A leading global sports betting and gaming company, significant operations in Sofia's tech hub, and a focus on innovative customer-facing platforms seeks a Security Application Analyst. This role bridges software development and cybersecurity, ideal for developers transitioning to secure coding practices.
Role Overview
Join the Sofia cybersecurity team to perform security assessments on customer-facing applications. Focus on vulnerability management, code reviews, and compliance in a regulated betting environment.
Collaborate with developers to embed security in Agile workflows, minimizing risks across Java, .NET, Python, and PHP stacks.
Key Responsibilities
- Conduct SAST, DAST, and penetration testing using tools like Checkmarx, Burp Suite, OWASP ZAP, and Snyk.
- Review code, manage SCA for third-party libraries, and integrate security into CI/CD pipelines with Jenkins or Azure DevOps.
- Investigate incidents, support SOC operations, and ensure PCI DSS/ISO compliance while educating developers on OWASP Top 10 risks.
Required Qualifications
- 3+ years in software development (Java, .NET, Python, PHP) with transition to application security.
- Proficiency in SAST/DAST tools (SonarQube, Veracode, Semgrep), WAF configuration, and runtime monitoring (Contrast Security).
- Knowledge of secure frameworks (Spring, ASP.NET), Unix systems, and regulated industry standards.
Preferred Skills
- Experience with secrets detection, IaC security, and container scanning in gaming/betting sectors.
- Certifications like CSSLP, OSCP, or Security+; strong problem-solving and team collaboration.
- Familiarity with GitHub Actions and threat modeling.
What We Offer
Competitive salary, hybrid work in Sofia's tech hub, and growth in global cybersecurity operations. Apply if you thrive at the dev-sec intersection.
If you are interested in this challenging position we are looking forward to receiving your comprehensive application for
ref.no. 110.597 preferably through our
ISG career portal or via email.
Visit isg.com/jobs/search - here you can find new job offers every day.