Senior Application Security Consultant
Found on jobs.orangecyberdefense.com Ā· last checked 2 days ago
About this role
Description from Orange Cyberdefense Netherlands's career page
Assessment and Advisory
Ā·
Antwerp, Brussels, Ghent
Ā·
Hybrid
Senior Application Security Consultant
Apply for this job
Position summary
As a Senior Application Security Consultant, you help organisations integrate security throughout the Secure Software Development Lifecycle (SSDLC) while ensuring alignment with governance, risk and compliance frameworks such as NIS2, DORA, ISO/IEC 27001 and OWASP ASVS. You combine deep application security expertise with strong advisory capabilities and can translate technical risks into business-oriented recommendations.
Key Responsibilities
- Lead Application Security Assessments and Secure Architecture Reviews.
- Facilitate Threat Modelling and Architectural Risk Assessments (ARA).
- Support the implementation and continuous improvement of SSDLC and DevSecOps practices.
- Define and review secure coding standards and security requirements.
- Assess applications against OWASP ASVS and other recognised standards.
- Advise development teams, architects and business stakeholders on secure design.
- Contribute to application security governance, policies and roadmaps.
Required Technical Expertise
- OWASP ASVS, OWASP Top 10, OWASP SAMM
- Threat Modelling (STRIDE)
- Risk Assessments (FAIR or an equivalent industry-recognized risk assessment framework)
- Secure Software Development Lifecycle (SSDLC)
- Application Security Architecture
- API Security
- DevSecOps and CI/CD Security
- Cloud Security (Azure and/or AWS)
- Identity & Access Management.