Application Security Engineer

Colombo, Sri Lanka

LSEG

LSEG is your trusted global financial markets infrastructure and data provider. Discover how we deliver value for our customers.

View all jobs at LSEG

Apply now Apply later

Role purpose

Enable the Group to operate and expand an Application Security Programme and reduce application-level vulnerabilities.

Key Responsibilities

  • Enable teams to consume Application Security offerings

  • Review scan results to eliminate false positives

  • Work closely with software product teams to consult them on identified vulnerabilities and mitigation plans

  • Contribute to Application Security education programme

  • Automate recurrent tasks and embed security best practices into Agile and DevOps processes

  • Contribute to technical and non-technical documentation to drive and ensure team’s success

  • Evangelise Application Security as an enabler

  • Contribute to secure coding best practises

  • Where needed, write custom scanning rules that enable the tools to capture LSEG product specific issues

Technical / Job Functional Knowledge

  • Hands-on experience in enterprise scale implementations of automated Application Security Testing (SAST, SCA, IAST, etc)

  • Knowledgeable in CI/CD practices as well as tools that implement them

  • Ability to review application security testing findings and provide remediation guidance

  • Deep understanding of common as well as emerging vulnerabilities and how they manifest in different types of applications (web applications, thick clients, APIs, etc)

  • Familiarity with OWASP Top 10, SANS Top 25, NIST and ASVS

  • Familiarity with popular development languages such as Java

  • Familiarity with Agile, DevOps and SecDevOps

Personal Skills and Capabilities

  • Ability to work independently on the task at hand

  • Ability to work well under pressure

  • Stakeholder (technical) relationship management  

  • Critical thinker 

  • Practical application of lessons learned into the team’s practices 

  • Excellent verbal and written communication and presentation skills, with ability to convey technical concepts to non-technical audiences

Business and Sector Expertise

Financial Services

Diversity & Inclusion

People are at the heart of what we do and drive the success of our business.  Our colleagues thrive personally and professionally through our shared values of Integrity, Partnership, Innovation and Excellence are at the core of our culture.  We embrace diversity and actively seek to attract people with unique backgrounds and perspectives.  We are always looking at ways to become more agile, so we meet the needs of our teams and customers. We believe that an inclusive collaborative workplace is pivotal to our success and supports the potential and growth of all colleagues at LSEG.

LSEG is a leading global financial markets infrastructure and data provider. Our purpose is driving financial stability, empowering economies and enabling customers to create sustainable growth.

Our purpose is the foundation on which our culture is built. Our values of Integrity, Partnership, Excellence and Change underpin our purpose and set the standard for everything we do, every day. They go to the heart of who we are and guide our decision making and everyday actions.

Working with us means that you will be part of a dynamic organisation of 25,000 people across 65 countries. However, we will value your individuality and enable you to bring your true self to work so you can help enrich our diverse workforce. You will be part of a collaborative and creative culture where we encourage new ideas and are committed to sustainability across our global business. You will experience the critical role we have in helping to re-engineer the financial ecosystem to support and drive sustainable economic growth. Together, we are aiming to achieve this growth by accelerating the just transition to net zero, enabling growth of the green economy and creating inclusive economic opportunity.

LSEG offers a range of tailored benefits and support, including healthcare, retirement planning, paid volunteering days and wellbeing initiatives.

We are proud to be an equal opportunities employer. This means that we do not discriminate on the basis of anyone’s race, religion, colour, national origin, gender, sexual orientation, gender identity, gender expression, age, marital status, veteran status, pregnancy or disability, or any other basis protected under applicable law. Conforming with applicable law, we can reasonably accommodate applicants' and employees' religious practices and beliefs, as well as mental health or physical disability needs.

Please take a moment to read this privacy notice carefully, as it describes what personal information London Stock Exchange Group (LSEG) (we) may hold about you, what it’s used for, and how it’s obtained, your rights and how to contact us as a data subject.

If you are submitting as a Recruitment Agency Partner, it is essential and your responsibility to ensure that candidates applying to LSEG are aware of this privacy notice.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Agile APIs Application security CI/CD DevOps IAST Java NIST OWASP Privacy SANS SAST Vulnerabilities

Perks/benefits: Career development Health care

Region: Asia/Pacific
Country: Sri Lanka

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.