Job Description :
Job Title:Cyber Security Architect
Request Type: C2C
Work Location: Daimler Financial, Farmington Hills
City & State: Farmington Hills, Michigan
 
THis is an onsite position.
 
Job Description:
 
Objectives of the position
Providing a secure and trustworthy customer journey is one of our most important objectives. In order to expand our cybersecurity capabilities, Daimler Financial Services (DFS) is seeking an Architecture Security Specialist to execute the global AE strategy consistently across the region. The Application Security Specialist will report directly to the DFS Architecture and Engineering Lead.
The main objective for the Architecture Security Specialist is to deploy and operate application security capabilities, solutions and requirements, and Secure Profiling Services to DFS Critical applications. This includes code reviews and application focused attack and penetrating testing to support the identification and remediation of application-level vulnerabilities to meet DFS' risk management needs and business requirements.

Description of tasks
Key task Time (in %)
Application Security: Deploy and operate application security capabilities, solutions and requirements consistently across the region.
• Systemically identify and document application level vulnerabilities
• Communicate identified vulnerabilities and recommended mitigation strategies
• Coordinate with the markets and monitor remediation activities.
• Provide guidance and recommendations for remediating application vulnerabilities
• Track and report on remediation status.
• Facilitate and deliver targeted application security training.
Secure Profiling Service:
• Identify and document threats using STRIDE and other DFS techniques for critical applications
• Provide recommendation for the identified threats
• Coordinate and Maintain the list of remediation activities
 
 
Bachelor’s or Master’s degree in Computer Science, Information Systems, Engineering, Information Security, Cybersecurity or a related field is required.
• Must have knowledge on interpreting architectural blueprints for Datacenter and Cloud (IaaS, PaaS, SaaS etc.).
• Experienced in Threat Modelling including creation of Data Flow Diagrams
• Advanced ability to identify security vulnerabilities form source code reviews and application & Infrastructure testing.
• Highly proficient in the configuration and deployment of applications in complex environments.
• Working knowledge of NIST, Open Web Application Security Project (OWASP) and Open Source Security Testing Methodology Manual (OSSTMM).
• Solid ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means.
• At least one of the following certifications is required: CISSP, CSSLP, or ISSAP.
             

Similar Jobs you may be interested in ..