Verified today
Specialist, Application Security
About the role
Security team at Pearson focuses on embedding robust protection into all software products. The Specialist conducts secure code reviews, penetration testing, and integrates security controls into CI/CD pipelines while collaborating with engineers to design secure authentication and authorization. Works from Bangalore with a hybrid model, offering training sessions and risk assessment guidance.
What you’ll do
- Perform secure code reviews, dependency analysis, and dynamic security testing across applications
- Conduct manual security assessments and penetration testing to identify vulnerabilities
- Integrate security best practices into SDLC and CI/CD pipelines
- Collaborate with engineering teams to design and implement secure‑by‑design applications
- Design and implement robust authentication and authorization mechanisms
- Drive adoption of modern application security frameworks and practices
- Deliver secure coding training sessions and awareness programs for developers
- Conduct risk assessments and provide actionable mitigation recommendations
What you’ll bring
- 6+ years combined software development and application security experience
- Hands‑on with SAST, DAST, and SCA tools
- Proficiency in Python, Java, or JavaScript
- Knowledge of OWASP Top 10, NIST, and CIS frameworks
- Strong grasp of cryptography, authentication, and authorization protocols
- Familiarity with cloud and container security (AWS, Azure, Kubernetes)
- Industry certifications such as OSCP, OSWE, GWAPT, eWPT, CISSP, CSSLP, or CEH
Education
Bachelor's degree in Computer Science, Cybersecurity, or related field