Information Security Analyst

4 years

0 Lacs

Posted:2 days ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Full Time

Job Description

Role Overview

We are seeking an Information Security professional with 2–4 years of experience to conduct security assessments, identify vulnerabilities, and enhance our overall security posture.

While the primary focus of this role is InfoSec and security audit activities, it also includes selective QA responsibilities to ensure application quality and reliability.

This hybrid position is ideal for candidates who have hands-on security testing experience along with a strong grounding in QA principles.


Key Responsibilities

  • Perform application, network, and infrastructure security assessments.
  • Conduct vulnerability scanning and basic penetration testing using tools such as Burp Suite, OWASP ZAP, Nessus, and Nmap.
  • Identify, analyze, and document security risks aligned with OWASP Top 10, NIST, and other industry standards.
  • Conduct configuration reviews, access control audits, and compliance checks.
  • Monitor, triage, and investigate potential security incidents or threats.
  • Prepare detailed security assessment reports and recommend actionable remediation steps.
  • Work closely with development and DevOps teams to support secure SDLC practices and remediation of findings.
  • Assist with internal and external audits, including ISO 27001, SOC, and other compliance frameworks.
  • Support QA activities by preparing and executing functional and regression test cases when required.
  • Perform basic API testing, UI validation, and data integrity checks.
  • Verify fixes for security vulnerabilities or other high-priority issues.
  • Contribute to improving test coverage, documentation quality, and overall product reliability.


Required Qualifications

  • 2–4 years of experience

    in Information Security, Security Testing, or a similar role.
  • Practical knowledge of vulnerability assessment, security testing, and security standards.
  • Experience with tools such as Burp Suite, OWASP ZAP, Nessus, Nmap, or equivalent.
  • Understanding of OWASP Top 10, secure coding basics, and common attack vectors.
  • Basic exposure to QA testing concepts, test case design, and bug reporting.
  • Familiarity with API testing tools (e.g., Postman) and SQL for validation.


Preferred Qualifications

  • Exposure to SIEM tools or security monitoring environments.
  • Understanding of CI/CD pipelines and DevSecOps workflows.
  • Experience with cloud platforms (AWS/Azure/GCP) and their security features.
  • Certifications such as CEH, Security+, or ISO 27001 (LA/LI).
  • Familiarity with automation testing concepts (not mandatory)

Mock Interview

Practice Video Interview with JobPe AI

Start DevOps Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You

bengaluru, delhi / ncr, mumbai (all areas)