Senior Security QA Engineer
This job does not exist anymore.
Try running a new searchor browse our vacancies.
Or fill in the form below to receive job alerts.
Job Type | Contract |
Location | Home-Based |
Area | London, UK |
Sector | Information Security |
Salary | £525 - £550 per day |
Currency | GBP |
Start Date | ASAP |
Job Ref | SSQA |
Job Views | 7 |
- Description
Monarch are again working with a managed service provider who provide consultancy services within Telecoms and the Public Sector. They are looking for an experience Senior Security Test Engineer for a 6 month contract with one of the largest telecoms organisations - Rate: £525/ £550 per day INSIDE IR35. There will also be occasional travel required into Berkshire.
My client is looking for an expert within the Security Testing practice who can lead and motivate other within the team. You will need to have technical hands on experience within IT Security and Network Security standards and frameworks i.e ISO27001, NIST and GITC. You will be required to create test scripts, mapping to requirements in ALM, and raise defects in ALM. This will include internal, external, and emergency CR’s. You will act as the main point of contact regarding security test issues for the SMIP, attend project meetings as required and regularly track the progress of all security test activities, as well as regularly reviewing and updating RAID (Risk, Assumptions, Issues, Dependencies) and the scope of security testing.
The client will be looking for an individual with Static Application Security Testing, Dynamics App Security Testing, Interactive App Security Testing, Maritime Asset Sec and Training, as well as Security compliance activities experience. Experience within Pentesting methodologies is ideal, OWASP is ideal. You will be managing stakeholders, partners and suppliers internally and externally, maintaining the relationships.
Mandatory Requirements- Experience with Security testing toolsets
- Experience within Security QA Testing
- Exposure to using HP ALM, Jira
- Experience on Security Incident Event Management (ArcSight & Splunk)
- Track record of developing test security scripts
- Able to identify new security threats by conducting continual monitoring, vulnerability assessments and log analysis
- Create technical and managerial level reports and risk assessments for Cloud based applications and infrastructure
- Good understanding of the protocols underpinning the web - TCP/IP, HTTP, SSL/TLS
- Able to define and impliment the project test strategy and approach
- SIEM – ArcSight, Splunk
- Application Security – SAST and DAST
- Vulnerability Management– Tripwire IP360
- API Testing tools – SOAP UI
- Operating Systems; Unix (Linux and /or Solaris), Windows
- Database – Microsoft SQL Server, Oracle RDBMS
I look forward to reviewing your application!
Owen