Share this Job

Job Title:  Senior APP Information Security

Location: 

ZonAmerica, Montevideo, UY

Remote Options (if applicable): 

Req ID: 58472

Job Family: Information Technology/Software Development

 

Sabre Corporation is a leading technology provider to the global travel and tourism industry. Headquartered in Southlake, Texas, USA, Sabre operates offices in approximately 60 countries around the world. At Sabre, we make travel happen. Positioned at the center of the business of travel, our platform connects people with experiences that matter in their lives. Today, Sabre is creating a new marketplace for personalized travel. It is our people who develop and deliver powerful solutions that meet the current and future needs or our airline, hotel and travel agency customers. Join our journey! 

Job Description

 


Reports to the Application Security Team Lead in Sabre’s Risk and Security organization. The ideal candidate is looking for a growth opportunity in the field of Application Security. 
 

Under general direction from the Application Security team lead,the Application Security Specialist will:

  • Primarily consult on the remediation and/or mitigation of systems/application vulnerabilities, review application mitigation proposals, and work on application security program automation efforts 
  • Onboard, test, operate, and analyze information security tools/systems for application vulnerabilities following established standards and baselines (OWASP, SANS, CERT, etc.)
  • Coordinate with development teams, DevOps, or third parties to conduct application security testing throughout the SDLC and CI/CD cycles
  • Possess general knowledge of secure coding & application security techniques and/or methodologies
  • Recommend and develop security measures to protect applications and data against unauthorized access, modification, or loss
  • Effectively collaborate with 3rd party resources or vendors to accomplish objectives 
  • Support and provide accurate and factual metrics & reporting to the team lead, director, developers, and application owners
  • Identify and communicate practical risk regarding application security vulnerabilities to both technical and non-technical audiences

 

Job Requirements


EDUCATION: Bachelor’s Degree preferred.

 

EXPERIENCE: Minimum 4 years IT software development related experience with 2 years application
security experience.

 

  • Has experience with global outsourcer (general IT, development, or security services) and prior software testing and scripting/development skills
  • Has conducted code reviews and has experience discussing code design/methods with developers
  • Has familiarity with security terminology and vulnerability bug classes
  • Has written and debugged script code
  • Has excellent written and verbal communication skills required
  • Has experience in software quality assurance, vulnerability assessment and testing, audit
  • remediation programs, and application-based access controls
  • The ideal candidate will be a self-motivated, critical thinker, who is a continuous learner and has the
  • following experience and skills:
  • Strong software testing and/or application scripting/development background
  • Strong experience in SDLC, CI/CD, and DevOps processes
  • Experience with IAST/SAST/DAST/SCA scanning using Veracode or similar scanning tools
  • Experience with SCA (open source) scanning
  • Practical experience and/or certification in app pen testing/ethical hacking
  • Ability to handle multiple operational and/or project assignments and prioritization of short and long-term tasks
  • Application inventory management; Change management; Application vulnerability management; Vulnerability remediation/mitigation consulting
  • Veracode, Sonatype Nexus, ServiceNow, Linux & Windows, SQL, Burp Suite; Visual Studio, Eclipse, IntelliJ, Kubernetes, GCP
  • Java, .Net, C#, C++, PHP, Python, Curl, JavaScript and other general scripting

Benefits

 

  • Annual Performance bonus plans
  • Development opportunities in country or globally
  • We offer a competitive private health insurance for employees and eligible children 
  • Extra Paid Time Off (5 extra days each year) 
  • 3 month paid parental leave (12 weeks for fathers/ 18 weeks for mothers)  
  • Daily meal allowance
  • Life Insurance 
  • Corporate Social Responsibility opportunities
  • Recognition and acknowledgement programs
  • Fun employee engagement and development events

 

We will give careful consideration to your application and review your details against the position criteria. You will receive separate notification as your application progresses. Please note that only candidates who meet the minimum criteria for the role will proceed in the selection process.

This job posting comprises the law No 19691 and its decree No 73/019, which includes the people registered in the National Register of disabled people who have the skills and aptitude for the position described in the present posting.

Join our life community at Sabre by following us on Twitter, Facebook and LinkedIn

Facebook Twitter LinkedIn

 

#LI-SABRE

#LI-Hybrid

 


Job Segment: Information Security, Testing, CSR, Open Source, Quality Assurance, Technology, Management