OBS! Ansökningsperioden för denna annonsen har
passerat.
Arbetsbeskrivning
.
Would you like to be a part of Quality Assurance community and improve the security testing awareness and knowledge in development initiatives? We are now looking for an experienced security testing specialist to drive and manage the security aspects within the Non-Functional Testing Center of Excellence (NFT CoE) at Nordea. In Nordea, we’re harnessing the power of technology to reinvent the future of banking. A tech revolution is underway – and you can make an impact. Working with international teams in an inspiring working environment, you’ll have lots of opportunities to expand your skills and advance your career.
About this opportunity
Welcome to the international team of Quality Assurance. We add value by increasing production stability and cost efficiency while creating and deploying new solutions to our customers. As a security testing specialist, you’ll play a valuable role in increasing the security of delivered solutions.
What you will be doing:
Enabling the NFT CoE to grow in the area of security testing
Proactively driving improvements Nordea wide in the security testing area
Driving and solving security testing related challenges across global teams
Driving and defining activities for security testing in the CI/CD pipeline
Driving and establishing automation of security testing
Planning, executing, reporting and documenting security testing, employing the test methods static application testing (SAST) and dynamic application testing (DAST)
Being a SME in dialog with vendors and secure the deliveries from a security testing perspective, stay updated on emerging security threats, vulnerabilities and security controls.
Who you are
Collaboration. Ownership. Passion. Courage. These are the values that guide us in being at our best – and that we imagine you share with us.
To succeed in this role, we believe that you:
have several years of experience in security testing and analysis
have strategic overview of testing processes and how security fits into the greater picture of the technology landscape
have the ability to lead people towards common goals and objectives
have a proactive, innovative and solution driven mindset. Are eager to learn and comfortable with delivering a variety of tasks in an evolving and changing environment
demonstrate a high degree of structure, flexibility, planning and prioritization skills, and delivers in a timely manner, with focus on quality, are hands-on with the technical aspects, as well as interested in the bigger architecture aspects of cyber security
Your experience and background:
Bachelor in Computer Science, Information Systems or related discipline, or equivalent work experience
Several years of experience in the security testing discipline, both static application security testing (SAST) and dynamic application testing (DAST)
Experienced test manager, with hands-on experience in security test planning and execution, reporting and documentation
Adequate experience using Burp Suite, Wireshark, Kali Linux, nmap, security monitoring tools, etc.
Good knowledge of at least one programming language (Java, C#, Python, JavaScript or similar)
Well versed in network and web application security, as well as in secure coding and hardening
System Admin Level knowledge of Linux OS-s, especially security settings
Up-to-date knowledge of security architecture, security technologies and audits
Good knowledge of OWASP testing framework, threat modelling and security trends
Knowledgeable in SDLC and CI/CD / DevOps toolchains
Fluent in English, spoken and written
ISTQB CTFL
Preferred:
To have a relevant security certification (e.g. CEH, CISSP, GCIA, GCIH and GCAC)
ISTQB CATE or CATM
If this sounds like you, get in touch!
Next steps
Submit your application no later than 20/06/2022.
At Nordea, we know that an inclusive workplace is a sustainable workplace. We deeply believe that our diverse backgrounds, experiences, characteristics and traits make us better at serving customers and communities. So please come as you are.