Assistant Manager - Web Security Engineer – APIGEE

7 - 12 years

12 - 18 Lacs

Posted:1 week ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Position Purpose

Provide a brief description of the overall purpose of the position, why this position exists and how it will contribute in achieving the teams goal.

The Application security squad within Agile Production Services Tribe will work together with the existing Web Design and Web Application Firewall squads for the technical design, installation, set-up, industrialization, management, support and documentation of the BNP Paribas Fortis Web Security Infrastructure

BNP Paribas Fortis needs Web Security Engineers specialized in APIGEE to reenforce the Application security squad, to develop, maintain and migrate GW security policies for multiple customer centres within an efficient Agile SDLC for the API Management platform. You will work cross-functionally with Architects, Engineers, and Business Analysts, across multiple teams.

Responsibilities

Direct Responsibilities

  1. Design, deliver and support the integration layer between operating systems and business applications within distributed environments for B2B, B2C and Web information exchange solutions.
  2. Focuses on the integration of web application in the Web Infrastructure for the intranet as well as for the DMZ.
  3. Design, develop, and implement Restful APIs using Java and related technologies.
  4. Proficiency in using preferred IDEs, such as IntelliJ IDEA, Eclipse, or Visual Studio Code.
  5. Write, configure, and maintain API proxies on Apigee (OPDK).
  6. Excellent knowledge in JAVA, JAVA8, JAVA11, JAVA17, J2EE, Spring Boot, Spring MVC, JPA, Hibernate, DevOps, CICD, Jenkins, REST APIs, Swagger.
  7. Creation of swagger files and generating API proxies using the swagger files.
  8. Develop custom policies and extensions in Java for Apigee API Gate
  9. Write and maintain Java callouts for complex logic processing within Apigee proxies.
  10. Utilize Java to build reusable components and frameworks for API development.
  11. Develop and manage Java-based microservices to support API functionalities.
  12. Implement and maintain Java-based monitoring and logging solutions for APIs
  13. Development of new APIs and Enhancement of existing APIs for the proxies
  14. Design, develop, and implement API proxies and policies using Apigee Edge.
  15. Experience with SOA, SAML, SSO, OAuth2, OpenID, JWT, Base security, certificate configuration, SSH, TLS Understanding of architecture and design Microservices, micro gateways (preferably APIGEE), Istio, TCP, TLS, SSH, Jenkins, CICD tools.
  16. Participate in the migration of the API SOAP to RESTful, XML to JSON
  17. Assist and active participation in production support (incident, problem and change management) for the Web Security squads.
  18. Help clients with digital transformation through API Management and API Security.
  19. Architect solutions with clients, based on company standards and best practices.

Contributing Responsibilities

  1. Share knowledge with colleagues on technology subjects, solutions, best practices on vendor specific and also on generic security components.
  2. Establish and document installations, guidelines, policies and procedures for relevant stakeholders as well customer-facing technical documentation.
  3. Monitor and report on Infrastructure availability and performance.
  4. Participate in the automation and industrialization of our assets.
  5. Participate in the On-Call calendar (7/7 from 18:00 7:30CET)

Technical & Behavioral Competencies
  1. Proven experience in Apigee API management and development.
  2. Strong proficiency in Java programming, including Java callouts in Apigee.
  3. Experience with Java frameworks such as Spring Boot, Hibernate, or similar.
  4. Deep understanding of object-oriented programming (OOP) principles and design patterns.
  5. Experience with RESTful API design and implementation.
  6. Proven experience in designing and developing robust, secure, scalable API solutions with APIGEE products.
  7. Hands on knowledge with API Gateway Policy- and Secure API- development
  8. Good knowledge on: XML/XSLT, REST API, SOAP WebService
  9. Experience in securing the End Point with API Key, OAuth 2.0 (with JWT, Authorization code, client credentials, Implicit), SSL, MA, Basic Authentication.
  10. API Gateway CI-CD Implementation using Jenkins and Gitlab.
  11. Practical & good knowledge on: Web access management, web access security concepts, web authentication practices, PKI, certificates, Mutual Authentication, Kerberos Authentication, TLS, Federated Identity
  12. Practical knowledge of OAuth framework
  13. Experience to create Policies based on data routing, URL rewrite, request and response conversion, IP whitelisting/blacklisting, Throttling, external connection with database (MySQL) etc.
  14. Generic knowledge on firewalls, application firewalls, load balancers, networking principles, DMZ, network security
  15. Experience with RESTful API design and implementation
  16. Knowledge of API security standards and practices.
  17. Familiarity with API testing tools such as Postman or SoapUI
  18. Strong critical thinking skills and attention to the details
  19. Good working knowledge in Linux environment.

Mock Interview

Practice Video Interview with JobPe AI

Start Spring Boot Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Java Skills

Practice Java coding challenges to boost your skills

Start Practicing Java Now
BNP Paribas logo
BNP Paribas

Banking

Paris London

RecommendedJobs for You

mumbai, chennai, gurugram