Application Security Architect

2 semanas atrás


Sao Paulo, Brasil TD SYNNEX Tempo inteiro

**Job Description Summary**:
TD SYNNEX Corporation, a $60B global distributor is dedicated to protect the enterprise and our supply chain partners from cyber security risks. That's especially true today as new risks and complexities brought on by regulatory mandates, rapidly evolving technologies, and the digitalization of business operations are disrupting traditional business models.

Reporting to the CISO organization, the Application Security Architect will be focused on guiding the entire SDLC lifecycle with security by design, continuous security assessments throughout the SDLC lifecycle and raising the effectiveness of the development organizations so that TD SYNNEX can develop the next-generation of managed services and advanced technology products to grow market-share and increase revenue whilst monitoring, managing, and measuring operational environment risk. In addition, this architectural role will drive the strategy, execution and support of the next generation customer Identity and Access Management platform for our eBusiness and Orchestration platforms.

The Application Security Architect will partner with numerous development organizations throughout the company to be secure, vigilant, and resilient in the face of an ever-increasing array of cyber threats and vulnerabilities. Our Application Security team will help the organization with the management of information and technology risks by delivering end-to-end solutions using proven methodologies and tools in a consistent manner. Our services will help the organization to address, in a timely manner, pervasive issues, such as identity theft, data security breaches, data leakage, cyber security, and system outages across organizations of various sizes and industries with the goal of enabling ongoing, secure, and reliable operations across the enterprise.

It is vital that the innovation teams and the Application Security teams collaborate and partner to drive successful outcomes. Whilst the development organization is responsible for deploying solutions that are secure by design and secure by applicable standards, the Application Security Team is driven to ensure our organization is successful in bringing to market new capabilities in accordance to our high standards for security.

Work you will do:
As an Application Security Architect, you are responsible for defining and developing operational maturity of the Secure SDLC Program which includes the following responsibilities.

**Duties and Responsibilities**:

- Is responsible for being the thought leader for a dedicated and globally diverse team located in North America, South America, Europe and Asia.
- Is responsible for cultivating and grooming of a network of Security Champions in each development and innovation team.
- Collaborates and works closely with other teams such as, but not limited to, IT Innovation Leaders, IT Development Managers, DevOps Leaders, Product Managers, Project Managers, Internal Audit, Cloud Security, Penetration Testers (Red Team) and the Cyber Defense Center.
- Contribute to the maturing the organizational efficiency of the entire SDLC and DevSecOps services.
- Drives operational maturity to be compliant with security standards and regulations such as NIST, PCI-DSS, ISO etc.
- Facilitate use of technology-based tools or methodologies to continuously improve the monitoring, management and reliability of the service
- Involved in triaging and defect tracking process with the development team and helping the team to fix issues at the code level based on the priority of the tickets
- Share risk and areas for improvement with the CISO, IT leadership and project sponsors
- Investigative and analytical problem-solving skills
- Possession of excellent oral and written communication skill
- Self driven and ability to work autonomously
- Understand security architecture concepts including topology, protocols, components, and principles to perform threat modeling

**Required**:

- Charisma and personality to engage with development teams to build rapport and partnership
- Knowledgeable in deployment and security management phases
- Knowledge and experience of OWASP Top 10, SANS Secure Programming, Security Engineering Principles
- Experience in performing code review of dot Net, Java and Swift and C/C++ code
- Experience in running, installing and managing SAST, DAST and IAST solutions, such as Checkmarx, Fortify and Contrast in large enterprise
- Understanding of leading vulnerability scoring standards, such as CVSS, and ability to translate vulnerability severity as security risk
- Experience on at least one CI/CD tool set and building pipelines using Team city, Bamboo, Jenkins, Chef, Puppet, selenium, AWS or AZURE DevOps
- Experience on container technology such as Kubernetes, Dockers, AKS,
- Knowledge of cloud environments and deployment solutions such as server less computing
- Experience in writing custom exploitation scripts and utilities
- Knowledge of one or mor



  • São Paulo, São Paulo, Brasil Td Synnex Tempo inteiro

    **Job Description Summary**:TD SYNNEX Corporation, a $60B global distributor is dedicated to protect the enterprise and our supply chain partners from cyber security risks.That's especially true today as new risks and complexities brought on by regulatory mandates, rapidly evolving technologies, and the digitalization of business operations are disrupting...


