OSP logo

Cyber Security Specialist

OSP

Amsterdam
Full-time
5-10 years experience
Hybrid

Key Skills

Purple Team
Red Team
Blue Team
API Security
Application Security
Cloud Security
Vulnerability Assessment
Security Automation
OAuth
JWT
mTLS
OWASP Top 10
MITRE
Akamai
Noname
Salt Security

Job Description

Cyber Security Specialist – Purple Team / API Security Location: Amsterdam, Netherlands Working Model: Hybrid Employment: Full-time employment with Open Solution Providers (OSP) Assignment: Long-term assignment with a leading private-sector financial & banking institution About the Role Open Solution Providers (OSP) is looking for an experienced Cyber Security Specialist to join a long-term client assignment with a leading financial and banking institution in the private sector, based in Amsterdam. We are looking for a security professional with strong Purple Team experience, or a profile with a clearly demonstrated split of approximately 60% Red Team and 40% Blue Team expertise. The successful candidate will work across offensive and defensive security disciplines, with a particular focus on API Security, Application Security and Cloud Security. You will play an important role in identifying vulnerabilities, assessing security risks, strengthening security controls and translating security requirements into practical policies, automation and security guardrails. You will work closely with engineers, architects and security specialists to ensure that APIs and applications are secure, resilient and aligned with organisational security requirements. Key Responsibilities Assess and strengthen the security of APIs and application environments. Perform offensive security activities, vulnerability identification and security testing. Apply defensive security principles to improve detection, prevention and remediation. Translate security standards, controls and best practices into practical security policies. Develop and implement automated security guardrails and business rules. Analyse API and application security findings and assess their severity and criticality. Identify opportunities to improve security controls based on offensive security findings. Work closely with engineering, architecture and security teams. Contribute to API Security strategy, standards and governance. Support the organisation in maintaining secure and resilient digital platforms. Translate complex security requirements into practical and actionable technical solutions. Take ownership of security initiatives and drive them through to implementation. Mandatory Technical Skills & Experience The successful candidate must have strong practical experience across the following areas: Cyber Security & Architecture Strong understanding of cybersecurity principles and security architectures. Strong experience in Cloud Security. Strong understanding of Application Security Architecture. Proven Purple Team experience, or a demonstrable 60% Red Team / 40% Blue Team skillset. Strong understanding of offensive and defensive security practices. API & Application Security Deep expertise in API Security. Strong expertise in Application Security. Strong knowledge of: OWASP Top 10 MITRE CVE Experience assessing API and application vulnerabilities and translating findings into practical security improvements. Authentication & Authorisation Strong hands-on knowledge of: OAuth JWT Session Management mTLS Object-Level Authorisation Attribute-Level Authorisation API Security Platforms Hands-on experience managing or working extensively with at least one of the following API Security platforms is mandatory: Akamai Noname Salt Security Cequence Security Policy & Automation Ability to translate complex security requirements into practical platform policies. Experience implementing automated security guardrails. Ability to translate security findings into actionable improvements to security policies and business rules. Strong analytical capability when assessing security findings, risk and criticality. Professional Profile We are looking for someone who combines strong technical security expertise with a pragmatic, delivery-focused approach. You should have: Strong analytical and problem-solving skills. Excellent communication skills. A proactive mindset. The ability to work independently and take ownership. The ability to communicate effectively with engineers, architects and security specialists. Experience operating in complex enterprise environments. A collaborative mindset and the ability to work effectively across both offensive and defensive security functions. Assignment & Employment This is a full-time position with Open Solution Providers (OSP). You will be employed by OSP and placed on a long-term assignment with our client, a leading financial and banking institution in the private sector. If you are an experienced Cyber Security Specialist with strong Purple Team, Red Team/Blue Team, API Security and Application Security expertise, we would like to hear from you. Please ensure your CV clearly highlights your experience with Purple Team / Red Team / Blue Team, API Security, Application Security, Cloud Security, OWASP, MITRE, OAuth, JWT, mTLS, and Akamai Noname, Salt Security or Cequence.

Core Responsibilities

The specialist will assess and strengthen the security of APIs and application environments by performing offensive and defensive security testing. They will also translate complex security requirements into practical policies and automated guardrails while collaborating with engineering and architecture teams.

Requirements

Candidates must have strong practical experience in Purple Team operations, API security, and cloud security architectures. Proficiency in security standards like OWASP and MITRE, along with hands-on experience in API security platforms, is mandatory.

About OSP

Industry: IT Services and IT Consulting

Company size: 11-50 employees

IT moet flexibel, beheersbaar en betrouwbaar zijn en zich volledig kunnen herstellen bij een calamiteit. Data is namelijk van onderscheidend belang voor elke organisatie. Hiervoor is een IT-partner nodig die tot het uiterste gaat. Specialisten die stuk voor stuk gedreven zijn door technologie. Niet loslaten tot het IT-doel bereikt is. En met minder geen genoegen nemen. Zodat uw organisatie klaar is voor morgen. OSP is al meer dan 30 jaar een vooruitstrevende IT-partner, gedreven door een team van zeer ervaren IT-professionals die een passie voor IT-technologie delen. We zijn gespecialiseerd in het leveren van specialistische kennis, naast hulp en advies bij multi cloud infrastructuur, dataopslag, -protectie, beheer en ransomware uitdagingen. Het doel is om de IT-kosten te verlagen naast de beschikbaarheid, betrouwbaarheid en beheerbaarheid te verbeteren. Dit is waar wij voor staan: - Passie voor IT - Hoge mate van kennis en expertise - Onafhankelijk advies - Commitment en ownership - Pragmatisch en resultaat gedreven - Integriteit en betrouwbaarheid - Flexibiliteit en transparantie Het begint altijd met de zoektocht naar wat de klant nodig heeft. We kijken naar het beleid en de doelstellingen van de organisatie. Het gaat niet alleen om de keuze voor een technologie, maar ook om mensen en processen. We laten klanten door de bomen het bos weer zien, zodat ze goede beslissingen kunnen nemen. Daarna kunnen wij helpen met de implementatie en de migratie. Vaak coördineren we dat soort projecten. Nadat we de sleutels van de oplossing weer hebben overgedragen, blijven we meestal betrokken door middel van proactieve support, updates, trainingen en troubleshooting.

Added Today