Home
Jobs

1395 Owasp Jobs - Page 35

Filter Interviews
Min: 0 years
Max: 25 years
Min: ₹0
Max: ₹10000000
Setup a job Alert
Filter
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

0 years

0 Lacs

India

Remote

Linkedin logo

Ethical Hacking Intern Company: INLIGHN TECH Location: Remote (100% Virtual) Duration: 3 Months Stipend for Top Interns: ₹15,000 Certificate Provided | LOR | Potential Full-Time Offer Based on Performance About the Company: INLIGHN TECH is dedicated to preparing the next generation of cybersecurity professionals by offering hands-on, project-based internships. Our Ethical Hacking Internship provides a comprehensive opportunity to explore system vulnerabilities, learn penetration testing techniques, and gain practical skills essential for the cybersecurity field. Role Overview: As an Ethical Hacking Intern, you'll work closely with our cybersecurity experts to identify and analyze security flaws in systems and applications. This role provides exposure to real-world security challenges and helps you build foundational skills in ethical hacking and penetration testing. Key Responsibilities: Perform vulnerability assessments and penetration tests on simulated environments Analyze system security using tools like Nmap, Burp Suite, Wireshark, Metasploit, etc. Document findings and recommend mitigation strategies Assist in developing scripts or tools for automation of testing processes Stay updated with the latest cybersecurity threats and trends Create reports highlighting attack vectors and potential security improvements Qualifications: Pursuing or recently completed a degree in Cybersecurity, Computer Science, Information Technology, or related field Basic knowledge of ethical hacking techniques, OWASP Top 10, and Linux commands Familiarity with tools such as Kali Linux, Nmap, Wireshark, and Metasploit Strong curiosity and passion for cybersecurity Good analytical, problem-solving, and documentation skills Internship Benefits: Hands-on training in ethical hacking tools and techniques Certificate of Internship upon successful completion Letter of Recommendation for high-performing interns Opportunity to contribute to real-world security simulations and projects Top interns eligible for stipend and full-time job offers Show more Show less

Posted 2 weeks ago

Apply

5.0 years

0 Lacs

Bengaluru, Karnataka, India

On-site

Linkedin logo

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. EY- Cyber Security Strategy, Risk, Compliance and Resilience – Technology Consulting – Senior As part of our EY Strategy, Risk, Compliance and Resilience (SRCR) Technology Consulting team, you would work on various SRCR projects for our customers across the globe. An important part of your role will be to actively establish, maintain and strengthen internal and external relationships. You’ll also identify potential business opportunities for EY and GDS within existing engagements and escalate these as appropriate. Similarly, you’ll anticipate and identify risks within engagements and share any issues with senior members of the team. In line with EY’s commitment to quality, you’ll confirm that work is of the highest quality as per EY’s quality standards and is reviewed by the next-level reviewer. As an influential member of the team, you’ll help to create a positive learning culture, coach and counsel junior team members and help them to develop. The opportunity We’re looking for Senior Security Consultant with expertise in cyber / information security, risk and controls concepts. This is a fantastic opportunity to be part of a leading firm whilst being instrumental in the growth of a new service offering. Your Key Responsibilities Engage in Cyber Strategy & Governance, Cyber Risk & Compliance, Cyber Resilience, Cyber Transformation and Co-Sourcing, Application & Network Security engagements Work effectively as a team member, sharing responsibility, providing support, maintaining communication and updating senior team members on progress. Execute the engagement requirements, along with review of work by junior team members. Help prepare reports and schedules that will be delivered to clients and other parties. Develop and maintain productive working relationships with client personnel. Build strong internal relationships within EY Consulting Services and with other services across the organization Contribute to people related initiatives including recruiting and retaining Cyber Transformation professionals Maintain an educational program to continually develop personal skills of staff Understand and follow workplace policies and procedures Building a quality culture at GDS Help senior team members in performance reviews and contribute to performance feedback for staff/junior level team members Manage the performance management for the direct reportees, as per the organization policies. Foster teamwork and lead by example; training and mentoring of project resources Participating in the organization-wide people initiatives Skills And Attributes For Success Hands-on experience of more than 5 years with key components of cybersecurity including (but not limited to): Vendor/3rd Party Risk Management & Assessment Cyber Strategy & Governance, Cyber Transformation, Cyber Dashboarding Regulations/standards such as ISO 27001, PCI DSS, HIPAA, HITRUST, GDPR, CCPA, FISMA/FEDRAMP, COBIT, OWASP Top 10, NIST 800-53 Business Continuity & Disaster Recovery Must have experience in working in client facing roles, interacting with the third parties, assessing different kinds of environments (IT and non-IT) and ability to apply cyber security concepts in all these sectors. Experienced in creation and review of security policy/procedures, and in performing risk assessments. Good to have experience in assessing ITGC requirements across various industries including both Cybersecurity and resilience requirements. Should have a good understanding of VAPT process, common application security vulnerabilities, exploitation techniques and remediation measures. Basic understanding of Network Security and network architecture diagram reviews, access and perimeter control, vulnerability management and intrusion detection, firewall rule-based reviews. Good understanding of logging and monitoring tools (SIEM). Knowledge in any one of the SIEM tools is a plus. To qualify for the role, you must have: BE - B. Tech / MCA / M. Tech/ MBA with background in computer science and programming. More than 5 Years of relevant experience. Strong Excel and PowerPoint skills. Should be proficient in leading medium to large engagements and coach junior staff. Ideally, you’ll also have CISSP, CISA, CISM, CEH, ISO 27001 Lead Auditor and Lead Implementer. Project management skills. What We Look For A team of people with commercial acumen, technical experience and enthusiasm to learn new things in this fast-moving environment with consulting skills. An opportunity to be a part of market-leading, multi-disciplinary team of 1400 + professionals, in the only integrated global transaction business worldwide. Opportunities to work with EY Consulting practices globally with leading businesses across a range of industries. What Working At EY Offers At EY, we’re dedicated to helping our clients, from start–ups to Fortune 500 companies — and the work we do with them is as varied as they are. You get to work with inspiring and meaningful projects. Our focus is education and coaching alongside practical experience to ensure your personal development. We value our employees and you will be able to control your own development with an individual progression plan. You will quickly grow into a responsible role with challenging and stimulating assignments. Moreover, you will be part of an interdisciplinary environment that emphasizes high quality and knowledge exchange. Plus, we offer: Support, coaching and feedback from some of the most engaging colleagues around Opportunities to develop new skills and progress your career The freedom and flexibility to handle your role in a way that’s right for you EY | Building a better working world EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets. Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate. Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today. Show more Show less

Posted 2 weeks ago

Apply

2.0 years

0 Lacs

Mumbai, Maharashtra, India

On-site

Linkedin logo

Our Offensive Security professionals are on a mission to make the world a safer place, one company at a time. We believe that our work to help our clients discover and remediate their unique security risks makes every one of us safer. Our clients trust us to use cutting-edge offensive security tools, creativity, imagination, and expert knowledge to find cybersecurity risks in their networks, systems, and software. We're looking to grow our team of penetration testers in India. We perform testing of web and smartphone applications, computer networks, cloud infrastructure, hardware devices, employees via social engineering, organizations via red team testing, and more. As an Offensive Security Consultant, you’ll be reporting to a Vice President in our APAC Offensive Security team and deliver projects for some of the biggest enterprises in the world. You will perform various web application, API, mobile, and infrastructure penetration tests. You will also draft reports based on the assessment results and gathered evidence and help address client inquiries regarding these results. In addition to the execution of traditional security assessments, you will participate in their refinement and improvement. Below are the roles and responsibilities for the Consultant, Offensive Security role based in India: Day To Day Responsibilities Execute offensive security and consultative engagements for our clients’ applications, cloud assets, and infrastructure Author deliverables such as vulnerability reports and executive reports Engage with our clients to understand their requirements, update them on project status, answer their queries, and present your findings and recommendations Keep your skills and knowledge up to date with the latest trends in cybersecurity and emerging technology Willingness to work in EST Time zone Essential Traits 2+ years in cybersecurity, with at least 1 year in penetration testing, cloud security, or red teaming A strong understanding of offensive security methodology and vulnerability frameworks such as the OWASP Top 10, MITRE ATT&CK, PTES, or others An ability to analyze root causes and deliver technological recommendations to our clients Prerequisites Bachelor’s degree or college diploma in information security, computer science or engineering, software engineering, or IT/System/Network administration Excellent oral and written communication skills Experience working both as part of a team and independently About Kroll Join the global leader in risk and financial advisory solutions—Kroll. With a nearly century-long legacy, we blend trusted expertise with cutting-edge technology to navigate and redefine industry complexities. As a part of One Team, One Kroll, you'll contribute to a collaborative and empowering environment, propelling your career to new heights. Ready to build, protect, restore and maximize our clients’ value? Your journey begins with Kroll. Kroll is committed to equal opportunity and diversity, and recruits people based on merit. In order to be considered for a position, you must formally apply via careers.kroll.com Show more Show less

