A2Z-CM N.V. logo

Application Security Tester

A2Z-CM N.V.

Amstelveen
Contractor
5-10 years experience
Hybrid

Key Skills

Application Security
Secure Code Review
SAST
DAST
SCA
Cybersecurity
Cloud Security
Application Security Architecture
Security Assessments
Threat Modeling
Security Risk Assessment
Vulnerability Management
Secure Coding Standards
Stakeholder Management
Security Advisory
Risk Communication

Job Description

Introduction 36 hours per week Start date: ASAP End date: 30 June 2027 Extension is possible. Hybrid working ZZP is allowed. Job description Perform in-depth code reviews to validate security vulnerabilities and ensure secure coding practices across development teams. Ideal candidate has hands-on experience with application security tools, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA). Deliver Security Assessments , threat models, and architecture recommendations during application reviews and projects. Complete a minimum number of security assessments per quarter and directly contribute to reducing enterprise risks Requirements - Strong understanding of cybersecurity principles, cloud security, and Application Security architecture. - Ability to perform complex security assessments and translate findings into clear, actionable recommendations. - Conduct secure code reviews to identify vulnerabilities and recommend mitigations. - Assist in validating and prioritizing security findings for remediation. - Collaborate with development teams to ensure timely and effective vulnerability resolution Utilize and manage security testing tools (SAST, DAST, SCA). - Support the adoption of secure coding standards and best practices Hybrid work environment; on‑site presence in Amstelveen may be requested depending on assignments. The consultant must follow company security, compliance, and guidelines. 1) High degree of ownership, independence, and accountability. 2) Ability to simplify complex technical risks into business language. 3)Strong stakeholder management and advisory skills.

Core Responsibilities

Conduct in-depth code reviews and application security assessments, using SAST, DAST, and SCA tools to identify, validate, and prioritize vulnerabilities. Develop threat models and architecture recommendations, advise development teams on secure coding, and support timely remediation to reduce enterprise risk.

Requirements

The role requires strong knowledge of cybersecurity, cloud security, and application security architecture, along with the ability to conduct complex assessments and secure code reviews. Candidates should be independent and accountable, able to communicate technical risks in business terms, and skilled in stakeholder management and advising development teams.

About A2Z-CM N.V.

Industry: Business Consulting and Services

Company size: 51-200 employees

A2Z-CM is an independent private company founded in 2012 with offices in Amsterdam and United Kingdom. A2Z-CM is a vendor-neutral, fully-compliant company offering consultancy services, contract management and international brokering to suppliers and agencies in the Netherlands and other countries according to the principle of think global, act local. The A2Z-CM team assist clients by analysing their organisational issues and implementing realistic and cost-effective development plans. Think global, act local. At A2Z-CM, our specialists offer a combination of IT and technical experience, plus a thorough knowledge of compliance and risk mitigation. Our thorough grasp of both fields means that you get solutions tailored to meet your specific needs - solutions that are fully compliant. A2Z-CM provides Clients and contractors with clear, friendly and professional advice on all aspects of the local fiscal and legal regulations. It's our job to deliver a comprehensive range of services, leaving you free to focus on your core business or project.

Added Today