  • São Paulo, São Paulo, Brasil beBeeSecurity Tempo inteiro US$120.000 - US$170.000

    Job Title: Senior Application Security EngineerWe are seeking a seasoned professional to join our team as a Senior Application Security Engineer.This key role plays a lead part in designing and developing application-level security controls and standards. It entails performing thorough application security design reviews against new products and services,...


  • São Paulo, São Paulo, Brasil beBeeApplication Tempo inteiro R$816.160 - R$1.243.200

    Job Title: Application Security SpecialistWe are seeking a highly skilled Application Security Specialist to join our team.Key Responsibilities:Integrate static application security testing (SAST) tools into continuous integration/continuous deployment (CI/CD) pipelines, ensuring seamless compatibility and efficient scanning within development...


  • São Paulo, São Paulo, Brasil beBeeArchitect Tempo inteiro R$118.124 - R$169.914

    The role of a Senior Architect is to provide technical guidance and assistance to teams in building solutions for customers' application security challenges.This involves qualifying and gathering requirements to demonstrate, architect, and prove the technical value of proposed solutions against competitive alternatives.You will be responsible for building...


  • Sao Paulo, Brasil Johnson & Johnson Tempo inteiro

    Johnson & Johnson is recruiting for an Information Security & Risk Management (ISRM) Application Security Lead, located in Raritan, NJ, Limerick, Ireland or São Paulo, Brazil. Caring for the world, one person at a time has inspired and united the people of Johnson & Johnson for over 130 years. We embrace research and science - bringing innovative ideas,...


  • Sao Paulo, Brasil Genesys Tempo inteiro

    **Security Solutions Architect** The Genesys Global Presales Security & Privacy solutions architects’ team is a unique team made up of Security/Privacy experts with the skills to provide expert services in support of all key stakeholders (Genesys Sales, Presales, Customers, Partners, Prospects etc.) The team sits within the Global Pre-Sales organization,...

  • Cloud Security Architect

    2 semanas atrás


    São Paulo, São Paulo, Brasil SAP Tempo inteiro

    **We help the world run better****ABOUT THE ROLE**Enterprise Cloud Services (ECS) is a business unit in the Product Engineering Board Area.Enterprise Cloud Services supports customers throughout their cloud transformation and SAP S/4HANA Private Cloud adoption journey (PCE, RISE with SAP). We run the Intelligent Enterprise so they can be an Intelligent...


  • Sao Paulo, Brasil Santander Tempo inteiro

    Application Security Analyst+ (Cyber Security) SAO PAULO, Brazil **WHAT YOU WILL BE DOING** Já pensou em trabalhar em um lugar em constante **transformação **, inovação, colaboração e crescimento? **Aqui é o lugar! **Com sede mundial na Espanha, o **Santander **é o maior **banco **da zona do euro e um dos maiores do mundo. Em atividade no mercado...


  • São Paulo, São Paulo, Brasil Varsity Tutors, a Nerdy Company Tempo inteiro

    Overview We are seeking an experienced Application Security Engineer to serve as a trusted partner to our software development teams. This role focuses on making our product secure by design—embedding security into how software is architected, written, deployed, and maintained. Unlike infrastructure security roles, this position centers on...


  • Sao Paulo, Brasil Rockwell Automation Tempo inteiro

    Where the Application Consultant is not the domain expert they will liaise with and be supported by SMEs within other parts of the business. It is expected the Application Consultant will leverage these resources providing a "one-stop-shop" SME experience to the commercial and client teams on a pursuit. Key skills include being collaborative in nature,...