Posted 2 weeks ago

Apply

0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential. Title And Summary Lead Software Engineer - Java/Scala Development, Hadoop, Spark Overview As a Lead Software Engineer at the Loyalty Rewards and Segments Organization, you will be responsible for designing, developing, testing, and delivering software frameworks in the areas of event-driven architecture and zero trust for use in large-scale distributed systems. Loyalty Rewards and Segments is an organisation within Mastercard that provide end to end loyalty management solution for banks, merchants and Fintechs. The ideal candidate for this role will have a strong background in software design, development, and testing, with a passion for technology and software development. They will be highly motivated, intellectually curious, and analytical, with a desire to continuously learn and improve. As a member of the Loyalty Rewards and Segments team, you will have the opportunity to work on cutting-edge technologies and collaborate with cross-functional teams to deliver software frameworks that meet the needs of Mastercard's customers. Role Key Responsibilities Lead the technical direction, architecture, design, and engineering practices. Prototype and proving concepts for new technologies, application frameworks, and design patterns to improve software development practices. Design and develop software frameworks using industry-standard best practices and methodologies Write efficient and maintainable code that meets feature specifications Debug and troubleshoot code to resolve issues and improve performance Validate software functionality, including performance, reliability, and security Collaborate with cross-functional teams to architect and deliver new services Participate in code reviews to ensure code quality and consistency Document software design, development, and testing processes Balance trade-offs between competing interests with judgment and experience. Identify synergies and reuse opportunities across teams and programs. Key Expectations Focus on individual and team objectives as an active participant in the Agile/Scrum development process, completing assignments on time, with the necessary quality, and in accordance with the project timeline Continuously learn and keep up-to-date with the latest software development technologies and methodologies Communicate effectively and professionally with team members and stakeholders Proactively identify opportunities for process improvements and efficiency gains Demonstrate a commitment to quality, best practices, and continuous improvement All About You Current, deep, hands-on software engineering experience in architecture, design, and implementation of large-scale distributed systems. Rich experience and deep knowledge in event-driven architecture is a must, and zero trust architecture expertise is highly desirable. Proficiency in Java, Scala & SQL (Oracle, Postgres, H2, Hive, & HBase) & building pipelines Expertise and Deep understanding on Hadoop Ecosystem including HDFS, YARN, MapReduce, Tools like Hive, Pig/Flume, Data processing framework like Spark & Cloud platform, Orchestration Tools - Apache Nifi / Airflow, Apache Kafka Expertise in Web applications (Springboot Angular, Java, PCF), Web Services (REST/OAuth) and tools ( Sonar, Splunk, Dynatrace) is must Expertise SQL, Oracle and Postgres Experience with XP, TDD and BDD in the software development processes Familiar with secure coding standards (e.g., OWASP, CWE, SEI CERT) and vulnerability management Strong understanding of software engineering principles, design patterns, and best practices Excellent analytical and excellent problem-solving skills and experience working in an Agile environment. Strong verbal and written communication to demo features to product owners; strong leadership quality to mentor and support junior team members, proactive and has initiative to take development work from inception to implementation. Passion for technology and software development, with a strong desire to continuously learn and improve Comfortable taking thoughtful risks and acquiring expertise as needed. Able to foster a comfortable environment for tough technical discussions where everyone can be heard. Corporate Security Responsibility All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must: Abide by Mastercard’s security policies and practices; Ensure the confidentiality and integrity of the information being accessed; Report any suspected information security violation or breach, and Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines. R-246306 Show more Show less

Posted 2 weeks ago

Apply

8.0 years

0 Lacs

Gurugram, Haryana, India

On-site

Linkedin logo

We are the leading provider of professional services to the middle market globally, our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential. Our exceptional people are the key to our unrivaled, inclusive culture and talent experience and our ability to be compelling to our clients. You’ll find an environment that inspires and empowers you to thrive both personally and professionally. There’s no one like you and that’s why there’s nowhere like RSM. Bachelor or Master degree in computer science with a minimum of 8 years in cyber security domain Technical background in networking/system administration, security testing or related fields In-depth knowledge of TCP/IP Two or more years of Perl, Python, Bash, or C experience Operating System Configuration and Security experience (Windows, HP-UX, Linux, Solaris, AIX, etc.) Configuration and Security experience with firewalls, switches, routers, VPNs Experience with security and architecture testing and development frameworks, such as the Open Web Application Security Project (OWASP), Open Source Security Testing Methodology Manual (OSSTMM), the Penetration Testing Execution Standard (PTES), Information Systems Security Assessment Framework (ISSAF), and NIST SP800-115 Familiar with security testing techniques such as threat modeling, network discovery, port and service identification, vulnerability scanning, network sniffing, penetration testing, configuration reviews, firewall rule reviews, social engineering, wireless penetration testing, fuzzing, and password cracking and can perform these techniques from a variety of adversarial perspectives (white-, grey-, black-box) Experience with discovering, utilizing, and possibly writing exploits for such vulnerabilities as buffer and stack overflows Familiar with the logistics of security testing such as acquiring authorization for testing, reporting, risk analysis of findings, data handling, and legal considerations Commercial Application Security tools experience (Nessus, Nexpose, Qualys, Appdetective, Appscan, etc.) Open source and free tools experience (Kali Linux suite, Metasploit, nmap, airsnort, Wireshark, Burp Suite, Paros, etc.) One or more of the following testing certifications: Certified Ethical Hacker (CEH); GIAC Certified Penetration Tester (GPEN); Offensive Security Certified Professional (OSCP); or equivalent development or testing certification (ECSA, CEPT, CPTE, CPTS, etc) In addition, one or more of the following governance certifications is preferred: Certified Information Systems Security Professionals® (CISSP®); Certified Information Systems Auditor® (CISA®); Certified Information Security Manager® (CISM®) Strong leadership and communication skills, technical knowledge, and the ability to write at a "publication" quality level in order to communicate findings and recommendations to the client's senior management Must possess a high degree of integrity and confidentiality, as well as the ability to adhere to both company policies and best practices The standard work hours for this role are from 3:30 PM to 11:00 PM IST, aligned to support client requirements and deliverables and engagements. Candidates should be comfortable with this fixed shift timing Position & Key Responsibilities Develop an understanding of the RSM US Risk Consulting service offerings, methodologies, and tools Perform analysis and testing to verify the strengths and weaknesses of client IT environments utilizing commercial and open source security testing tools Perform Internet penetration testing (blackbox/ greybox / whitebox testing) and network architecture reviews (manual/ automated) Perform other security testing tasks such as wireless penetration testing, social engineering campaigns (email, web, phone, physical, etc.), mobile application testing, embedded device testing, and similar activities meant to identify critical weaknesses within client environments Assist with the development of remediation recommendations for identified findings Identify and clearly articulate (written and verbal) findings to senior management and clients Help identify improvement opportunities for assigned clients Supervise and provide engagement management for other staff working on assigned engagements Works closely with the client and RSM team to make sure we meet or exceed client expectations on each engagement and maintain high customer satisfaction. Exercise professional skepticism, judgment and adhere to the code of ethics while on engagements Ensure that documentation is compliant with the quality standards of the firm Work collaboratively as a part of the team and communicate effectively with RSM consulting professionals, and senior management in the U.S. on a daily basis Key Skills To Accelerate Career Maintains a high degree of quality and client relationship on multiple clients at the same time Positively engages, motivates and influences team members Identifies client needs/requirements and initiates discussion to expand services through a solid understanding of the firm’s service capabilities and offerings Subscribes to and actively read industry publications and share relevant information with clients as considered applicable At RSM, we offer a competitive benefits and compensation package for all our people. We offer flexibility in your schedule, empowering you to balance life’s demands, while also maintaining your ability to serve clients. Learn more about our total rewards at https://rsmus.com/careers/india.html. RSM does not tolerate discrimination and/or harassment based on race; colour; creed; sincerely held religious beliefs, practices or observances; sex (including pregnancy or disabilities related to nursing); gender (including gender identity and/or gender expression); sexual orientation; HIV Status; national origin; ancestry; familial or marital status; age; physical or mental disability; citizenship; political affiliation; medical condition (including family and medical leave); domestic violence victim status; past, current or prospective service in the Indian Armed Forces; Indian Armed Forces Veterans, and Indian Armed Forces Personnel status; pre-disposing genetic characteristics or any other characteristic protected under applicable provincial employment legislation. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process and/or employment/partnership. RSM is committed to providing equal opportunity and reasonable accommodation for people with disabilities. If you require a reasonable accommodation to complete an application, interview, or otherwise participate in the recruiting process, please send us an email at careers@rsmus.com. Show more Show less

Posted 2 weeks ago

Apply

2.0 - 3.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Our Company Changing the world through digital experiences is what Adobe’s all about. We give everyone—from emerging artists to global brands—everything they need to design and deliver exceptional digital experiences! We’re passionate about empowering people to create beautiful and powerful images, videos, and apps, and transform how companies interact with customers across every screen. We’re on a mission to hire the very best and are committed to creating exceptional employee experiences where everyone is respected and has access to equal opportunity. We realize that new ideas can come from everywhere in the organization, and we know the next big idea could be yours! The Opportunity Are you passionate about securing global systems and mitigating risks in a fast-paced environment? Adobe Security is looking for a dynamic candidate to join its Vulnerability Operation Center (VOC). As a VOC Product Security Engineer, you will analyze and prioritize incoming identified vulnerabilities and engage with developers for all of Adobe’s products and online services. In this role, you will partner directly with various teams to pave the way for measuring, prioritizing, and reducing risk across Adobe's suite of product offerings. This is an outstanding opportunity to influence our organization's risk posture through ground-breaking work. What You'll Do Validate and assess the severity of public and privately disclosed security vulnerabilities. Drive security issues to resolution through continuous engagement with engineering teams. Develop reporting metrics for leadership that highlight risks and trends. Champion remediation efforts to industry-wide vulnerabilities and reduce preventable vulnerabilities. Identify security gaps and collaborate directly with product engineering teams on improved hardening opportunities. Investigate systemic vulnerability trends to improve product risk posture and reduce preventable vulnerabilities. What You Need to Succeed Bachelor’s degree or equivalent experience in computer science, engineering, or a related field and at least 2-3 years of practical experience. Deep knowledge of infrastructure and application security vulnerabilities (OWASP Top 10) and mitigation techniques. Strong understanding of common security concepts that support root-cause analysis to make data-driven decisions on vulnerability patterns and trends. Dependability: Meets commitments, works independently, accepts accountability, handles change, sets personal standards, and stays focused under pressure. Ability to speak and communicate professionally. Adobe is proud to be an Equal Employment Opportunity employer. We do not discriminate based on gender, race or color, ethnicity or national origin, age, disability, religion, sexual orientation, gender identity or expression, veteran status, or any other applicable characteristics protected by law. Learn more. Adobe aims to make Adobe.com accessible to any and all users. If you have a disability or special need that requires accommodation to navigate our website or complete the application process, email accommodations@adobe.com or call (408) 536-3015. Show more Show less

