Experience 5 plus Years across multiple Middleware Technologies
Responsibilities
- Define and maintain secure configuration baselines for enterprise middleware platforms
- Collaborate with middleware SMEs to establish security standards and configuration requirements
- Design and implement automated compliance checks and configuration scanning controls
- Provide remediation guidance to IT Service Owners for identified configuration and control gaps
- Ensure configuration compliance data is shared with relevant governance and baseline management teams
- Define and maintain the middleware capability strategy in collaboration with Architecture Security and Control Owners
- Maintain and prioritize the capability backlog based on business value security risk and operational objectives
- Evaluate new technologies and practices that may affect middleware capabilities or the control environment
- Monitor platform capability performance through agreed indicators metrics and management reporting
- Provide technical oversight of control issues including assessment of control defect severity
- Collaborate with Service Owners to understand service performance exceptions customer feedback and improvement roadmaps
- Work with Technology and Platform Owners to address service health technical debt vulnerabilities and significant defects
- Lead delivery partners and technical teams to achieve platform security and capability objectives
- Engage stakeholders across the organization to understand security requirements and expectations
- Drive continuous improvement of middleware security compliance service quality and platform resilience
To be successful in this role you should have
- 5 years of indepth experience across multiple enterprise middleware technologies
- At least 2 years of experience leading or managing a technical team
- Strong knowledge of middleware platform security and secure configuration practices
- Experience defining and implementing secure configuration baselines
- Strong understanding of Center for Internet Security CIS Benchmarks
- Experience with configuration compliance scanning control assessments and remediation
- Strong stakeholder management and crossfunctional collaboration skills
- Ability to translate complex technical and security concepts into businessfriendly language
- Strong capability strategy backlog prioritization and roadmap management experience
- Excellent analytical troubleshooting and problemsolving skills
- Customerfocused consulting and service management approach
- Ability to adapt to changing priorities and empower technical team members
- CISSP or a similar cybersecurity certification is desirable
Skills
Mandatory Skills : Application Security (application security framework/ threat modelling/ Secure SDLC/ DevSecOps/Application Security Architecture Review), Application Security DAST & Penetration Testing - review/ Implementation/ Scanning/ Secure Code Review/ OWASP/ Remediation Advisor/ Secure SDLC