Application Security & Compliance Engineer
Must hold Information security certification: SSCP, GIAC GCUX, GSEC, GCED, GCIH, GCIA.
Experience managing enterprise-level security compliance standards and regulations (ISO 27001, PCI DSS, SOC, FISMA, FedRAMP, HIPAA, GDPR).
Demonstrated expertise in securing Salesforce applications.
Experience with authentication and authorization frameworks, such as SSO, SAML, OAuth.
Proficiency with secure transport protocols, such as SSL and TLS.
Experience with Identity and Access Management (IDAM) solutions, including certificates and Public Key Infrastructure (PKI).
Expertise in vulnerability management for Salesforce application environments, including related processes and procedures.
Proficiency in web application programming (JavaScript, SQL) and OWASP.
Experience using vulnerability scanning tools for both cloud and on-premises environments, such as Qualys, Nessus, Rapid7, Cloudaware, Redlock, WhiteHat, Burp Suite, Netsparker.
Must hold Information security certification: SSCP, GIAC GCUX, GSEC, GCED, GCIH, GCIA.
Experience managing enterprise-level security compliance standards and regulations (ISO 27001, PCI DSS, SOC, FISMA, FedRAMP, HIPAA, GDPR).
Demonstrated expertise in securing Salesforce applications.
Experience with authentication and authorization frameworks, such as SSO, SAML, OAuth.
Proficiency with secure transport protocols, such as SSL and TLS.
Experience with Identity and Access Management (IDAM) solutions, including certificates and Public Key Infrastructure (PKI).
Expertise in vulnerability management for Salesforce application environments, including related processes and procedures.
Proficiency in web application programming (JavaScript, SQL) and OWASP.
Experience using vulnerability scanning tools for both cloud and on-premises environments, such as Qualys, Nessus, Rapid7, Cloudaware, Redlock, WhiteHat, Burp Suite, Netsparker.