Posted 2 weeks ago

Apply

10.0 - 13.0 years

7 - 9 Lacs

Hyderābād

On-site

GlassDoor logo

Manager – CyberSecurity (CS) Assurance /CISO/ITS Your opportunity To work in the innovative and creative CISO team. A world class operation with extensive knowledge and experience. Interfacing with business and technical teams and bringing about change and influence across the whole world of Deloitte. Apply your skills here to make things happen. You will be part of a great team that are passionate about our work in serving a great purpose. Work you’ll do As a CyberSecurity Assurance Manager, you will. Support Business Lines/Project teams through the Globally mandated Secure Service Development Lifecycle (SSDLC) when introducing new services and systems, or changes to existing services and systems, whilst also providing relevant information security control requirements. Define security non-functional requirements for projects and ensure that they are fulfilled prior to handing over to operations/BAU Liaise with the Information Security testing team to ensure that code reviews, application scanning and infrastructure scanning is conducted as part of CS assurance process. Develop and present information related risks to Senior Manager – IS Risk and Assurance and the CISO Working and collaborating with the wider UK Information Security team, UK Deloitte Business Security, UK IT Services, NSE, and Global Information Security and Risk teams. Representation at the Change Advisory Board (CAB) to review change requests presented. Evaluate and assess ITGC or Information Security controls. Evaluate existing processes to understand inefficiencies or ineffectiveness involved. This includes reviewing the design adequacy & operational effectiveness of BAU processes. Must showcase Effective stakeholder management as a part of role responsibility. Seek feedback from the audience and incorporate it to come up with win-win solutions. Clearly demonstrate how changes in a process will bring about improvements. Be a self-starter, could problem solve, identifying issues and solutions options with minimal oversight and handholding. Create a business case that caters to different audiences (mid-level & senior management). Review design and architectural design documentation and data flow diagrams and provide security requirements and input. Support IT and Business transformation projects by ensuring they are risk-assessed, and controls and security requirements are met through the transformation lifecycle. Attend business governance meetings as required representing the Information Security team. Evaluate the adequacy of security controls implemented during various stages of IT project lifecycle Performs technical testing of controls (as applicable) for assurance and validation of IT asset compliance. Document best practices for security and information assurance based on business and user requirements. Your professional experience/Qualifications 10 – 13 years of experience. Preferably holds industry accreditations such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC). Demonstrable understanding of information security risks and controls inherent in various technologies, along with related security best practices. Knowledgeable in various cyber technologies, including mobile threat defense, endpoint protection, data loss prevention, insider threat protection, device hardening, classification, and key & certificate management. Proven ability to identify risks associated with business processes, operations, information security programs, and technology projects. Awareness and understanding of the OWASP top 10 risks. Clear knowledge of security standards, methodologies, or frameworks such as ISO27001 or COBIT. Excellent written and verbal communication skills. Ability to thrive in a fast-paced, deadline-driven environment. Demonstrated excellence in competencies such as teamwork/collaboration, analytical thinking, communication and influencing skills, and technical expertise. Capable of managing changing priorities and handling multiple projects. A degree or master's in information security or computer science is desirable but not essential. Demonstrable knowledge of good security practices, ensuring adherence to the principles of confidentiality, integrity, and availability. Experience in an information security or risk management role, including tasks such as conducting risk assessments, risk assurance activities, and documentation. Proven experience in taking proactive responsibility, following up, and resolving issues in a manner that positively impacts team delivery and inspires the team. Working knowledge of the SSDLC process. Basic understanding of project management principles. Excellent persuasion, influencing, and interpersonal skills. Understanding and experience with the risk management process. Strong critical thinking and analytical skills. Your work, your choice In the CISO team we are results focused and believe in excellence in respect in all aspects of our work and interaction with each other. We make full use of technologies that help support different ways of working. At Deloitte we believe the best impact is the value we add, not the hours we sit at our desk. We, therefore, carefully consider agile ways of working, both formal and informal, that allow for the best impact for our people and our clients. If the working pattern you are looking for is not specifically indicated below, we are happy to discuss alternative arrangements. Location: Hyderabad Timings: 1 PM to 10 PM How you’ll grow At Deloitte, we’ve invested a great deal to create a rich environment in which our professionals can grow. We want all our people to develop in their own way, playing to their own strengths as they hone their leadership skills. And, as a part of our efforts, we provide our professionals with a variety of learning and networking opportunities—including exposure to leaders, sponsors, coaches, and challenging assignments—to help accelerate their careers along the way. No two people learn the same way. So, we provide a range of resources including live classrooms, team-based learning, and eLearning. DU: The Leadership Center in India, our state-of-the-art, world-class learning Center in the Hyderabad offices is an extension of the Deloitte University (DU) in Westlake, Texas, and represents a tangible symbol of our commitment to our people’s growth and development. Explore DU: The Leadership Center in India Benefits At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you. Deloitte’s culture Our positive and supportive culture encourages our people to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them to be healthy, centered, confident, and aware. We offer well-being programs and are continuously looking for new ways to maintain a culture that is inclusive, invites authenticity, leverages our diversity, and where our people excel and lead healthy, happy lives. Learn more about Life at Deloitte. Recruiting tips From developing a stand out resume to putting your best foot forward in the interview, we want you to feel prepared and confident as you explore opportunities at Deloitte. Check out recruiting tips from Deloitte recruiters. Benefits At Deloitte, we know that great people make a great organization. We value our people and offer employees a broad range of benefits. Learn more about what working at Deloitte can mean for you. Our people and culture Our inclusive culture empowers our people to be who they are, contribute their unique perspectives, and make a difference individually and collectively. It enables us to leverage different ideas and perspectives, and bring more creativity and innovation to help solve our clients' most complex challenges. This makes Deloitte one of the most rewarding places to work. Our purpose Deloitte’s purpose is to make an impact that matters for our people, clients, and communities. At Deloitte, purpose is synonymous with how we work every day. It defines who we are. Our purpose comes through in our work with clients that enables impact and value in their organizations, as well as through our own investments, commitments, and actions across areas that help drive positive outcomes for our communities. Professional development From entry-level employees to senior leaders, we believe there’s always room to learn. We offer opportunities to build new skills, take on leadership opportunities and connect and grow through mentorship. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their career. Requisition code: 302759

Posted 2 weeks ago

Apply

6.0 - 8.0 years

2 - 6 Lacs

Hyderābād

On-site

GlassDoor logo

India - Hyderabad JOB ID: R-208432 LOCATION: India - Hyderabad WORK LOCATION TYPE: On Site DATE POSTED: Mar. 12, 2025 CATEGORY: Information Systems Join Amgen’s Mission of Serving Patients At Amgen, if you feel like you’re part of something bigger, it’s because you are. Our shared mission—to serve patients living with serious illnesses—drives all that we do. Since 1980, we’ve helped pioneer the world of biotech in our fight against the world’s toughest diseases. With our focus on four therapeutic areas –Oncology, Inflammation, General Medicine, and Rare Disease– we reach millions of patients each year. As a member of the Amgen team, you’ll help make a lasting impact on the lives of patients as we research, manufacture, and deliver innovative medicines to help people live longer, fuller happier lives. Our award-winning culture is collaborative, innovative, and science based. If you have a passion for challenges and the opportunities that lay within them, you’ll thrive as part of the Amgen team. Join us and transform the lives of patients while transforming your career. What you will do Let’s do this. Let’s change the world. In this vital role you will Guide and support junior team members by offering technical advice, conducting code reviews, and sharing knowledge to promote their professional development. Perform security testing (e.g., penetration testing, code reviews) and ensure continuous security monitoring across the organization’s IT landscape. Identify vulnerabilities in networks, systems, applications, and infrastructure through hands-on penetration testing. Attempt to exploit discovered vulnerabilities to demonstrate their impact and prove their existence (e.g., retrieving sensitive data, elevating user privileges, or gaining access to admin functionality). Perform assessments on web applications, cloud environments, and network infrastructure. Use automated tools and manual techniques to identify security weaknesses. Conduct advanced post-exploitation tasks to simulate real-world attack scenarios. Work with third-party security vendors for audits, product testing, and external assessments when required. Use automated tools (e.g., Burp Suite, OWASP ZAP, or Acunetix) to identify common vulnerabilities such as SQL Injection, Cross-Site Scripting (XSS), Cross-Site Request Forgery (CSRF), and others. Document identified vulnerabilities in detail, explaining how they were found, their severity, and their potential impact. Include proof-of-concept (PoC) for critical vulnerabilities. Offer actionable, practical solutions for fixing the vulnerabilities, such as secure coding practices, configuration changes, or security controls. Use risk-based prioritization, categorizing issues by their severity and business impact (e.g., high, medium, low) to help the organization focus on the most critical issues. Continuously learn about the latest vulnerabilities, exploits, and security trends. Present the findings to stakeholders, security teams, and management, explaining the business risk and potential impacts of the vulnerabilities discovered. Familiarity with industry standards and compliance requirements (e.g., PCI-DSS, NIST, ISO 27001) and their relevance to penetration testing. What we expect of you We are all different, yet we all use our unique contributions to serve patients. This role has a strong focus on ensuring the organization's infrastructure, applications, and systems are secure from external and internal threats. This role is responsible for conducting authorized security tests on IT infrastructure to evaluate the strength of its systems against potential cyberattacks. A variety of automated tools and manual techniques are leveraged to simulate real-world attacks. The penetration tester then works with the organization to prioritize, remediate and report on identified issues, strengthening the overall security posture. Basic Qualifications: Bachelor’s degree with 6 - 8 years of experience in Computer Science, Cybersecurity or Information Systems related field . Preferred Qualifications: Must-Have Skills: Strong knowledge of common vulnerabilities (e.g., OWASP Top 10, SANS Top 25), network protocols, encryption standards, application security and common penetration testing methodologies (ISSAF, OSSTMM, PTES). Familiarity with tools like Burp Suite, OWASP ZAP and Metasploit. A deep understanding of web application architecture, databases, and authentication mechanisms. Ability to think critically and creatively when testing and attempting to exploit vulnerabilities. Good-to-Have Skills: Experience with threat intelligence and incorporating emerging threats into penetration testing practices Proficiency in scripting and automation (e.g., Python, Bash) is a plus Professional Certifications (please mention if the certification is preferred or mandatory for the role): Preferred: eJPT, eCPPT, eWPT, OSCP, OSWA, GWAPT What you can expect of us As we work to develop treatments that take care of others, we also work to care for your professional and personal growth and well-being. From our competitive benefits to our collaborative culture, we’ll support your journey every step of the way. In addition to the base salary, Amgen offers competitive and comprehensive Total Rewards Plans that are aligned with local industry standards. for a career that defies imagination Objects in your future are closer than they appear. Join us. careers.amgen.com As an organization dedicated to improving the quality of life for people around the world, Amgen fosters an inclusive environment of diverse, ethical, committed and highly accomplished people who respect each other and live the Amgen values to continue advancing science to serve patients. Together, we compete in the fight against serious disease. Amgen is an Equal Opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability status, or any other basis protected by applicable law. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Posted 2 weeks ago

