Application Security Engineer

at  FXCM

London, England, United Kingdom -

Start DateExpiry DateSalaryPosted OnExperienceSkillsTelecommuteSponsor Visa
Immediate29 Jul, 2024Not Specified04 May, 2024N/AApplication Security,Jenkins,Infrastructure,Security Automation,Cloud Security,Coding Practices,Node.Js,Information Security,Communication Skills,Python,Ethical Hacking,Computer Science,Spring Boot,Java,Network Security,Code,Cissp,Threat ModelingNoNo
Add to Wishlist Apply All Jobs
Required Visa Status:
CitizenGC
US CitizenStudent Visa
H1BCPT
OPTH4 Spouse of H1B
GC Green Card
Employment Type:
Full TimePart Time
PermanentIndependent - 1099
Contract – W2C2H Independent
C2H W2Contract – Corp 2 Corp
Contract to Hire – Corp 2 Corp

Description:

Vacancy No
VN1063
Employment Type
Regular Full-Time
Location
London
Job Details
We are looking for a committed Application Security Engineer to strengthen the security measures of our applications developed with technologies such as React, Node.js, Java with Spring Boot, Python, and AWS. This role demands a proactive approach to maintaining and enhancing the security infrastructure to protect against current and future threats.

Primary responsibilities (not limited to)

  • Design and implement robust security frameworks for applications developed in React, Node.js, Java Spring Boot, and Python.
  • Perform security audits, code reviews, and comprehensive vulnerability assessments across various development environments.
  • Manage and secure AWS services, including API Gateway.
  • Integrate security tools into CI/CD pipelines using Jenkins and GitHub Actions, ensuring automated security checks throughout the development process.
  • Conduct white box penetration tests after each release to identify and resolve potential security vulnerabilities.
  • Respond to, investigate, and remediate security incidents and vulnerabilities within the application stack.
  • Develop, update, and maintain detailed security documentation outlining standards, procedures, and protocols.
  • Educate and guide development teams on best security practices and secure coding techniques.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or a related field.
  • Demonstrable experience in application security, particularly with React, Node.js, Java, Spring Boot, and Python.
  • Expertise in configuring and securing AWS environments, including API Gateway.
  • Proficient with CI/CD tools such as Jenkins and GitHub Actions for security integrations.
  • Experienced in conducting white box penetration tests and security assessments.
  • Strong knowledge of secure coding practices, ethical hacking, and threat modeling.
  • Excellent analytical, problem-solving, and communication skills.

Preferred Skills:

  • Security-related certifications (CISSP, CEH, OSCP).
  • Experience in regulated industries (financial, healthcare) is a plus.
  • In-depth knowledge of network security and cloud security best practices.
  • Experience with Infrastructure-as-Code (IaC) tools, particularly Terraform, to manage and provision infrastructure through code which enhances security automation.

All Stratos Market Limited employees must be eligible to work in United Kingdom.
Prior to submitting your resume, the firm requests that you do the following:
Review the firm’s website thoroughly at https://www.tradu.com/uk/
Company Description
Tradu is a new multi-asset global trading platform and is part of the Stratos group of companies. Tradu, built by traders for traders, provides the most sophisticated traders with a serious platform that allows them to move easily between asset classes such as stocks, CFDs and crypto, depending on the regulations that govern the trader’s market.
Equal Opportunity Employe

Responsibilities:

  • Design and implement robust security frameworks for applications developed in React, Node.js, Java Spring Boot, and Python.
  • Perform security audits, code reviews, and comprehensive vulnerability assessments across various development environments.
  • Manage and secure AWS services, including API Gateway.
  • Integrate security tools into CI/CD pipelines using Jenkins and GitHub Actions, ensuring automated security checks throughout the development process.
  • Conduct white box penetration tests after each release to identify and resolve potential security vulnerabilities.
  • Respond to, investigate, and remediate security incidents and vulnerabilities within the application stack.
  • Develop, update, and maintain detailed security documentation outlining standards, procedures, and protocols.
  • Educate and guide development teams on best security practices and secure coding techniques


REQUIREMENT SUMMARY

Min:N/AMax:5.0 year(s)

Information Technology/IT

IT Software - Network Administration / Security

Software Engineering

Graduate

Computer science information security or a related field

Proficient

1

London, United Kingdom