Application Security Consultant
Posted 1hrs ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Application Security Consultant advising inovex clients on secure architectures, SDLC, vulnerability management, and software supply-chain security. Developing trainings, reviewing applications, and advancing security consulting products.
Responsibilities:
- Holistic consulting and support for clients on application security
- Establishment of robust Secure SDLC and vulnerability management processes
- Embedding preventive security measures into the development lifecycle
- Conducting threat modeling workshops, gap analyses and trainings on web security and the Cyber Resilience Act
- Setting up Security Champions programs
- Contributing to the strategic direction of the service portfolio in the CoP inoCircle
- Designing own training offerings and developing consulting products
- Representing inovex through conference and meetup presentations as well as LinkedIn posts
- Performing security reviews using SAST, DAST and SCA
- Prioritizing review findings together with development teams
- Assessing the software supply chain, including dependencies and SBOM
- Evaluating AI and LLM applications against the OWASP Top 10 for LLM
Requirements:
- Completed degree (Master/Bachelor or PhD) in Computer Science, Cyber Security or a comparable field; alternatively, equivalent deep practical experience
- Several years of experience in IT security and software development
- Deep security knowledge and ideally expertise in two to three additional areas, e.g., full-stack development, cloud infrastructures, data engineering or AI
- Practical consulting experience and a pragmatic approach to security compliance, e.g., CRA
- Ability to explain complex security concepts clearly
- Very good German language skills, at least level C1
- Good English language skills
- Certifications such as CSSLP or expertise in AI/LLM security are a plus


