Apply

40.0 years

2 - 6 Lacs

Hyderābād

On-site

GlassDoor logo

India - Hyderabad JOB ID: R-208431 LOCATION: India - Hyderabad WORK LOCATION TYPE: On Site DATE POSTED: Feb. 28, 2025 CATEGORY: Information Systems ABOUT AMGEN Amgen harnesses the best of biology and technology to fight the world’s toughest diseases, and make people’s lives easier, fuller and longer. We discover, develop, manufacture and deliver innovative medicines to help millions of patients. Amgen helped establish the biotechnology industry more than 40 years ago and remains on the cutting-edge of innovation, using technology and human genetic data to push beyond what’s known today. ABOUT THE ROLE Role Description: This role has a strong focus on ensuring the organization's infrastructure, applications, and systems are secure from external and internal threats. This role is responsible for conducting authorized security tests on IT infrastructure to evaluate the strength of its systems against potential cyberattacks. Avariety of automated tools and manual techniques are leveraged to simulate real-world attacks. The penetration tester then works with the organization to prioritize, remediate and report on identified issues, strengthening the overall security posture. Roles & Responsibilities: Perform security testing (e.g., penetration testing, code reviews) and ensure continuous security monitoring across the organization’s IT landscape. Identify vulnerabilities in networks, systems, applications, and infrastructure through hands-on penetration testing. Attempt to exploit discovered vulnerabilities to demonstrate their impact and prove their existence (e.g., retrieving sensitive data, elevating user privileges, or gaining access to admin functionality). Perform assessments on web applications, cloud environments, and network infrastructure. Use automated tools and manual techniques to identify security weaknesses. Conduct advanced post-exploitation tasks to simulate real-world attack scenarios. Work with third-party security vendors for audits, product testing, and external assessments when required. Use automated tools (e.g., Burp Suite, OWASP ZAP, or Acunetix) to identify common vulnerabilities such as SQL Injection, Cross-Site Scripting (XSS), Cross-Site Request Forgery (CSRF), and others. Document identified vulnerabilities in detail, explaining how they were found, their severity, and their potential impact. Include proof-of-concept (PoC) for critical vulnerabilities. Offer actionable, practical solutions for fixing the vulnerabilities, such as secure coding practices, configuration changes, or security controls. Use risk-based prioritization, categorizing issues by their severity and business impact (e.g., high, medium, low) to help the organization focus on the most critical issues. Continuously learn about the latest vulnerabilities, exploits, and security trends. Present the findings to stakeholders, security teams, and management, explaining the business risk and potential impacts of the vulnerabilities discovered. Familiarity with industry standards and compliance requirements (e.g., PCI-DSS, NIST, ISO 27001) and their relevance to penetration testing. Basic Qualifications and Experience: Master’s degree with a 1 - 2 years of experience in Computer Science, Cybersecurity or Information Systems related field OR Bachelor’s degree with 2 - 4 years of experience in Computer Science, Cybersecurity or Information Systems related field OR Diploma with 4-6 years of experience in Computer Science, Cybersecurity or Information Systems related field Functional Skills: Must-Have Skills: Strong knowledge of common vulnerabilities (e.g., OWASP Top 10, SANS Top 25), network protocols, encryption standards, application security and common penetration testing methodologies (ISSAF, OSSTMM, PTES). Familiarity with tools like Burp Suite, OWASP ZAP and Metasploit. A deep understanding of webapplication architecture, databases, and authentication mechanisms. Ability to think critically and creatively when testing and attempting to exploit vulnerabilities. Good-to-Have Skills: Experience with threat intelligence and incorporating emerging threats into penetration testing practices Proficiency in scripting and automation (e.g., Python, Bash) is a plus Professional Certifications: Preferred: eJPT,eCPPT,eWPT, OSCP, OSWA, GWAPT Soft Skills: Strong analytical and troubleshooting skills Strong verbal and written communication skills Ability to work effectively with global, virtual teams High degree of initiative and self-motivation Teamoriented, with a focus on achieving team goals Strong presentation and public speaking skills EQUAL OPPORTUNITY STATEMENT Amgen is an Equal Opportunity employer and will consider you without regard to your race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status. We will ensure that individuals with disabilities are provided with reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request an accommodation. for a career that defies imagination Objects in your future are closer than they appear. Join us. careers.amgen.com As an organization dedicated to improving the quality of life for people around the world, Amgen fosters an inclusive environment of diverse, ethical, committed and highly accomplished people who respect each other and live the Amgen values to continue advancing science to serve patients. Together, we compete in the fight against serious disease. Amgen is an Equal Opportunity employer and will consider all qualified applicants for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability status, or any other basis protected by applicable law. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

Posted 2 weeks ago

Apply

0 years

9 - 10 Lacs

Hyderābād

On-site

GlassDoor logo

Job description Who We Are Sureifys mission is to modernize the life insurance and annuity industry by helping carriers acquire, service, and engage their customers through any distribution channel. Sureifys products empower life insurance carriers, agents, employees, and customers to have the digital experiences that employees and consumers have come to expect in the rapidly advancing tech climate. Your Role as a Valued Team Member We are seeking a detail-oriented and proactive Vulnerability Remediation Engineer to join our growing Infosec team. The person will be responsible for reducing the risk exposure of security vulnerabilities from the scope of Sureify overall. This role entails monitoring ongoing security vulnerabilities, analyzing risk posture, collaborating with stakeholders/finding owners for managing resolutions, and acting as an SME to assess discovered vulnerabilities. You will also provide pragmatic solutions and be flexible in supporting emergency vulnerability remediations. The ideal candidate will possess a strong understanding of security protocols, vulnerability management, system administration, and software development lifecycle, as well as excellent communication skills to collaborate with cross-functional teams. This role does require some overlap of hours with a team based in San Jose, California. Your Key Responsibilities Review and assess security vulnerabilities, patches, and findings from internal audits, security scans, and penetration tests. Prioritize vulnerabilities based on risk and impact, and ensure timely patching or remediation. Enforce patch compliance by tracking deployments, addressing exceptions, and ensuring adherence to vulnerability remediation Service Level Agreements (SLAs). Collaborate with security and IT teams to develop and implement security patches for critical vulnerabilities. Work closely with developers and DevOps teams to understand the root cause of security vulnerabilities and propose appropriate fixes. Assist development teams in the integration of security features and secure coding practices throughout the software development lifecycle (SDLC). Develop and maintain scripts for automated patch deployment across various systems and applications. Automate vulnerability patching workflows using scripting languages such as Python, PowerShell, Bash, etc. Collaborate with the development team to create and test patches, ensuring that they do not disrupt the functionality of applications or systems. Maintain detailed records of patches, and remediation actions. Prepare and present reports on patch management progress, risks, and status to senior management. Flexibly support emergency response for 0-day vulnerability remediation. Automating processes of security from time to time when needed. Identify potential improvement areas for vulnerability remediation and share lessons learned. Continuously monitor for emerging vulnerabilities and maintain an up-to-date patching schedule. Role Requirements Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent work experience). Server administration experience (Windows/RHEL) with a solid understanding of industry best practices for Patch Management and Vulnerability Remediation. Experience in vulnerability management, security patching, or related security roles. Experience supporting vulnerability emergency response or security incidents, including coordinating with relevant stakeholders, implementing corrective/preventive actions, and guiding security patching of software or components. Strong knowledge of security vulnerabilities in software and infrastructure components (servers, clients, network devices, perimeter security technologies, protocols/services, middleware, databases, configurations, etc.). In-depth understanding of security processes related to vulnerability management, security patching, security configurations, and technical security validations. Strong understanding of common network protocols (TCP/IP, DNS, HTTP, HTTPS, SMTP, etc.) and how vulnerabilities in these protocols can affect system security. Strong experience in at least one scripting language such as Python, PowerShell, Bash, etc. Familiarity with cloud platforms (AWS) and their security models. Knowledge of Cloud & Vulnerability Security tools such as Qualys, SentinelOne, or Crowdstrike Good understanding of industry-standard regulations and risk management frameworks (e.g., ISO, SOC, HIPAA, GDPR, CCPA). Familiarity with security frameworks such as SANS Top 25, OWASP Top 10, and/or MITRE ATT&CK. Knowledge of secure coding practices and development environments. Familiarity with container security (Docker, Kubernetes) and securing microservices is a plus. Security certifications such as Security+, SSCP, CEH, or other equivalent recognized certifications are a plus. Excellent communication and interpersonal skills, with the ability to articulate complex technical vulnerabilities and remediation actions to both technical and non-technical stakeholders.

