> Markdown version of [/jobs/ext/2699425-security-testing](https://www.wearedevelopers.com/jobs/ext/2699425-security-testing). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Testing - **Company:** Cognizant - **Location:** Schiphol, Netherlands - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Agile Methodology, Software System Penetration Testing, User Authentication, Microsoft Azure, Cloud Computing Security, Cyber Security, DevOps, Fraud Prevention and Detection, Identity and Access Management, Key Management, Network Security, Microsoft Security Essentials, Open Web Application Security, Systems Development Life Cycle, Comptia Pentest+ CE, Secure Coding, Software Engineering, Software Vulnerability Management, Pega, Information Technology, Devsecops, Static Application Security Testing, Dynamic Application Security Testing - **Published:** September 4, 2026 - **Apply:** https://dejobs.org/x/x/C0BF34A7EDD6441C91C4E1244FD8FD15/job/ ## About the Role * 3-5 years of experience in Cyber Security, Security Engineering, DevOps, Software Engineering, or IT Risk Management. * Solid experience working in Agile and DevOps environments , with a strong understanding of secure SDLC and DevSecOps practices. * Proven experience with vulnerability management, security controls , and security monitoring frameworks. * Strong stakeholder management and cross-functional collaboration skills , with the ability to influence and advise engineering, architecture, risk, and business teams. * Foundational knowledge of OWASP Top 10, threat modelling, IAM, authentication, authorisation, encryption, key management , and network security principles. * Bachelor's degree in Computer Science, Cyber Security, Information Security, IT, or Engineering - or equivalent practical experience., * Experience in banking, financial services, fraud prevention, sanctions , or other regulated environments. * Hands-on cloud security experience , preferably with Microsoft Azure (AZ-900, SC-900, or other Microsoft Security Certifications are a plus). * Background in DevSecOps, penetration testing, audit , and security assessments. * Familiarity with Pega and/or Pega Cloud security . * Relevant certifications such as Security+, PenTest+, GISF, CISSP, CISM, CEH, CCSP , or GIAC credentials. ## Description As a Security Professional you will make an impact by serving as the dedicated security focal point, driving a secure-by-design culture across the full software delivery lifecycle. You will be a valued member of the Tech team and work collaboratively with Engineering, Architecture, Risk, Security, and Product stakeholders to design, build, and operate secure, resilient solutions that meet both internal standards and external regulatory requirements. In this role, you will: * Act as primary security contact, promoting security awareness, ownership, and secure-by-design practices across all delivery teams. * Embed security throughout the SDLC - from requirements through to production - including threat modelling, architecture reviews, secure coding practices, and integration of security testing (SAST, DAST, SCA) into CI/CD pipelines. * Lead vulnerability reviews and remediation activities, support penetration testing and security assessments, and respond to security incidents and fraud-related threats. * Ensure compliance with internal policies and external regulations by supporting audits, risk assessments, and control reviews, while maintaining security documentation and reporting on security posture and KPIs. * Deliver training, workshops, and coaching on secure development practices, and champion the adoption of DevSecOps, Stable & Secure by Design, and CISO frameworks across teams. Work Model We believe hybrid work is the way forward as we strive to provide flexibility wherever possible. Based on this role's business requirements, this is a hybrid position requiring a set number of days per week in a Cognizant or client office in the Netherlands. Regardless of your working arrangement, we are here to support a healthy work-life balance through our various wellbeing programs. The working arrangements for this role are accurate as of the date of posting. This may change based on the project you're engaged in, as well as business and client requirements. Rest assured, we will always be clear about role expectations. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)