Skip to content

Open nowPosted 80 days ago

Application Security Analyst

EURES job mobility portal101,182 open roles

Where
Nivelles, Belgium
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowApplication Security AnalystEURES job mobility portal · Nivelles, Belgium
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on EURES job mobility portal's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.7% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.3%3 days
  3. 7.7%7 days
  4. 14.0%14 days
  5. 33.7%30 days
This job: posted 80 days ago

The posting

Who we are looking for

As an Application Security Analyst, you will integrate our Secure Software Development practice. Together with our 20 experts, we develop, maintain, support and host Specialized Software. Our expertise is two-fold:

  • Proposing our expertise to clients’ development teams in securing their Software Development Life Cycle (SSDLC or Secured-SDLC).
  • Developing highly secured softwares (Security by design) based on customer’s requirments (e.g. itsme – authentication app) ;

In this frame, we are recruiting an Application Security Analyst who will play a key role in our application security services growth over the next few years.

Your role

As an Application Security Analyst your role is to carry out security assessments on applications used by our customers. Based on the results of the assessment, you will propose security recommendations. These are short-, medium- and long-term solutions that will serve as the basis for building an application security roadmap for the company.

Depending on your qualifications, you may be required to implement these recommendations in terms of processes, tools and developer trainings (security champions, awareness). Your main contacts at the customer will be the CISOs and their security teams.

Your tasks will consist of:

  • Assess an existing SDLC (i.e., SAMM Assessment but we stay open to other methodologies we’ll define together),
  • Give guidance on establishing a secure software development lifecycle (Secure-SDLC / DevSecOps),
  • Help development teams to integrate application security best practices (e.g. OWASP ASVS), and security tooling/processes in their development pipeline (SAST, DAST, SCA, CVE follow-up, ...),
  • Give training and coaching sessions to new security champions at client.
  • Participate in presales meetings around application security.

The role will evolve to include the following tasks and responsibilities in the short term, depending on your experience and evolution pace.

You will then bring your energy on Solution Owner responsibilities like:

  1. Mentorship and support: Providing guidance and mentorship to team members, especially those in junior positions, will be crucial. Your support will help them navigate complex missions, leading their professional growth and ensuring successful project outcomes.
  2. Technology watch: You will follow new tools, technical evolutions and industry trends, and share your knowledge with the team. This proactive approach will ensure that our offerings remain cutting-edge, relevant, and aligned with our clients’ ever-evolving needs.
  3. Relationships strengthening with our trusted business partners/suppliers: You will be our key representative in application security associations, or during application security events/conferences/meetings.
  4. Asset creation: Developing new assets and methodologies to complement and enhance our solutions will be part of your responsibility. These assets and methodologies will not only increase the efficiency of our solutions but also support and empower your colleagues in delivering high-quality results.

Your profile

  • You hold a Bachelor or Master degree.
  • You work for minimum 2 years in applying security to development: You have an experience in analyzing SDLC environments in terms of security (OWASP SAMM assessment type, Threat modeling, …) You have already worked with/implemented some of the following tools: Sonarqube, CheckMarx, Fortify, webinspect, ZAP, Dependency-Check, Snyk, Veracode, jfrog Xray, Azure devops, Gitlab, ...
  • You are analytical minded.
  • You have a natural team spirit, together with project management and presentation skills.
  • You have good working knowledge of both written and spoken English, and French or Dutch.

Considered as a plus:

  • Hands on experience in development (Java and/or C#)
  • Kubernetes and containers (Docker)
  • REST APIs
  • Experience with security principles and intrusion tools

Mindset:

  • Strong self-motivator and entrepreneurial pro-active attitude
  • Strong analytical and problem-solving skills
  • Team player. Excellent communication skills
  • Ambassador for the professional values that are at the heart of our philosophy: TOP-NOTCH : We strive for best-of-the-best while staying up to date with the latest technology. HUMAN-CENTRIC : We care about people in the digital world, listening before interacting respectfully in a responsible environment. NO-NONSENSE : We go for it, we work together, we are committed to deliver, to exceed expectations.
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against EURES job mobility portal's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on EURES job mobility portal's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    EURES job mobility portal's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.