Posted 2 weeks ago

Apply

0 years

0 Lacs

Hyderābād

On-site

GlassDoor logo

Job description Some careers shine brighter than others. If you’re looking for a career that will help you stand out, join HSBC and fulfil your potential. Whether you want a career that could take you to the top, or simply take you in an exciting new direction, HSBC offers opportunities, support and rewards that will take you further. HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories. We aim to be where the growth is, enabling businesses to thrive and economies to prosper, and, ultimately, helping people to fulfil their hopes and realise their ambitions. We are currently seeking an experienced professional to join our team in the role of SENIOR SOC ANALYST In this role, you will: The primary responsibilities of the Senior SOC Analyst are: Monitoring the entire global HSBC technology and information estate for new attacks and log them to appropriate systems. Triaging potentially malicious events to determine severity and criticality of the event. Responding to alerts from the various monitoring/detection systems and platforms within defined SLAs. Following detailed processes and procedures to analyse, respond to and/or escalate cyber security incidents. Supporting cyber security incidents through to eradication and feedback lessons learned, in to improved cyber resilience. Analysing network traffic using a variety of analysis tools. Monitoring security appliance health and perform basic troubleshooting of security devices; notify security engineering as necessary for malfunctioning equipment. Analysing malicious artefacts obtained from network monitoring with a focus on generation of threat intelligence and service improvement. Identifying and developing new ideas to enhance our detection capability (Use cases) and mitigations (Playbooks) across the security platforms. Reviewing and validating new Use Cases and Playbooks created by Cybersecurity colleagues. Researching emerging threats and vulnerabilities to aid in the identification of cyber incidents. Applying structured analytical methodologies to maximize threat intelligence growth and service efficacy. Supporting handovers to other teams and countries at the start and end of the working shift. Contributing to the continued evolution of hunting, monitoring, detection, analysis and response capabilities and processes. Training, developing and mentoring colleagues in area(s) of specialism. Collaborating with the wider Cybersecurity (and IT) teams to ensure that the core, underlying technological capabilities that underpin an effective and efficient operational response to current and anticipated threats and trends remain fit for purpose. Identifying processes that can be automated and orchestrated to ensure maximum efficiency of Global Cybersecurity Operations resources. Promoting a “self-critical” and continuous assessment and improvement culture whereby identification of weaknesses in the bank’s control plane (people, process, and technology) are brought to light and addressed in an effective and timely manner. Supporting engagement in support of HSBC Global Businesses and Functions to drive a global up-lift in cyber-security awareness and help to evangelise HSBC Cybersecurity efforts and success. Requirements To be successful in this role, you should meet the following requirements: Experience working with Microsoft Identity technologies. Good investigative skills and insatiable curiosity. Instinctive and creative, with an ability to think like the enemy. Strong problem-solving and trouble-shooting skills. Strong communication and interpersonal skills, with proven ability to communicate technical topics to diverse audiences. Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one. Ability to learn quickly through hands on experience. Experience defining and refining operational procedures, workflows, and processes to support the team in consistent, quality execution of monitoring and detection. An understanding of business needs and commitment to delivering high-quality, prompt, and efficient service to the business. An understanding of organizational mission, values and goals and consistent application of this knowledge. Self-motivated and possessing of a high sense of urgency and personal integrity. Highest ethical standards and values. Knowledge of cyber security principles, global financial services business models, regional compliance regulations and laws. Good understanding and knowledge of common industry cyber security frameworks, standards and methodologies, including OWASP, ISO2700x series, PCI DSS, GLBA, EU data security and privacy acts, FFIEC guidelines, CIS and NIST standards You’ll achieve more when you join HSBC. www.hsbc.com/careers HSBC is committed to building a culture where all employees are valued, respected and opinions count. We take pride in providing a workplace that fosters continuous professional development, flexible working and opportunities to grow within an inclusive and diverse environment. Personal data held by the Bank relating to employment applications will be used in accordance with our Privacy Statement, which is available on our website. Issued by – HSBC Software Development India

Posted 2 weeks ago

Apply

180.0 years

0 Lacs

Gurgaon

On-site

GlassDoor logo

Offensive Security Professional Job Req ID: 47405 Posting Date: 29 May 2025 Function: Cyber Security Unit: Location: 25A DLF City Phase-III,, Gurugram, India Salary: Competitive Hiring Manager: Abhishar Balodhi Recruiter: Archana SM Location: Gurugram Carrer Level: E Why BT We’ve always been an organisation with a purpose; to use the power of communication to make a better world. You can trace this back to our beginning as pioneers of the world’s firs telecommunications company. At our heart we’re a technology company with research and innovation in our bones and a desire to be personal, simple, and brilliant for our customers - those are the values we live by whilst also creating an inclusive working environment where people from all backgrounds can succeed.Our pursuit of progress over the past 180 years has established BT as a strong, successful brand, with huge scale capable of achieving great things. From supporting emergency services, hospitals, banks and keeping economies around the world online, safe and secure, to delivering large scale technology infrastructure like the creation of BT Sport. Today in this fast-changing, always on, digital world our purpose remains true. Yet the market conditions, regulations and competition we face are tougher than ever before. So, if you have the drive, optimism and resilience to help propel us forward we’ll offer unrivalled personal development, a wealth of opportunities to learn, experience new things and pursue new careers. If that’s you and what you’re looking for, we’d love you to be part of our future. Why this job matters As an experienced Information Security Services provider, we will help lead a highly motivated team laser-focused on analysing, designing, developing and delivering solutions built to stop adversaries and strengthen your operations Our Competent individuals and Skilled leadership will provide you incident response, risk reviews and vulnerability assessments, identifying threats, all of which ladder up to driving secure solutions. What I’ll be doing – your accountabilities Accountable for delivering vulnerability assessments and penetration tests. Responsible for increasing individual technical skill whilst also delivering BAU. Accountable for increasing capability of the penetration testing team through web application, network & mobile skill acquisition. Accountable for support leadership in setting strategy for the team moving forward. Responsible for contributing to the positive research and technical capability of BT security. To support and maintain the BT Business Support – Protect BT ISO27001 certificate for Offensive Security team The skills you need Pentest Skills – Web application pen test (OWASP, NIST framework), Network pen test (Linux, windows), API & Mobile pen test. Networking Skills – TCP/IP packet level understanding, Routing, Switching, firewall understanding. Linux Skills – Linux directory structure & basic command line knowledge from pentest/vulnerability assessment standpoint. Vulnerability management- This requires understanding of vulnerability assessment framework (CVE/CVSS) and Security assessment tools (such as Nmap, Metasploit, Burp Suite, SQL map, Nessus) Regulatory Understanding- PCI DSS guidelines, GDPR. Leadership accountabilities Accountabilities of the job: Solution focused achiever: We need this person to focus on delivering exceptional penetration testing services Customer champion: we are transforming how we communicate with our customers and need responsible person with a customer-focused attitude. Change agent: We need a tester who sees our processes and immediately thinks of better ways to do what we are doing and then leads that change. Experience you would be expected to have Mandatory 2-4 Years experience in the field on pen testing. Mandatory Bachelor’s degree or higher preferred. CEH, OSCP, CREST, LPT certifications are highly preferred. Ability to understand packet level TCP/IP knowledge. Good scripting knowledge (e.g. Python) will be highly preferred. Capable of working successfully with end customers PREFERRED. BT is part of BT Group, along with EE, Openreach, and Plusnet. Millions of people rely on us every day to help them live their lives, power their businesses, and keep their public services running. We connect friends to family, clients to colleagues, people to possibilities. We keep the wheels of business spinning, and the emergency services responding. We value diversity and celebrate difference. ‘We embed diversity and inclusion into everything that we do. It’s fundamental to our purpose: we connect for good.’ We all stick to the same values: Personal, Simple, and Brilliant. From day one, you’ll get stuck in to tough challenges, pitch in with ideas, make things happen. But you won’t be alone: we’ll be there with help and support, learning and development. This is your chance to make a real difference to the world: to be part of the digital transformation of countless lives and businesses. Grab it.

