Offensive IT Security Expert

6 mesi fa


Milan, Italia ING A tempo pieno

Keeping the company safe, secure and compliant is a top priority at ING.

As part of the team, you will collaborate with different internal stakeholders to conduct Security assessments, support secure design and development practices, providing security subject matter expertise and education and instilling the core security mindset and culture. You will employ a combination of static and dynamic analysis methodologies to identify and remedy complex vulnerabilities across our products and services, as well as collaborating and communicating with security expert peers across to help implementing best practices across the engineering organization

Key Reponsabilities

You will examine chosen targets looking for vulnerabilities and weaknesses, assess applications for design related security risks and assist teams in determining appropriate remediation for identified issues; Provide secure code review by assessing reports generated using automated tools (eg Fortify, Checkmarks, etc); Provide subject matter expertise for specific application development scenarios; Provide security advice for tooling (mainly in the area of CI/CD); Participate in audit reviews – provide advice/challenge when/if required; Define & maintain the relevant Software Security processes: Document and improve local software security processes; Bridge the gap between global best practices from inside and outside of the organization with the internal way of working;

– Knowledge on the following but not limited to:

Static Application Security Testing – eg Fortify, Checkmarks, etc; Dynamic Application Security Testing – eg Burp Suite, Acunetix, Webinspect, etc; PenTesting - eg Kali, Metasploit, etc. What you’ll bring to the team

Knowledge and experience:

Experience with OWASP, static/dynamic analysis, and common security tools; Experience working within a Software Development Life Cycle; Familiarity with common security libraries, security controls, and common security flaws; Experience performing software security reviews and implementing security solutions; Familiarity with cloud security controls and best practices; Understanding of security engineering, system security, authentication and security protocols, cryptography, or application security; Prior experience with DAST and SAST software tools; Software development or scripting skills represent an advantage.

Requirement:

Excellent written and verbal communication skills – ability to explain technical solutions to both technical and non-technical audiences; Strong sense of ownership, urgency, and drive; Customer-focused and enjoy working as part of a team; Strong problem solving and analytical thinking - ability to diagnose and resolve ambiguous problems; Willingness to continuously improve skills; Willingness to support and coach less experienced members of you team; provide help when needed and criticize in a constructive manner.

Soft skills:

Passion for technology Excellence in execution Result oriented Teamplayer Problem solving Effective communication Able to work under pressure

Duration : Permanent

Work location:  Milan 

About ING

The benefits of joining ING

In addition to being a part of a great team, working in a fun and innovative environment, we offer:

Super flexible smart working Competitive base salaries and performance based bonuses Diverse cultures & Innovative mindsets International Environment Commitment to sustainability Lots of training development opportunities to help you grow Lots of moments dedicated to physical and mental well-being A special day off when it is your birthday: we call it #doyourbirthday And of course we can’t forget: free water & coffee at the office

Our Commitment

Diversity is a fundamental element of our corporate culture, and we are fully committed to creating a safe and inclusive environment, based on mutual respect and the value of diversity, offering equal job opportunities to all qualified candidates.



  • Milan, Italia 3240 Kyndryl Italia S.P.A. A tempo pieno

    Description We are seeking a Topic Leader for Kyndryl Offensive Security with a specialized focus on Mainframe and Cloud technologies including AWS, Azure, and Google Cloud. This role serves as the primary point of contact and subject matter expert within a global team dedicated to securing and testing complex computing environments. ...

  • IT Security Specialist

    4 settimane fa


    Milan, Italia Hunters Group A tempo pieno

    L’azienda che stiamo supportando nella ricerca è uno tra i maggiori player in ambito assicurativo, pagamenti digitali e moneta elettronica. Principali responsabilità: Stiamo ricercando un/una IT Security Specialist da inserire nella divisione IT. La risorsa dovrà assicurare l'implementazione delle politiche e procedure in materia di sicurezza delle...

  • IT Security

    2 settimane fa


    Milan, Italia Oliver James Associates Ltd. A tempo pieno

    Job Opportunities: IT Security-Audit, Risk e CompliancePer leader internazionale nel settore Financial Services in forte sviluppo sul panorama italiano, stiamo accelerando l'espansione della practice globale di IT Security strutturando ulteriormente il team che presidia i processi sul panorama nazionale.Considerando gli inserimenti multipli, il nostro...

  • IT Risk OPS Expert

    7 mesi fa


    Milan, Italia ING A tempo pieno

    The Senior IT Risk Analyst will be accountable for delivering all Risk Management activities within the CTO department. She/he will be responsible for tracking the remediation and efforts following the provided information, supporting stakeholders and aiding them in prioritizing those efforts through assessing the risk severity. The successful candidate...


  • Milan, Italia Sisal A tempo pieno

    About us:  Founded on the dream and insight of three sports journalists in 1945, Sisal was the first Italian company to operate in the gaming and betting industry as a government licensee.  Sisal is now part of , the world’s largest online sports betting and gaming operator with a portfolio of globally recognized brands and a constituent of the FTSE...


  • Milan, Italia Technical Hunters srl A tempo pieno

    L’azienda che stiamo supportando nella ricerca è uno tra i maggiori player in ambito assicurativo, pagamenti digitali e moneta elettronica.Luogo di lavoro: MilanoStiamo ricercando un/una IT Security Specialist da inserire nella divisione IT.Principali responsabilitàLa risorsa dovrà assicurare l'implementazione delle politiche e procedure in materia di...


