Get alerts for new jobs matching your selected skills, preferred locations, and experience range. Manage Job Alerts
4.0 - 7.0 years
7 - 17 Lacs
gurugram, bengaluru
Work from Office
Key Responsibilities Support vulnerability[Support][Done] assessments using SAST, DAST, and SCA tools. Collaborate with DevOps , Vulnerability Management, IBM teams [Add vulnerability management team, IBM and third-party PenTest service provider][Done]to ensure security is integrated into CI/CD pipelines. Manage the vulnerability management lifecycle, including triage, tracking, and remediation. Provide remediation guidance and recommendations [Have a think about this.][Rephrased.]to developers on vulnerabilities. Maintain and evolve secure SDLC practices and documentation. Deliver security awareness and secure coding training sessions. Demonstrate a willingness to learn, research, and innovate to improve the overall AppSec posture. Threat Modeling tool administration[Re-visit.][Rephrased]. 3. Technical Skills and Experience Required Experience with the following tools: - DAST: Qualys, Rapid7 - SAST: CodeQL, Checkmarx, Fortify, SonarQube - SCA: Dependabot, JFrog Xray - API Security: Understanding of API security principles and tools like Postman, OWASP 47 years of hands-on experience in application security or secure software development. Strong understanding of OWASP Top 10, CWE/SANS Top 25, and secure SDLC. Understanding of vulnerability management lifecycle and remediation workflows. Understanding of threat modeling concepts. [This should be at the top of our requirement.][Done]API Security Top 10, or API gateways with security features. Familiarity with penetration testing tools (e.g., Burp Suite, Metasploit, Nmap). Proficiency in at least one programming language (e.g., Java, Python, JavaScript, C#). Familiarity with CI/CD tools (e.g., Jenkins, GitLab CI, Azure DevOps). Exposure to cloud security (AWS, Azure, or GCP) is a plus. 4. Soft Skills Required Strong analytical and problem-solving skills. Excellent verbal and written communication. Ability to work independently and collaboratively in cross-functional teams. Strong documentation and reporting capabilities. Proactive, detail-oriented, and eager to learn. 5. Good to Have Skills Working knowledge of DevSecOps practices and tools. Experience with container security (Docker, Kubernetes). Certifications such as CEH or equivalent. Familiarity with threat modeling tools (e.g., Microsoft Threat Modeling Tool, IriusRisk). Experience in Agile/Scrum environments.
Posted Date not available
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
Accenture
54024 Jobs | Dublin
Wipro
24262 Jobs | Bengaluru
Accenture in India
18733 Jobs | Dublin 2
EY
17079 Jobs | London
Uplers
12548 Jobs | Ahmedabad
IBM
11704 Jobs | Armonk
Amazon
11059 Jobs | Seattle,WA
Bajaj Finserv
10656 Jobs |
Accenture services Pvt Ltd
10587 Jobs |
Oracle
10506 Jobs | Redwood City