Posted 2 weeks ago

Apply

0 years

0 Lacs

Delhi

On-site

GlassDoor logo

Overview As a Penetration Tester you will perform formal and comprehensive penetration testing assessments, including producing full written reports to appropriate standards and within agreed deadlines. In addition, you will support with client pre-engagement activities, including scoping and proposal drafting, as well as researching application and infrastructure vulnerabilities, following responsible disclosure, and sharing such findings within the team. Responsibilities Please note that as part of this role, a dedicated period of time per month working US hours (09:00 – 17:00 EST) will be required . Perform formal and comprehensive application, infrastructure and other penetration testing assessments where appropriate and required; Provide well-written, concise, technical and non-technical reports in English; Perform vulnerability assessments and provide findings with remediation actions; Support with various client pre-engagement interactions, including scoping activities and proposal drafting; Manage and deliver penetration testing project activities within strict deadlines; Research application and infrastructure components within the wider team to identify new vulnerabilities and follow responsible disclosure; Assist in scoping calls and discussions with customers to ensure that client needs are met; Any other appropriate job duties in line with the associated skill and experience of the post holder. Skills and experience required Proven industry experience in application penetration testing; Strong understanding of OWASP, PTES and other penetration testing methodologies; Strong knowledge in testing mobile applications (iOS/Android); Knowledge of how modern web apps are designed, developed and deployed across different platforms; Strong knowledge in preparing and launching social engineering campaigns; Ability to program or script in your preferred language; Relevant security qualifications (such as OSCP, CREST CRT); Good knowledge and understanding of network and OS principles; Good knowledge of various operating systems; Good knowledge of virtualisation. Personal Attributes Excellent spoken and written communication skills with strong attention-to-detail and accuracy; A passion for security and networks; Analytical and problem-solving skills with a can-do attitude and the ability to think laterally; Self-motivation with a commitment to continued development; Ability to work independently and as part of a team; Influencing and negotiation skills with the ability to build relationships at all levels; Willingness to learn. Benefits 25 days annual holiday (UK and US)/21 days privilege leave (India) An additional day’s annual holiday for your birthday Company Pension (UK)/Provident Fund (India)/401k (US) contribution Subsidized gym membership Perkbox employee benefits platform Frequent team events Private Healthcare (individual cover only) Learning Allowance Benefit – a reimbursable benefit of £100 per annum (or equivalent) for you to spend towards your personal career development Flexible working policy Bulletproof YOUR BEST DEFENCE AGAINST CYBER THREATS Bulletproof’s innovative cyber security & compliance services are the best way to stay ahead of the hackers, manage risk, and protect your critical business data. Bulletproof’s core belief is driving innovation through our range of services to deliver true value. We operate in the UK market as Bulletproof, and internationally via our sister brand Target Defense. Bulletproof’s services are split across three core areas: Cyber Security Data Protection Information Security Key to our success is our friendly and knowledgeable staff, across service delivery and internal teams. We deeply value our team and make sure everyone’s experts in their individual disciplines, holding relevant qualifications and certifications. Please note that as part of the recruitment process a criminal records check will be carried out by an authorised third party.

Posted 2 weeks ago

Apply

1.0 years

0 Lacs

Chennai

On-site

GlassDoor logo

About ValGenesis ValGenesis is a leading digital validation platform provider for life sciences companies. ValGenesis suite of products are used by 30 of the top 50 global pharmaceutical and biotech companies to achieve digital transformation, total compliance and manufacturing excellence/intelligence across their product lifecycle. Learn more about working for ValGenesis, the de facto standard for paperless validation in Life Sciences: https://www.youtube.com/watch?v=tASq7Ld0JsQ About the Role: We are looking for experienced product development engineers/experts who could join our flagship VLMS product engineering team to implement the product enhancements and support our global customers. If you are a technology enthusiast and have passion to develop enterprise products with quality, security, and performance, we are eager to discuss with you the potential role. Responsibilities: Understand the business requirements and technical constraints and architect/design/develop. Participate in the complete development life cycle. Review the architecture/design/code of self and others. Develop enterprise application features using C#, ASP .NET development framework. Own and be accountable for the Quality, Performance, Security and Sustenance of the respective product deliverables. Strive for self-excellence along with enabling success of the team/stakeholders. Requirements 1 to 3 years of experience in developing enterprise software products Must have experience in ASP .NET Web Forms with C# Experience in SQL, MS SQL Server Experience in Javascript, JQuery or AngularJS Good knowledge of Web Services, Web API, WCF, LINQ, IIS 7.0+ Knowledge/Experience in SSO integration using LDAP, ADFS, OKTA, PING Knowledge/Experience in HTML5, XML, OOXML, XAML, WPF, CSS, Bootstrap Knowledge/Experience in XSS, SSL, TLS, OWASP standards Knowledge of Code Quality, Code Monitoring, Performance Engineering, Test Automation Tools We’re on a Mission In 2005, we disrupted the life sciences industry by introducing the world’s first digital validation lifecycle management system. ValGenesis VLMS® revolutionized compliance-based corporate validation activities and has remained the industry standard. Today, we continue to push the boundaries of innovation ― enhancing and expanding our portfolio beyond validation with an end-to-end digital transformation platform. We combine our purpose-built systems with world-class consulting services to help every facet of GxP meet evolving regulations and quality expectations. The Team You’ll Join Our customers’ success is our success. We keep the customer experience centered in our decisions, from product to marketing to sales to services to support. Life sciences companies exist to improve humanity’s quality of life, and we honor that mission. We work together. We communicate openly, support each other without reservation, and never hesitate to wear multiple hats to get the job done. We think big. Innovation is the heart of ValGenesis. That spirit drives product development as well as personal growth. We never stop aiming upward. We’re in it to win it. We’re on a path to becoming the number one intelligent validation platform in the market, and we won’t settle for anything less than being a market leader. How We Work Our Chennai, Hyderabad and Bangalore offices are onsite, 5 days per week. We believe that in-person interaction and collaboration fosters creativity, and a sense of community, and is critical to our future success as a company. ValGenesis is an equal-opportunity employer that makes employment decisions on the basis of merit. Our goal is to have the best-qualified people in every job. All qualified applicants will receive consideration for employment without regard to race, religion, sex, sexual orientation, gender identity, national origin, disability, or any other characteristics protected by local law.

Posted 2 weeks ago

Apply

8.0 - 12.0 years

10 - 14 Lacs

Hyderabad, Chennai, Bengaluru

Work from Office

Naukri logo

Security Testing (Penetration testing, DAST Testing, SAST Testing, OWASP top 10) 8-12 Years Experience: 8 to 12 years Category: Software Development/ Engineering Location: Bangalore/Hyderabad/Chennai/Pune/Mumbai Education Qualification: Bachelor's degree in Computer Science or related field or higher with minimum 8 years of relevant experience. Your future duties and responsibilities: 8+ years of penetration testing experience, preferably in highly regulated industries and for global clients Proficiency with scripting and programming languages, mainly Python Perform Penetration Testing for networks (internal & external), applications, APIs & cloud assessments Vulnerability identification and analysis Collaborate with team members and stakeholders to define project scopes, review test results, and determine remediation steps Advanced problem-solving skills Any security certifications are a plus Strong written and verbal communication skills Ability to work autonomously with little directional oversight Ability to lead a project and multiple testers Commitment to quality and on-schedule delivery; and a proven ability to establish and meet milestones and deadlines Customer-focused mentality to understand and appropriately respond to customers business needs Draft reports and communicate complex security concepts and test findings to clients and stakeholders Make expert recommendations to help clients improve their information security program Work on researching & developing utilities, toolkits, processes, tactics, and techniques Required qualifications to be successful in this role: Must to have skills-Penetration testing, DAST Testing, SAST Testing, OWASP top 10 Good to have Skills- Python Skills: Java Python Vulnerability Assessment(IAVA) Vulnerability Testing (IAVT)

