specialist, focusing on securing APIs and applications.
- Company: Work with a dynamic client committed to enhancing application security in a remote setting.
- Benefits: Enjoy the flexibility of remote work with occasional trips to London for team collaboration.
- Why this job: Make a real impact by safeguarding applications while collaborating with key stakeholders in a supportive culture.
- Qualifications: Deep knowledge of OWASP API Top 10 and experience with secure API design patterns required.
- Other info: This is a 6-month contract role operating inside IR35, perfect for mid-level professionals.
The predicted salary is between 36000 - 60000 £ per year.
Our client is looking to hire a mid-level API & Application Security Specialist to join them on a 6-month initial contract, to work remotely with some occasional trips to the London site. This role will be operating INSIDE IR35.
Key Skills Required:
- Deep knowledge of OWASP API Top 10
- Able to review Swagger/Open API specs for vulnerabilities
- Advise on secure API design patterns
- Familiar with fallback controls such as WAF's, API gateways
- Experience using SIEM/logging tools to track API threats
- Familiarity with NIST, OWASP SAMM, or internal security frameworks
- Experience producing risk dashboards/reports for APIs
- Able to translate technical risks into business language, collaborating with key stakeholders
If interested in this role, please apply today.
API / Web Application Security Specialist | Remote Contract employer: LinkedIn
Contact Detail:
LinkedIn Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land API / Web Application Security Specialist | Remote Contract
✨Tip Number 1
Familiarise yourself with the OWASP API Top 10 vulnerabilities. Being able to discuss these in detail during an interview will show your deep understanding of API security and demonstrate your expertise.
✨Tip Number 2
Prepare examples of how you've reviewed Swagger/Open API specifications in the past. Highlight specific vulnerabilities you identified and how you advised on secure design patterns, as this will showcase your practical experience.
✨Tip Number 3
Brush up on your knowledge of fallback controls like WAFs and API gateways. Be ready to discuss how you've implemented or recommended these tools in previous roles to mitigate API threats.
✨Tip Number 4
Think about how you can translate technical risks into business language. Prepare to share examples of how you've communicated security issues to stakeholders, as this skill is crucial for the role.
We think you need these skills to ace API / Web Application Security Specialist | Remote Contract
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with API and application security. Include specific examples of how you've applied your knowledge of OWASP API Top 10 and any relevant projects you've worked on.
Craft a Strong Cover Letter: In your cover letter, emphasise your familiarity with secure API design patterns and your ability to review Swagger/Open API specs for vulnerabilities. Mention your experience with SIEM/logging tools and how it relates to tracking API threats.
Showcase Relevant Skills: Clearly outline your understanding of fallback controls like WAFs and API gateways. If you have experience producing risk dashboards or reports, make sure to include that as well.
Use Business Language: When describing your technical skills, ensure you can translate these into business language. This will demonstrate your ability to collaborate with key stakeholders effectively.
How to prepare for a job interview at LinkedIn
✨Know Your OWASP API Top 10
Make sure you have a solid understanding of the OWASP API Top 10 vulnerabilities. Be prepared to discuss each vulnerability in detail and provide examples of how you've mitigated them in past projects.
✨Familiarise Yourself with Swagger/Open API Specs
Review Swagger and Open API specifications before the interview. Be ready to explain how you would identify vulnerabilities within these specs and suggest secure design patterns.
✨Understand Security Frameworks
Brush up on NIST, OWASP SAMM, and any internal security frameworks relevant to the role. You might be asked how these frameworks influence your approach to application security.
✨Communicate Technical Risks Effectively
Practice translating technical risks into business language. Think about how you can communicate complex security concepts to non-technical stakeholders, as this will be crucial in your role.