Senior Application Security Analyst
This is a hybrid role. As a Senior Application Security Analyst, the individual will be responsible for conducting in-depth security assessments, identifying vulnerabilities, and implementing security controls to protect applications from potential threats. The role involves analysing application code and performing security testing. It also involves collaborating with development teams to improve security issues. The individual will play a necessary part in enhancing the security posture of applications and ensuring compliance with relevant security standards and regulations. Reporting to the Head of Application Security, the individual will be part of the Security team.
- Conduct comprehensive security assessments, code reviews, and penetration testing of applications to identify potential vulnerabilities and security risks.
- Utilise industry-standard tools and methodologies to assess the security posture of applications and provide applicable recommendations for remediation.
- Promote a culture of security awareness among development teams and stakeholders through training sessions, workshops, and awareness campaigns.
- Educate colleagues on secure coding practices, threat mitigation techniques, and compliance requirements.
- Maintain detailed documentation of security assessments, findings, and remediation efforts.
- Create regular metrics on application security activities, vulnerabilities, and compliance status to stakeholders and management.
- Collaborate with development teams, architects, IT operations, and security stakeholders to integrate security into the software development lifecycle.
- Software Development Background (required)
- At least five years experience in a similar Information Security position (required)
- Customer-oriented person, with the ability to educate a technical audience on Application Security matters (required)
- Fluent in relevant development languages (Java, C/C++, PHP, .NET, or Python …) (required)
- Experience in the following areas: Security Test Management (required)
- Experience in Application Security Assessments (required)
- Experience in Security Assurance (required)
- Experience in Requirements Management (required)
- Knowledge of major frameworks and support libraries (SPRING, OSGI, ASP.NET ) (required)
- Experience with Agile Development (required)
- Experience in Vulnerability management (required)
- Experience in Continue Improvements (required)
- Experience in Penetration Testing (required)
- Experience in Security Evaluation & Functional Testing (required)
- Experience in Application Security Testing (required)
- Salary range for this role, based on experience level is 40,000 euro per annum
- Group Bonus Plan
- €100 monthly food vouchers
- Transport and utilities support
- 25 days' annual leave plus local public holidays
- 5 additional paid days off for volunteering, learning and Game Day in December
- Hybrid working with 2+ office days per week
- Fully remote working across August from anywhere in Bulgaria
- ShareSave scheme
- Life assurance and income protection
Entain is one of the world's largest sports betting and gaming entertainment groups and a FTSE 100 company. Formed when GVC Holdings rebranded as Entain in December 2020, its brands trace their history back to the 1880s and include bwin, Coral, Foxy, Gala, Ladbrokes and partypoker. Through its joint venture with MGM Resorts International, it powers BetMGM in the United States with its proprietary technology. Headquartered in London, Entain employs over 30,000 people with offices across 19 countries.