Posted 2 weeks ago

Apply

10.0 years

0 Lacs

Chennai, Tamil Nadu, India

On-site

Linkedin logo

OP is looking for a seasoned Solutions Architect to join our dynamic Architecture team and help shape the future of digital transformation. You’ll work alongside visionary technology leaders to craft cutting-edge solutions that address complex business challenges. Ideal candidates will have strong experience in digital, mobile, and cloud technologies and the ability to lead high-impact initiatives from ideation through execution. This is an opportunity to make a tangible difference by delivering next-generation applications that drive business success. Responsibilities Oversee the solution architecture and design for key projects, delivering accurate estimates and coordinating with architects and designers across solution, infrastructure, and data disciplines to effectively address business challenges. Collaborate with delivery teams, production support, and Shared Services partners (such as Quality Assurance, Infrastructure Engineering, and Reference Architecture) to ensure alignment of solution strategies and estimates. Work closely with business stakeholders to identify problems, create new business capabilities, and design technology solutions that drive success, ensuring all solutions align with business requirements while emphasizing performance, scalability, security, and cost-efficiency. Provide architectural guidance by collaborating with portfolio teams, IT departments, and external partners. Present strategies, incorporate feedback, and foster collaboration with cross-functional technical teams. Embed within Scrum teams by engaging in daily standups and ceremonies, providing architectural direction, and guiding and mentoring technical teams through complex architectural challenges while ensuring alignment with best practices and project goals. Continuously assess and recommend specific tools, platforms, and frameworks that meet evolving project needs, ensuring high compatibility and efficiency. Promote and implement modular design principles to facilitate independent component development and testing, while consistently applying best security practices such as least privilege and data protection across all systems. Conduct quality and security assurance, developing metrics to drive and maintain code quality standards, and ensuring adherence to automated code review processes. Evaluate design options by creating high-level cost estimates for various architectural approaches, ensuring solutions are scalable, secure, and high-performing with a focus on cost-efficiency. Design and review high availability and disaster recovery architectures, proactively identifying areas for improvement and remediating issues to meet project and enterprise standards. Qualifications Bachelor’s or Master’s degree in Computer Science, Information Technology, or a related field. 10+ years of IT experience, with at least 3 years as a developer and 3 years as a solution architect. AWS Certified Solution Architect certification strongly preferred. TOGAF certification is a plus. Experience Application Programming languages such as Java, Python, .NET, or similar. Java preferred. JavaScript frameworks such as Angular, React are used for building user interfaces. RESTful APIs, GraphQL, and SOAP for interaction between applications and services. Event streaming and messaging brokers like Apache Kafka, AWS Kinesis, AWS SNS, and SQS, or ActiveMQ. Batch Processing (e.g., ETL and Spring Batch) Microservices architecture Serverless, including AWS Lambda Containerization, including Docker and Kubernetes Design patterns like MVC (Model-View-Controller), Strangler, and SOA (Service-Oriented Architecture) API gateway and management tools like Apigee and Amazon API Gateway Domain Driven Design Integration platforms like Spring Integration for connecting diverse systems. Mobile app development frameworks (e.g., Ionic, Capacitor, React Native, Flutter, or Swift) Workflow and process engines such as AWS Step Functions, Camunda, Flowable, and Pega. Document management systems like Hyland Alfresco. Content management platforms like Adobe AEM and a general eCommerce experience. Testing tools like Selenium, JUnit, or TestNG for creating automated unit, integration, and performance tests. Cloud and DevOps Architecture and detailed design of solutions using cloud platforms like AWS, Microsoft Azure, or Google Cloud. DevOps, including CI/CD pipelines (e.g., GitHub Actions) Infrastructure as Code (e.g., Terraform and OpenTofu) Data SQL databases such as Oracle, PostgreSQL, or Microsoft SQL Server for structured data storage. NoSQL databases like DynamoDB are used for handling unstructured or semi-structured data. Normalizing data models and understanding the trade-offs of denormalization in large-scale systems. Enterprise data architecture includes operational data stores, data replication, data lakes, and data warehousing. Cyber and Privacy Security frameworks like ISO 27001, NIST, or GDPR compliance. Compliance standards like CCPA, GDPR, particularly important when dealing with sensitive business data. Secure coding practices and principles, such as OWASP, encryption techniques, and identity management. Authentication protocols (OAuth, JWT) and identity management solutions (e.g., Azure AD, ForgeRock, SailPoint). Benefits Health Insurance, Accident Insurance. The salary will be determined based on several factors, including, but not limited to, location, relevant education, qualifications, experience, technical skills, and business needs. Additional Responsibilities Participate in OP monthly team meetings, and participate in team-building efforts. Contribute to OP technical discussions, peer reviews, etc. Contribute content and collaborate via the OP-Wiki/Knowledge Base. Provide status reports to OP Account Management as requested. About Us OP is a technology consulting and solutions company, offering advisory and managed services, innovative platforms, and staffing solutions across a wide range of fields — including AI, cyber security, enterprise architecture, and beyond. Our most valuable asset is our people: dynamic, creative thinkers, who are passionate about doing quality work. As a member of the OP team, you will have access to industry-leading consulting practices, strategies & and technologies, innovative training & education. An ideal OP team member is a technology leader with a proven track record of technical excellence and a strong focus on process and methodology. Show more Show less

Posted 2 weeks ago

Apply

8.0 - 12.0 years

4 - 9 Lacs

Chennai

On-site

GlassDoor logo

Experience: 8-12 years of experience in software development and quality assurance, with a strong focus on API automation. Technical Expertise: API Automation: Extensive experience with RestAssured for API testing. Proficiency in Behavior-Driven Development (BDD) frameworks like Cucumber/Gherkin. Experience with API testing tools such as Hoppscotch, Postman, Swagger, or ReadyAPI. Knowledge of API security testing principles and tools (e.g., OWASP). Java and Spring Boot: Strong proficiency in Java and related open-source technologies. Hands-on experience with Spring Boot and Spring Cloud frameworks for building microservices. Experience with dependency injection, RESTful APIs, and other core Spring concepts. Cloud Technologies: Solid understanding of cloud-native technologies and architectures. Experience with containerization technologies like Docker and container orchestration platforms like Kubernetes. Familiarity with Google Cloud Platform (GCP) services (e.g., Compute Engine, Cloud Storage, Cloud Functions). Testing Frameworks and Tools: Experience with unit testing frameworks like JUnit and TestNG. Proficiency in using IDEs such as Eclipse or IntelliJ IDEA. Experience with CI/CD tools like Jenkins, GitLab CI, or CircleCI. Databases: Basic knowledge of relational databases (e.g., MySQL, PostgreSQL) and NoSQL datastores (e.g., MongoDB, Cassandra). Experience with data quality testing and working with large datasets. Version Control and Collaboration: Proficiency in using version control systems like Git. Experience with collaborative tools like GitHub, Bitbucket, or GitLab. Other Technologies (Nice to Have): Knowledge of contract testing using Pact or similar frameworks. Exposure to performance testing tools like JMeter or Gatling. Experience with monitoring and logging tools like Prometheus, Grafana, or ELK stack. Agile Development: Familiarity with Agile development methodologies (e.g., Scrum, Kanban). Experience working in Agile teams and participating in sprint ceremonies. Soft Skills: Excellent communication, interpersonal, and collaboration skills. Strong problem-solving and analytical abilities. Ability to work independently and as part of a team. Keen to learn the design and architecture of the product and participate in ceremonies that can influence both. Key Responsibilities: Leadership and Strategy: Develop and execute a comprehensive API automation strategy aligned with the overall quality goals of the organization. Identify and implement innovative testing approaches and technologies to enhance the efficiency and effectiveness of our QA processes. API Automation Development: Design, develop, and maintain robust and scalable API automation frameworks using RestAssured and BDD principles. Write clean, well-documented, and maintainable automation scripts to validate API functionality, performance, and security. Implement data-driven testing strategies to ensure comprehensive test coverage. Integrate automation scripts into the CI/CD pipeline for continuous testing. Collaboration and Communication: Collaborate closely with developers, product managers, and other stakeholders to understand requirements and ensure testability. Participate in design and architecture reviews to provide feedback on testability and identify potential quality risks. Communicate test results and quality metrics to stakeholders in a clear and concise manner. Work with extended integration partner teams to define and execute exploratory and automated API tests Quality Assurance and Best Practices: Establish and enforce QA guidelines, best practices, and standards across the team. Actively review code to ensure software quality and functional accuracy. Ensure all code adheres to secure coding practices and meets minimum code coverage requirements. Stay up-to-date with the latest trends and technologies in API automation and cloud-native testing. Promote a culture of quality ownership and accountability within the team. Operational Support: Handle operational issues with minimal oversight, troubleshooting and resolving problems quickly and effectively. Build reusable frameworks and integrate SaaS frameworks to improve efficiency and scalability. Responsibilities in Detail: Coding and Development: Complete coding tasks according to design specifications with the highest quality and within the scheduled time. Work under the guidance of a Technical Architect, contributing to the overall system design. Build reusable frameworks and integrate SaaS frameworks to enhance testing capabilities. Code Quality and Security: Ensure all code delivered adheres to secure coding practices. Maintain adequate code coverage, aiming for a minimum of 70%. Actively review code to ensure software quality and functional accuracy across the team. Documentation and Reporting: Develop, document, and maintain test plans, procedures, and scripts. Use code repositories and tracking systems such as Git, Confluence/SharePoint, and JIRA for documentation, scripts, results, configuration, and supporting data. Domain Knowledge (Plus): Good understanding of the eCommerce domain is a plus.

Posted 2 weeks ago

Apply

7.0 years

0 Lacs

Guwahati, Assam, India

Remote

Linkedin logo

Experience : 7.00 + years Salary : USD 45000.00 / year (based on experience) Expected Notice Period : 15 Days Shift : (GMT+05:30) Asia/Kolkata (IST) Opportunity Type : Remote Placement Type : Full Time Contract for 12 Months(40 hrs a week/160 hrs a month) (*Note: This is a requirement for one of Uplers' client - A Renowned Hiring Product Company from USA) What do you need for this opportunity? Must have skills required: Ansible, Azure bicep, Azure Well-Architected Framework, GitHub/Azure DevOps, PowerShell, SOC 2, C#/.NET, CI/CD, IAC, Next Js, OWASP security practices, react, Azure, Postgre SQL, Type Script A Renowned Hiring Product Company from USA is Looking for: Senior Full Stack & Cloud Engineer We’re looking for a Senior Full Stack & Cloud Engineer to join our dynamic and globally distributed team. This hybrid role blends deep expertise in software engineering (primarily backend and frontend development) with solid cloud engineering skills, particularly in Microsoft Azure. If you're passionate about modern software architecture, migrating legacy systems, and building robust, cloud-native applications, we want to hear from you! Key Responsibilities (Software Engineering): Lead the migration of a legacy Ruby on Rails codebase to C# .NET WebAPI, ensuring performance, scalability, and maintainability. Design and develop RESTful APIs and backend services using C# .NET WebApi. Build dynamic, responsive front-end applications using Next.js or React. Engineer robust and optimized databases using PostgreSQL, ensuring data integrity and high performance. Implement DevOps best practices, including CI/CD, feature flagging, and Infrastructure as Code (IaC). Write automated test suites using frameworks like Selenium or Playwright. Collaborate with cross-functional teams including product managers, designers, and engineers. Use AI-powered tools (e.g., Caliplot, Azure AI) to streamline workflows and enhance application functionality. Mentor junior developers and conduct thorough code reviews to uphold coding standards. Follow OWASP Top 10 guidelines for secure development. Key Responsibilities (Cloud Engineering): Design and manage highly available Azure-based cloud infrastructure using Infrastructure as Code (IaC) tools like Azure Bicep and PowerShell. Support the transition from AWS to Azure, moving workloads from IaaS to managed services. Maintain and monitor systems using telemetry tools such as Datadog, ensuring 99.99% uptime. Build and maintain secure CI/CD pipelines using GitHub Actions or Azure DevOps. Implement automated self-healing workflows to support 24x7 uptime. Stay up to date with the latest Azure services and DevSecOps practices. Required Skills: 7+ years of experience in backend development with C# .NET WebApi Strong frontend experience using React or Next.js Expertise in PostgreSQL with a solid understanding of database tuning and integrity Proven experience in migrating legacy applications (preferably from Ruby on Rails) Solid grasp of OWASP security practices and modern authentication protocols (OAuth/JWT) Experience with CI/CD, feature toggling, and automated deployments Hands-on experience with IaC and cloud platforms (Azure preferred) Familiarity with AI-enhanced development tools Excellent communication skills in English — written and spoken Ability to collaborate across time zones with US-based team members Preferred Skills: Familiarity with Ansible or other configuration management tools Experience with Azure Bicep, PowerShell, and GitHub/Azure DevOps Understanding of Azure Well-Architected Framework Experience working with compliance standards such as SOC 2 Knowledge of TypeScript for full-stack consistency Educational Requirements: Bachelor’s degree in Computer Science, Information Technology, or a related field Master’s degree preferred Engagement Type: Job Type: Contract for 1 year - High Chances of contract extension Location: 100% Remote Working time: 9:00 AM to 6 :00 PM Interview Process: 3 rounds How to apply for this opportunity? Step 1: Click On Apply! And Register or Login on our portal. Step 2: Complete the Screening Form & Upload updated Resume Step 3: Increase your chances to get shortlisted & meet the client for the Interview! About Uplers: Our goal is to make hiring reliable, simple, and fast. Our role will be to help all our talents find and apply for relevant contractual onsite opportunities and progress in their career. We will support any grievances or challenges you may face during the engagement. (Note: There are many more opportunities apart from this on the portal. Depending on the assessments you clear, you can apply for them as well). So, if you are ready for a new challenge, a great work environment, and an opportunity to take your career to the next level, don't hesitate to apply today. We are waiting for you! Show more Show less

