Application Security Test Engineer

Zürich Versicherungs-Gesellschaft AG

  • Publication date:

    05 June 2024
  • Workload:

    100%
  • Contract type:

    Unlimited employment
  • Place of work:

    Zürich

Application Security Test Engineer

Application Security Test Engineer

Zurich Capability Center is currently hiring a:

Application Security Testing Engineer

Role Description:

Application Security Testing Engineer is responsible of the Application Security toolset administration for the Security Testing BTO Team, providing global support to Zurich IT projects and to enable them to perform SAST, DAST and IAST toolset management.

  • Administrate Security Testing automated scanning tools.
  • Point of Contact for Application Security Vendor’s support services and responsible to report based on standard process& procedures stablished by the Security Test Engineering team.
  • Oversee the assigned external resources working on the Automated Application Security services and be the SPOC from the Zurich side on the technical aspects of the service

Responsibilities:

  • Administrate AppSec tools (SAST, DAST, IAST, RASP) under Security Testing scope using App scanning tools.
  • Produce reports and recommendations from findings, include issues uncovered and levels of risk.
  • Collaborate with other internal and external partner organizations on target access and operational issues.
  • Create comprehensive exploitation strategies that identify exploitable technical or operational vulnerabilities within the tool.
  • Propose, thorough documentations of implementations, via technical documentation and run books.
  • Apply adept understanding and experience with systems automation platforms and technologies.
  • Support the Interpretation of security and technical requirements into business requirements and communicate security risks to relevant stakeholders.
  • Propose automating security controls, data and processes to provide improved metrics and operational support.
  • Stay abreast of emerging security threats, vulnerabilities, and controls.
  • Spot and propose new security technologies and best practices.
  • Administrate Team y mailbox and ITSM toolset on behalf of the Sec. Engineering team and ensure that requests are shared with the team members required.
  • Propose and execute automation solutions requested by the technical lead and collaborate with the team on automation needs.

Who we are.

Looking for a challenging and inspiring work environment where you can make a difference? At Zurich millions of individuals and businesses place their trust in our products and services every day. Our 53,000 employees worldwide form the basis of our success, enabling, businesses and communities to face a world of risk with confidence. Imagine if you could help people do this all over the world. You’d give them confidence and reassurance by protecting what they love most. It’s a big challenge, but you will be supported by a world-class team who believe in helping you to reach your full potential and deliver on our promises.

So be challenged. Be inspired. Help us make a difference.

At Zurich we are an equal opportunity employer. We attract and retain the best qualified individuals available, without regard to race/ethnicity, religion, gender, sexual orientation, age, or disability.

Contact

  • Zürich Versicherungs-Gesellschaft AG