Application Security Manager (w/m/d)
On-siteBerlin, State of Berlin, Germany or Aschaffenburg, Bavaria, Germany
Job Summary
Establish and support application-specific security functions across business units while coordinating product and project security to ensure secure SDLC implementation. Define and implement application security measures, including designing threat models using frameworks like STRIDE or PASTA, and select, introduce, and operate SAST and DAST tools. Collaborate with cross-functional teams in development, operations, and compliance to communicate security risks and recommendations, ensuring secure CI/CD pipelines and adherence to open-source software licenses. Foster secure coding practices by providing training to developers and building a knowledge exchange for application security officers.
Required Qualifications
- Fundierte Kenntnisse über Schwachstellen in Webanwendungen (z. B. OWASP Top 10) und Strategien zu deren Behebung
- Sicherer Umgang mit Programmierpraktiken und Entwicklungsmethodiken
- Erfahrung mit cloudbasierten Plattformen und Containerisierung (z. B. Docker)
- Kenntnisse über Sicherheits-Frameworks und -Standards (z. B. NIST Cybersecurity Framework, OWASP Top 10, OWASP ASVS)
- CISSP oder verwandte Sicherheitszertifizierungen
- Hervorragende mündliche und schriftliche Kommunikationsfähigkeiten
- Ausgeprägte Problemlösungs- und Analysefähigkeiten
Desired Qualifications
- Große Begeisterung für Informationssicherheit
- Schnelles Denken und kontinuierliches Lernen, wodurch du dich schnell in neue Themen einarbeitest, relevante Informationen filterst und verarbeiten kannst
- Neugierige und analytische Denkweise
- Proaktive, teamorientierte Einstellung
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.