Conduct code reviews to identify potential security vulnerabilities and provide recommendations for remediation.
Collaborate with development teams to implement secure coding practices and ensure compliance with industry standards (e.g., CISA).
Develop and execute test plans to validate the effectiveness of implemented controls, identifying areas for improvement.
Provide guidance on risk management strategies, including assessment, mitigation, and monitoring of identified risks.
Job Requirements :
7-15 years of experience in IT services & consulting with a focus on cyber security, control testing, or related fields.
Certifications such as CISSP or CISA are highly desirable; equivalent experience may be considered.
Strong understanding of software development life cycles, including design patterns, coding standards, and testing methodologies.
Experience with conducting audits/assessments using various frameworks (e.g., ISO 27001) is an asset.
Job Classification
Industry: IT Services & ConsultingFunctional Area / Department: IT & Information SecurityRole Category: IT & Information Security - OtherRole: IT & Information Security - OtherEmployement Type: Full time