Company

AllstateSee more

addressAddressBelfast, County Antrim
CategorySecurity

Job description

About Us

 

The world isn’t standing still, and neither is Allstate. We’re moving quickly, looking across our businesses and brands and taking bold steps to better serve customers’ evolving needs. That’s why now is an exciting time to join our team. You’ll have opportunities to take risks, challenge the status quo and shape the future for the greater good.

 

You’ll do all this in an environment of excellence and the highest ethical standards – a place where values such as integrity, inclusive diversity and accountability are paramount. We empower every employee to lead, drive change and give back where they work and live. Our people are our greatest strength, and we work as one team in service of our customers and communities.

 

Allstate operate a very flexible hybrid working policy that will allow you to design your working week in collaboration with your manager with a blend of remote and office working for NI based employees as well as condensed working patterns (4 day week/9 day fortnight). Employees based in GB will be employed on a permanent remote working contract.

 

Join our team and you’ll find challenge and reward in a culture of innovation, support and balance. 

 

 

Location

 

 

Northern Ireland/ Remote, GB

 

 

Your role in the team

 

Allstate Technology & Strategic Ventures (ATSV) team is embarking on a journey to integrate security inside the software development lifecycle. 

 

Product Security is tasked to develop a security framework within the Allstate SDLCs, establish a software security assurance process, and work with product delivery teams to build applications securely from start to finish. 

 

The Product Security Engineer will be responsible for integrating security into the development of Allstate’s applications. The Product Security Engineer will work closely with the product and software development team to threat model and vulnerability scan the early software, system, and network architecture and identify required control points in the application stack. The Product Security Engineer will also work closely with developers to diagnose, document, and remediate application security vulnerabilities. The Product Security Engineer will also be responsible for evaluating, recommending, and implementing application security related software in an automated continuous integration/deployment environment.

 

 

 

Responsibilities include (but are not limited to):

 

  • Work closely with application development and platform teams to help formulate and implement a strategy for software security that is tailored to the specific risks facing the organization, including threat modeling and application security advisory services. 
  • Develop and maintain a balanced application security program based on a well-defined application security framework. 
  • Conduct application security assessments and implement tools for dynamic/automated code reviews. 
  • Ensure application design and implementation best-practices with role-based and appropriate access standards, as well as integration with Identity and Access Management environments. 
  • Ensure compliance with society, regulatory, and industry standards for application security. 
  • Continuously evaluate the organization’s existing application security practices, define and measure security-related activities, and demonstrate concrete improvements to the application assurance program within the organization. 
  • Provide secure application development training to developers and provide guidance on the development of web-based training for ongoing awareness. 
  • Conduct manual code reviews. 
  • Develop and maintain unit and integration tests designed to ensure security controls are tested on every build. 

 

 

 

An Ideal Candidate Must:
 

  • Be creative, organized, responsive, and highly thorough problem solver. 
  • Possess strong business acumen with ability to work with application development, testing, and security teams. 
  • Have strong self-starter who has the ability to operate independently. 
  • Have solid understanding and experience with establishing software development policies across an organization. 
  • Have excellent oral/written presentation skills with ability to communicate effectively with senior executive leadership, proficiency in preparation of presentations, analytical reports, and documents regarding program operational status, achievement, and performance. 

 

 

 

 

So, what are the essential criteria to apply?

 

  • All candidates must evidence an existing right to work in the UK'
  • 5+ years’ experience in a secure software development field such as Software Developer, Software or Application Security Engineer
  • Fluent in at least one of the following development languages:  C#, C++, Java, .NET, Node.js, or Python in a cloud environment. 
  • Possess a strong understanding of application architectural patterns, such as MVC, Microservices, Event-driven etc. 
  • Deep understanding of the OWASP Top 10. 

 

 

 

 

We also have some desirable criteria

 

  • Understanding and passion for Agile/XP/Scrum/Kanban. 
  • Understanding of Test-Driven Development built on User Stories. 
  • Understanding of Continuous Integration/Testing/Delivery/CI/CD/Jenkins. 
  • Familiarity with Metasploit, Burp Suite, Fuzzing.  
  • Familiarity with code reviews and penetration testing. 
  • Experience working in a PCI-compliant environment. 
  • OSCP, OSCE, OSWE, CEH, CSSLP or GWAPT Certifications are a plus. 

 

 

 

What we offer

 

As Digital DNA’s Workplace of the Year 2020 & 2022 winners, we offer a generous benefits package that includes flexible annual leave entitlement, dental and healthcare insurance, an attractive pension package and discounts on gym memberships, public transport and parking.

 

Allstate invests heavily in your development, as an employee you will have access to multiple world-class learning platforms and courses from our award-winning in-house Learning & Development team.

 

We pride ourselves in providing clear career paths and opportunities for internal mobility allowing you to further develop within the organisation.

 

We encourage a better work life balance and you’ll have the opportunity to apply for various flexible working arrangements.

 

 

Statement on Fair Employment and Equal Opportunities

 

Allstate NI wishes to ensure equal opportunity is given to all job applicants.  This company will not discriminate on the grounds of race, gender (including gender reassignment status), sexual orientation, religious belief, political opinion, marital status, age or disability.

 

We are an equal opportunities employer. We welcome applications from all suitably qualified persons. However, as women are currently under-represented in our workforce, we would particularly welcome applications from women. All appointments will be made on merit.

 

Applicants should note Allstate NI complete AccessNI background checks on all candidates offered a position.

 

 

The closing date for receipt of applications is Wednesday 31st January 2024

 

#LI-Remote

#LI-SP1

 

 

Benefits

Career development, Flex hours, Insurance, Startup environment
Refer code: 2632648. Allstate - The previous day - 2024-01-27 06:08

Allstate

Belfast, County Antrim
Jobs feed

Assistant Urban Designer

Penguin Recruitment

Leeds, West Yorkshire

£22,000 - £30,000/annum

Mental Health Support Worker

Rocasa Consulting

Bristol, Bristol

£24,620/annum

Support Worker

Workforce Personnel

Birmingham, West Midlands

£11.98 - £15.93/annum

Marketing and Fundraising Assistant

Autism Unlimited

Christchurch, Dorset

£24,335 - £24,336/annum

Mental Health Social Worker

Caritas Recruitment

Rotherham, South Yorkshire

£33.12/hour expenses

SEND Learning Support Assistant in Brierley Hill

Teacheractive

West Midlands, England

£83.40 - £94.23/day

Mental Health Social Worker

Leaders In Care

Swinton, Glasgow City

£30 - £33/hour

Senior Support Worker - Thatcham RG18

Keys Group Ltd

Thatcham, Berkshire

Sessional Optometrist

Seeability

London, England

£250/day

Behaviour Support Practitioner

Akton Resourcing Ltd

Enfield, Greater London

£23/hour

Share jobs with friends