Senior Security Specialist
Senior Security Specialist
The world of finance moves fast. we re faster. Our teams are empowered to learn, grow, and make an impact in their careers and communities. We deliver innovations that advance the way the world pays, banks and invests. If you want to grow personally and professionally, we d like to know
We are currently looking for an experienced Senior Security Specialist (m/w/d) to drive our Securities Finance Trading & Collateral technology and services roadmap to the global Securities Finance & Collateral industry. Working closely with the Product Development management to deliver on our mission to deliver future state cloud-native solution together with simplifying the integrations with open API s and provide seamless integrations.
About the role:
As a Senior Security Specialist, you are part of the Securities Finance Trading and Collateral core development team. You will be responsible for ensuring the security aspects of the platform. You will be required to investigate any potential security finding by automated tools, based on dependencies as well as other sources such as penetration testing. You will be interacting with central security teams to explain false positives and ensure vulnerabilities are resolved.
About the team:
Securities Finance Trading & Collateral is a market leader in delivering technology and services to the global Securities Finance & Collateral industry. The components of solution suite are designed to support the entire and complete value chain and processes of the Securities Finance and Collateral market. The global business has 200+ clients, both sell side and buy side institutions including Banks, Agent Lenders, Broker/Dealers and Asset Managers.
What you will be doing:
Investigate and resolve security findings across multiple versions of SFTC
Ensure false positives are properly explained to central security team and approved as false positives
Upgrade dependencies both Java as well as Typescript/Javascript libraries
Resolve security vulnerabilities in no longer supported open source libraries
Ensure any security related changes will not break existing functionality
What you will need:
At least 7+ year s hands-on professional experience in the Java enterprise environment.
Experience building enterprise financial solutions.
Experience with Agile and test-driven development.
Experience in working in a distributed global environment
Experience in investigating and resolving security related findings
Experience in upgrading and working with 3rd party open source dependencies
Very good expertise in Java SE/JEE, TypeScript
Very good expertise in software design patterns, integration patterns and enterprise architectural concepts.
Hands-on experience with Spring Framework and Middleware, JMS and JPA/Hibernate
Good understanding of web frontend technologies: Angular v2+, Observables, Redux
Experience integrating with Identity and Access Management (IAM) systems, with good understanding of concepts like OAuth, OpenID Connect and Single Sign-on
Adapting and integrating open-source frameworks and technologies
Very strong communication skills and fluent in English.
Team player, Willingness to take responsibility.
Passionate about software development
Added bonus if you have:
Experience with Integration Frameworks/Patterns (Apache Camel)
Understanding of Jenkins, Harness IO, Apache Kafka
What we offer you:
we hire the best. In return, you receive exceptional benefits including:
A varied, responsible job with a wide range of opportunities to contribute and to be innovative
A modern, international working environment in a committed and motivated team
What you will need:
At least 7+ year s hands-on professional experience in the Java enterprise environment.
Experience building enterprise financial solutions.
Experience with Agile and test-driven development.
Experience in working in a distributed global environment
Experience in investigating and resolving security related findings
Experience in upgrading and working with 3rd party open source dependencies
Very good expertise in Java SE/JEE, TypeScript
Very good expertise in software design patterns, integration patterns and enterprise architectural concepts.
Hands-on experience with Spring Framework and Middleware, JMS and JPA/Hibernate
Good understanding of web frontend technologies: Angular v2+, Observables, Redux
Experience integrating with Identity and Access Management (IAM) systems, with good understanding of concepts like OAuth, OpenID Connect and Single Sign-on
Adapting and integrating open-source frameworks and technologies
Very strong communication skills and fluent in English.
Team player, Willingness to take responsibility.
Passionate about software development
What you will be doing:
Investigate and resolve security findings across multiple versions of SFTC
Ensure false positives are properly explained to central security team and approved as false positives
Upgrade dependencies both Java as well as Typescript/Javascript libraries
Resolve security vulnerabilities in no longer supported open source libraries
Ensure any security related changes will not break existing functionality
Disclaimer:
The job location mentioned in this description is based on publicly available information or company headquarters. Candidates are advised to verify the exact job location directly with the employer before applying.