Application Security Engineering and Innovation - Senior Associate

  • UK Only
  • pwc
Job Description:

Job description

About PwC We’re one of the world’s leading professional services organisations. From 158 countries, we help our clients, some of the most successful organisations on the globe, as well as its most dynamic entrepreneurs and thriving private businesses, to create the value they want. We help to measure, protect and enhance the things that matter most to them. What we are looking for:

SAEIT pillar skills matrix:

  • Experience engaging business & technology stakeholders at all levels to gather long term goals & requirements

  • Experience mapping long term business requirements to complex security architecture frameworks such as TOGAF, SABSA, Zachman etc.

  • Understanding of how to design & build security technology solutions aligned to a global central service environment

  • Understanding of security technology at an enterprise & solution level

  • Hands on engineering experience with enterprise security technology

  • Experience working to transition technology from a local focus to a central technology service organization

  • Experience working in a complex, matrix organization

  • Experience working with multiple stakeholders across functional and technical skillsets

Additional Responsibilities:

  • PwC’s Application Security team is responsible for enabling PwC’s market and consumer acquisition velocity, increasing revenue generation and safeguarding PwC’s products globally.

  • The Sr. Associate of Application Security Engineering and Innovation will be responsible for helping the firm provide and evolve its current application security engineering practices and code review processes as well as being an innovator driven to help the firm modernize its application security practices.

  • Knowledge and Skills Preferred (Note: One section but can be separate paragraphs):

Required:

  • The ideal candidate would be 50% programmer and 50% hacker. Examples of qualifications that resemble this profile are as follows:

  • 1-2 years’ experience in a software development field such as Software Developer, Architect, Software Quality Assurance, or Application Security Engineer

  • Comfortable in at least one of the following development languages: C#, C++, Java, .NET, Node.js, or Python

  • Possess an understanding of application architectural patterns, such as MVC, Microservices, Event-driven etc.

  • Creative, organized, responsive, and highly thorough problem solver

  • Possess strong business acumen with ability to work with infrastructure engineering and operations, application development, QA and security teams.

  • Possess a restlessness or desire to break into things.

  • Knowledge of the OWASP Top 10

  • Strong self-starter who has the ability to operate independently.

  • Has solid understanding and experience with establishing software development policies across an organization.

  • Excellent oral/written presentation skills with ability to communicate effectively with senior executive leadership; proficiency in preparation of presentations, analytical reports, and documents regarding program operational status, achievement and performance.

Preferred:

  • Understanding and Passion for Agile/XP/Scrum/Kanban

  • Understanding of Test Driven Development built on User Stories

  • Understanding of Continuous Integration/Testing/Delivery/CI/CD

  • Familiarity with cloud architecture and services, such as AWS.

  • Familiarity with Metasploit, Burp Suite, Fuzzing, and Jenkins is preferred.

  • Familiarity with code reviews and penetration testing preferred.

Not the role for you?

Did you know PwC offer flexible contract arrangements as well as contingent work (ie temporary or day rate contracting)?

The skills we look for in future employees All our people need to demonstrate the skills and behaviours that support us in delivering our business strategy. This is important to the work we do for our business, and our clients. These skills and behaviours make up our global leadership framework, ‘The PwC Professional’ and are made up of five core attributes; whole leadership, technical capabilities, business acumen, global acumen and relationships.

Learn more here: www.pwc.com/uk/careers/experienced/apply

Diversity

Valuing Difference. Driving Inclusion.

We work in a changing world which offers great opportunities for people with diverse backgrounds and experiences. We seek to attract and employ the best people from the widest talent pool because creating value through diversity is what makes us strong as a business, enabling us to solve important problems and deliver value to our clients. We encourage an inclusive culture where people can be themselves, are valued for their strengths and are empowered to be the best they can be. As an organisation with an increasingly agile workforce, we also support different ways of working offering flexible working arrangements. Learn more here about our work to support an inclusive culture.

www.pwc.com/uk/diversity

Other Jobs in Information Security