Job Description
As a Development Security Specialist, you will play a key role in transforming development practices and securing applications. Your responsibilities will include designing robust technological architectures aligned with company standards to support technological products and services, including infrastructure defined through Infrastructure as Code practices (software, networks, databases, etc.).
Leveraging your expertise, you will analyze, recommend, and design detailed, secure, and high-performing architectures for projects of significant operational and conceptual complexity. You will collaborate with various stakeholders to ensure alignment with established IT standards.
Main Responsibilities
- Develop and lead the application development security plan in collaboration with stakeholders.
- Analyze, design, and recommend technological solutions addressing development security challenges.
- Provide advisory support to project teams, ensuring effective communication and a thorough understanding of stakeholder needs.
- Ensure solutions are consistent with the organization’s current and future needs and integrate seamlessly with the existing architecture.
- Align solutions with corporate standards and technological guidelines, while contributing to their evolution in the domain of application security.
- Facilitate cross-functional alignment among projects, offering support and necessary follow-ups.
- Represent your unit in projects and with external partners or organizations.
Requirements
- Education: Bachelor’s degree in an appropriate field.
- Experience: At least 5 years of relevant experience in application security.
- Language: Fluency in spoken and written French is required.
Technical Expertise
- Proficiency in security technologies and principles such as SAST, DAST, and IAST.
- Knowledge of modern application development and delivery practices (DevSecOps, Agile, IaC, etc.).
- Expertise in development languages and frameworks, including mainframe systems (z/OS, Base24), mobile (iOS, Android), and microservices (Java, .NET).
- Proven experience with cloud platform architecture (Azure, Google required).
- Strong understanding of operating systems, database management systems, and related technologies.
Assets
- Knowledge of identity management best practices, authentication, and access authorization.
- Familiarity with network and application security solutions (firewalls, IPS, IDS, SIEM, proxies, etc.).
- Understanding of hardening practices, global policy deployment, NGAV, EDR, and BYOD approaches.
- Experience with the ArchiMate modeling language.
Key Competencies
- Ability to manage complexity and make quality decisions.
- Strategic thinking and ingenuity.
- Effective communication and the ability to rally stakeholders.
- Resilience and capacity to manage uncertainty.
This position offers a unique opportunity to contribute to application security while evolving within a dynamic and innovative team.