Pwc
SecureSoftware/AppSecConsultant
Neural analysis suggests this role is
optimal for Senior Associate candidates.
“Secure Software/AppSec Consultant at Pwc. Skills: Secure Software Consultant, code reviews, DevSecOps practices, threat modelling, architectural reviews, software development skills, identify vulnerabilities, recommend secure coding practices, robust security measures, software development lifecycle (SDLC). performing code reviews. supporting DevSecOps practices”
What You'll Achieve.
enhancing the security posture of our clients' software; driving the implementation of robust security measures throughout the software development lifecycle; minimise the risk of a cyberattack; protect their data
Industry & Context.
analytical and problem-solving skills
Travel Requirements: Up to 20%, Available for Work Visa Sponsorship? No, Government Clearance Required? Yes
What They're Looking For.
Must Have
Bachelor's degree in Computer Science, Information Technology, or a related field., Minimum of 2 years of experience in software development., Proficiency in Dutch and English is a must, Proficiency in Java,. NET, and JavaScript and popular front-end frameworks is mandatory., Solid understanding of software development lifecycle (SDLC) and agile methodologies., Basic knowledge of cybersecurity principles and practices., Familiarity with common security tools and platforms used in DevSecOps.
Nice to Have
Familiarity with other programming languages such as C, Swift, Rust, and PHP is a plus., Familiarity with Linux, Kubernetes and cloud-native architectures is a plus., Experience with secure coding practices and security frameworks (e. g. , OWASP)., Familiarity with cloud platforms and security considerations in cloud environments., Certifications such as Certified Secure Software Lifecycle Professional (CSSLP) or equivalent are a plus.
What You'll Do.
performing code reviews
supporting DevSecOps practices
conducting threat modelling
participating in architectural reviews
leverage software development skills to identify vulnerabilities
recommend secure coding practices
driving the implementation of robust security measures throughout the software development lifecycle
Conduct thorough and systematic code reviews to identify security vulnerabilities and ensure adherence to secure coding standards.
Collaborate with development teams to provide actionable feedback and recommendations for improving code quality.
Integrate security tools and practices into the DevOps pipeline to automate security testing and monitoring.
Assist in configuring and maintaining security tools
and work with teams to enhance security measures in CI/CD processes.
Perform threat modelling to identify and evaluate potential security threats and vulnerabilities within software applications.
Develop and communicate threat mitigation strategies to stakeholders.
Participate in architectural reviews to assess the design and structure of software applications for security risks.
Provide guidance on secure architectural patterns and best practices.
How You'll Work.
Team & Collaboration
Collaborate with development teams to provide actionable feedback and recommendations for improving code quality.; work with teams to enhance security measures in CI/CD processes.; Work closely with cross-functional teams including developers, IT, and product managers to support security initiatives.; Prepare and deliver reports and presentations on security findings, recommendations, and risk assessments.
Communication Scope
Excellent communication and interpersonal skills; Prepare and deliver reports and presentations on security findings, recommendations, and risk assessments.
Full Job Description
**Line of Service** Assurance **Industry/Sector** Not Applicable **Specialism** Assurance **Management Level** Senior Associate **Job Description & Summary** **Contribute to creating a better tomorrow** The only way we can tackle the challenges of this fast-changing world is with passionate people. Led by our purpose of building trust and solving important problems, we come together at PwC to address the biggest issues facing the world in a way that drives positive impact. Are you eager to join a team fuelled by open and curious minds? People who are passionate about their work and create new solutions for a new day? Then you’re at the right place. **Bring your talent. Learn new skills. Make a positive impact.** Want to delve into the intriguing world of cybersecurity? Our PwC Cybersecurity, Privacy & Resilience (CPR) team helps clients protect their data and minimise the risk of a cyberattack. The huge amount of data that’s generated and shared within and across organisations is increasingly valuable to businesses and to skilled cyber criminals. The exponential growth and sophistication of cyber threats has made an effective cybersecurity strategy a critical business requirement. Helping organisations with privacy compliance is also a crucial part of what we do. If you’re interested in working in a fast-paced, exciting field where you can really make a difference, join our diverse, fun and supportive CPR team on the front lines of cyber and privacy protection! **Your impact** As a **Secure Software Consultant,** you will play a vital role in enhancing the security posture of our clients' software by performing code reviews, supporting DevSecOps practices, conducting threat modelling, and participating in architectural reviews. You will leverage your software development skills to identify vulnerabilities and recommend secure coding practices, thereby driving the implementation of robust security measures throughout the software development lifecycle. * **Code Revie
Applying for this Secure Software/AppSec Consultant role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Pwc?
Real rants from real employees. Read before you apply.