Application Security Engineer
Colombo, Sri Lanka
LSEG
LSEG is your trusted global financial markets infrastructure and data provider. Discover how we deliver value for our customers.Role purpose
Enable the Group to operate and expand an Application Security Programme and reduce application-level vulnerabilities.
Key Responsibilities
Enable teams to consume Application Security offerings
Review scan results to eliminate false positives
Work closely with software product teams to consult them on identified vulnerabilities and mitigation plans
Contribute to Application Security education programme
Automate recurrent tasks and embed security best practices into Agile and DevOps processes
Contribute to technical and non-technical documentation to drive and ensure team’s success
Evangelise Application Security as an enabler
Contribute to secure coding best practises
Where needed, write custom scanning rules that enable the tools to capture LSEG product specific issues
Technical / Job Functional Knowledge
Hands-on experience in enterprise scale implementations of automated Application Security Testing (SAST, SCA, IAST, etc)
Knowledgeable in CI/CD practices as well as tools that implement them
Ability to review application security testing findings and provide remediation guidance
Deep understanding of common as well as emerging vulnerabilities and how they manifest in different types of applications (web applications, thick clients, APIs, etc)
Familiarity with OWASP Top 10, SANS Top 25, NIST and ASVS
Familiarity with popular development languages such as Java
Familiarity with Agile, DevOps and SecDevOps
Personal Skills and Capabilities
Ability to work independently on the task at hand
Ability to work well under pressure
Stakeholder (technical) relationship management
Critical thinker
Practical application of lessons learned into the team’s practices
Excellent verbal and written communication and presentation skills, with ability to convey technical concepts to non-technical audiences
Business and Sector Expertise
Financial Services
Diversity & Inclusion
People are at the heart of what we do and drive the success of our business. Our colleagues thrive personally and professionally through our shared values of Integrity, Partnership, Innovation and Excellence are at the core of our culture. We embrace diversity and actively seek to attract people with unique backgrounds and perspectives. We are always looking at ways to become more agile, so we meet the needs of our teams and customers. We believe that an inclusive collaborative workplace is pivotal to our success and supports the potential and growth of all colleagues at LSEG.
LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.
Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.
Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity.
LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.
We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.
Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it’s used for, and how it’s obtained, your rights and how to contact us as a data subject.
If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile APIs Application security CI/CD DevOps IAST Java NIST OWASP Privacy SANS SAST Vulnerabilities
Perks/benefits: Career development Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.