  • Milan, Italia Sinergidea srl A tempo pieno

    Sinergidea un azienda italiana specializzata nel settore IT/ICT con competenza ed esperienza acquisite grazie a collaborazioni instaurate con realt attive in diversi settori come Banking Finance Industry Automotive Utilities Energy. Ci distinguiamo sul mercato per i nostri servizi di consulenza e per le nostre soluzioni IT in area Digital Payments....


  • Milan, Italia Sun Chemical A tempo pieno

    ABOUT THE ORGANIZATION   Sun Chemical, a member of the DIC Group, is a leading producer of packaging and graphic solutions, color and display technologies, functional products, electronic materials, and products for the automotive and healthcare industries. Together with DIC, Sun Chemical is continuously working to promote and develop sustainable...


  • Milan, Italia Lonza A tempo pieno

    Today, Lonza is a global leader in life sciences operating across three continents. While we work in science, there’s no magic formula to how we do it. Our greatest scientific solution is talented people working together, devising ideas that help businesses to help people. In exchange, we let our people own their careers. Their ideas, big and small,...


  • Milan, Italia Fineco Bank A tempo pieno

    PrintCompany DescriptionFineco Bank is a leading European bank with a 20 years history and a fully digital DNA with a branchless approach since the start. Fineco is one of the banks with the widest products range available. We have developed a truly one-stop-solution which includes trading, investment and payment services. We have developed a 100%...

  • Security Manager

    4 mesi fa


    Milan, Italia Pinkerton A tempo pieno

    Job Summary: The Security Manager, assigned to one of Pinkerton's largest global clients, will support the delivery and implementation of all elements of the corporate security program at client locations within a defined area of responsibility. The Manager responds to, escalates, and tracks operational security concerns though to completion while...


  • Milan, Italia Moncler Spa A tempo pieno

    For our Moncler IT Department, we are seeking a PMO to join the Worldwide Information Security & Technology team based at our HQ in Milan. Your impact: The PMO will report directly to the Chief Information Security Officer and will focus specifically on security and technology-related projects, ensuring alignment with strategic goals and compliance with...

  • Security Engineer

    2 mesi fa


    Milan, Italia Cleafy A tempo pieno

    Cleafy is a SaaS company, a team of fraud hunters, cybersecurity experts, data scientists, and software engineers that since 2014 share the same dream: make technology a safer place.Every day, we work side by side with our customers to help them safely navigate digital opportunities, while growing their business.Cleafy has recently secured a €10 million...


  • Milan, Italia ING A tempo pieno

    The role is accountable for advice, awareness, planning and monitoring of all the activities related to IT & Cybersecurity Risk controls compliance. It is a role actively motivated to engage stakeholders in the implementation of controls and ensure the IT & Cybersecurity Risk impacts have been identified and prioritized in his/her tribe’s backlog. Tribes...

  • Director IT Operations

    4 settimane fa


    Milan, Italia Canonical - Jobs A tempo pieno

    Experis Executive is looking for a Director IT Operations. The Director IT Operations leads a highly-collaborative and results-oriented IT team tasked with delivering global IT services across the company. He/She is responsible for scaling, increasing performance, and providing a great team member experience to drive business success based on world-class...


  • Milan, Italia ING A tempo pieno

    Are you a young graduate with global ambitions eager to develop your leadership potential? ING offers you the chance to make the absolute most of your talent on a traineeship within the bank: the International Talent Programme (ITP). During the course of the traineeship ING will invest in your future now to develop the leaders of tomorrow. At the...


  • Milan, Italia Hunters Group A tempo pieno

    Azienda leader della consulenza informatica e strategicaPrincipali responsabilità:Lavorerai con tecnologie innovative su progetti entusiasmanti, sviluppando soluzioni per gestire i dati in modo sicuro. In particolare, potrai:Effettuare network security assessment su reti complesse e realtà internazionali aiutando i nostri clienti ad identificare i gap di...


  • Milan, Italia Deloitte A tempo pieno

    What impact will you make? Experienced - SAP Security | Cyber Application Security - Risk Advisory We are seeking Consultant/Senior Consultant to join the Application Security Team at Deloitte Risk Advisory in Milan, Rome, Bologna, Turin, working in a Hybrid mode.The Application Security business supports our clients in identifying solutions and...


  • Milan, Italia BFF Banking Group A tempo pieno

    BFF Bank spa è una realtà bancaria presente sul mercato da circa 40 anni, quotata in Borsa Italiana e in continua crescita ed espansione. È il più grande operatore di finanza specializzata in Italia, nonché leader in Europa nella gestione e nello smobilizzo pro soluto di crediti commerciali vantati nei confronti delle Pubbliche Amministrazioni. Il...


  • Milan, Italia IBM Computing A tempo pieno

    IBM Data & Application Security Leader in Milano, ItalyIntroductionAs the Italy Data & Application Security Consulting Leader, you will play a pivotal role in shaping and delivering world-class security consulting services to our clients. Your responsibilities will include leading a team of experienced consultants, engaging with clients to understand their...