Application Security Analyst
At adidas, our love for sport drives who we are and what we do. But just as a ball is more than leather and thread, and a show more than padding and plastic, we are bigger than our products. We don't just work to create faster shoes and lighter fabrics. We strive to help athletes everywhere perform their best. We believe that it's hard work inventing the future of sport, and that's why we love it; that when you push your limits, you make it possible for others to push theirs.
We believe that through Sport, we have the power to change lives.
To change lives, we have to create direct relationships with consumers and the best way to accelerate building direct relationships is through Digital.
Application Security Analyst
PURPOSE
The selection, design, justification, implementation and operation of controls and management strategies to maintain the security, confidentiality, integrity, availability, accountability and relevant compliance of information systems with legislation, regulation and relevant standards.
KEY RESPONSIBILITIES - INFORMATION SECURITY
-
Contribute into Application Security research in Digital Area.
-
Contribute into internal Application Security projects (development, design, integration)
-
Implement standard global AppSec solutions.
-
Analyze security findings results.
-
Research and present solutions regarding latest application security trends.
-
Triage of registered vulnerabilities.
WHAT YOU CAN EXPECT
-
You will bring your ideas to life in a buzzing environment of highly engaged, multinational agile teams, who at their core build game-changing software products. Right there with you!
-
You will understand the full Secure SDLC process
-
You will work on the pipelines to implement Global Infosec Standards
-
You will work hands on with static and dynamic security scanners.
-
You will analyse findings and confirm true positives.
-
You will be continuously learning the latest tech from internal trainings, experienced colleagues, conferences, and trainings.
-
You will contribute to Application security team initiatives.
-
You will research and develop new tools to be internally used by Application Security team.
-
Over time, you will help some product teams to fix code vulnerabilities.
-
You will follow existing release process to enable developed features in live systems.
WHAT WE ARE LOOKING FOR
-
3+ Years of experience in development
-
Striving towards security in development.
-
Willingness to train and improve in Information security
-
CI/CD experience
-
Hands-on experience with at least one of Java, JavaScript, TypeScript or Python.
-
Experience with Docker and Kubernetes is a plus.
-
Experience in Information Security is a big plus.
-
Experience with bug bounty programs is a plus.
-
Motivation to never stop learning in Cyber Security and digital domain.
-
Strong interpersonal and communication skills. Fluent in English.
THOESE ARE YOUR TECHNOLOGIES
-
Market leader static code scanners
-
Market leader Dynamic Web app scanners
-
Languages: Java, JavaScript, TypeScript, Python
-
Container Orchestration: Kubernetes, Docker
-
CI/CD: Jenkins
-
Cloud platforms: AWS
-
ELK stack
-
Kafka
-
AKAMAI
WHAT IF I DON’T CHECK ALL THE BOXES?
Not a problem. At adidas, we’re keen to increase our team’s diversity of backgrounds and skills, and we’re more interested in the work you will produce than that work you’ve already produced in the past. If you’d love to work with us, then we’d love to hear from you
WHAT WE WANT TO OFFER
You will be part of a strategic program for adidas with a lot of opportunities to grow and reach your goals. Together and individually, we will fuel consumer obsession through latest technology. You will be working in a flexible and family friendly environment with open culture.
THROUGH SPORT, WE HAVE THE POWER TO CHANGE LIVES
Check out the adidas developer portal to see our latest projects, platforms and tech stacks: https://adidas.github.io/
adidas celebrates diversity, supports inclusiveness and encourages individual expression in our workplace. We do not tolerate the harassment or discrimination toward any of our applicants or employees. We are an Equal Opportunity Employer.