Posted 2 weeks ago

Apply

7.0 years

0 Lacs

Amritsar, Punjab, India

Remote

Linkedin logo

Experience : 7.00 + years Salary : USD 45000.00 / year (based on experience) Expected Notice Period : 15 Days Shift : (GMT+05:30) Asia/Kolkata (IST) Opportunity Type : Remote Placement Type : Full Time Contract for 12 Months(40 hrs a week/160 hrs a month) (*Note: This is a requirement for one of Uplers' client - A Renowned Hiring Product Company from USA) What do you need for this opportunity? Must have skills required: Ansible, Azure bicep, Azure Well-Architected Framework, GitHub/Azure DevOps, PowerShell, SOC 2, C#/.NET, CI/CD, IAC, Next Js, OWASP security practices, react, Azure, Postgre SQL, Type Script A Renowned Hiring Product Company from USA is Looking for: Senior Full Stack & Cloud Engineer We’re looking for a Senior Full Stack & Cloud Engineer to join our dynamic and globally distributed team. This hybrid role blends deep expertise in software engineering (primarily backend and frontend development) with solid cloud engineering skills, particularly in Microsoft Azure. If you're passionate about modern software architecture, migrating legacy systems, and building robust, cloud-native applications, we want to hear from you! Key Responsibilities (Software Engineering): Lead the migration of a legacy Ruby on Rails codebase to C# .NET WebAPI, ensuring performance, scalability, and maintainability. Design and develop RESTful APIs and backend services using C# .NET WebApi. Build dynamic, responsive front-end applications using Next.js or React. Engineer robust and optimized databases using PostgreSQL, ensuring data integrity and high performance. Implement DevOps best practices, including CI/CD, feature flagging, and Infrastructure as Code (IaC). Write automated test suites using frameworks like Selenium or Playwright. Collaborate with cross-functional teams including product managers, designers, and engineers. Use AI-powered tools (e.g., Caliplot, Azure AI) to streamline workflows and enhance application functionality. Mentor junior developers and conduct thorough code reviews to uphold coding standards. Follow OWASP Top 10 guidelines for secure development. Key Responsibilities (Cloud Engineering): Design and manage highly available Azure-based cloud infrastructure using Infrastructure as Code (IaC) tools like Azure Bicep and PowerShell. Support the transition from AWS to Azure, moving workloads from IaaS to managed services. Maintain and monitor systems using telemetry tools such as Datadog, ensuring 99.99% uptime. Build and maintain secure CI/CD pipelines using GitHub Actions or Azure DevOps. Implement automated self-healing workflows to support 24x7 uptime. Stay up to date with the latest Azure services and DevSecOps practices. Required Skills: 7+ years of experience in backend development with C# .NET WebApi Strong frontend experience using React or Next.js Expertise in PostgreSQL with a solid understanding of database tuning and integrity Proven experience in migrating legacy applications (preferably from Ruby on Rails) Solid grasp of OWASP security practices and modern authentication protocols (OAuth/JWT) Experience with CI/CD, feature toggling, and automated deployments Hands-on experience with IaC and cloud platforms (Azure preferred) Familiarity with AI-enhanced development tools Excellent communication skills in English — written and spoken Ability to collaborate across time zones with US-based team members Preferred Skills: Familiarity with Ansible or other configuration management tools Experience with Azure Bicep, PowerShell, and GitHub/Azure DevOps Understanding of Azure Well-Architected Framework Experience working with compliance standards such as SOC 2 Knowledge of TypeScript for full-stack consistency Educational Requirements: Bachelor’s degree in Computer Science, Information Technology, or a related field Master’s degree preferred Engagement Type: Job Type: Contract for 1 year - High Chances of contract extension Location: 100% Remote Working time: 9:00 AM to 6 :00 PM Interview Process: 3 rounds How to apply for this opportunity? Step 1: Click On Apply! And Register or Login on our portal. Step 2: Complete the Screening Form & Upload updated Resume Step 3: Increase your chances to get shortlisted & meet the client for the Interview! About Uplers: Our goal is to make hiring reliable, simple, and fast. Our role will be to help all our talents find and apply for relevant contractual onsite opportunities and progress in their career. We will support any grievances or challenges you may face during the engagement. (Note: There are many more opportunities apart from this on the portal. Depending on the assessments you clear, you can apply for them as well). So, if you are ready for a new challenge, a great work environment, and an opportunity to take your career to the next level, don't hesitate to apply today. We are waiting for you! Show more Show less

Posted 2 weeks ago

Apply

8.0 years

0 Lacs

Bengaluru, Karnataka, India

On-site

Linkedin logo

About Licious We are Licious and we are a Bengaluru-based meat and seafood company founded in 2015 by Abhay Hanjura and Vivek Gupta, our founders, foodies, and friends. We pride ourselves on being India’s most successful D2C food-tech brand operating in 20 cities across the country delighting over 32 lac customers with our de-licious fresh meat and seafood! About the Role As an Engineering Manager - SDET/QA, you will lead our Quality Engineering team, playing a pivotal role in ensuring the highest quality, reliability, and scalability of our products. You'll drive strategic direction, implement advanced automation frameworks, and establish best practices while fostering a collaborative and quality-focused culture. Key Responsibilities Define and implement the organization's overall QA and test automation strategy across applications, APIs, and services. Lead the architecture and development of scalable and maintainable test automation frameworks. Oversee and enhance CI/CD pipelines to integrate continuous testing effectively. Develop and enforce performance, scalability, and security testing strategies. Champion Shift Left Testing by collaborating closely with development teams. Recruit, mentor, and manage a team of SDETs and QA engineers, guiding them on automation best practices, test strategies, and debugging techniques. Drive high-quality software releases through detailed test planning, execution of regression, integration, and functional tests. Integrate AI/ML techniques for predictive and intelligent testing methodologies. Promote best practices like Test-Driven Development (TDD) and Behavior-Driven Development (BDD). Regularly monitor, analyze, and report test outcomes, defect metrics, and quality trends to stakeholders. Cultivate a culture of quality, accountability, and continuous improvement within the engineering organization. Skills & Qualifications 8 To 10+ years of experience in software testing, automation, and quality assurance, with at least 3+ years in a managerial role. Strong proficiency in one or more programming languages: Java/ Python Proven expertise with test automation frameworks such as Selenium, Cypress, Playwright, Appium, TestNG, JUnit, or Cucumber. Extensive experience with CI/CD processes, DevOps principles, and cloud infrastructure (AWS, Azure, GCP). Demonstrated knowledge of performance testing tools like JMeter, Gatling, k6, or Locust. Familiarity with security testing standards and tools (e.g., OWASP, Burp Suite, ZAP). Hands-on experience in API testing using Postman, RestAssured, Karate, or similar tools. Solid understanding of databases (SQL and NoSQL) and data validation practices. Exceptional analytical, debugging, and troubleshooting capabilities. Strong leadership skills with the ability to effectively collaborate across multiple cross-functional teams. Preferred Qualifications Experience utilizing AI-driven test automation tools. Previous involvement in testing large-scale distributed systems and microservices architectures. Proficiency in container technologies (Docker, Kubernetes) and Infrastructure as Code solutions (Terraform, Ansible). Exposure to predictive analytics in quality engineering and proactive issue identification. Show more Show less

Posted 2 weeks ago

Apply

2.0 years

0 Lacs

Mumbai, Maharashtra, India

On-site

Linkedin logo

Line of Service Advisory Industry/Sector FS X-Sector Specialism Risk Management Level Associate Job Description & Summary We are seeking a highly skilled Sailpoint Developer .If candidate has experience of 2-3 years, he/she must be Sailpoint Certified, above 3 years experience sailpoint certification is not mandatory but good to have. *Why PWC At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us . At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. " Job Description & Summary : We are seeking a highly skilled and experienced Cybersecurity/Risk Consulting Senior Associate to join our Risk Consulting team. As a Cybersecurity Senior Associate, you will be responsible for leading and managing a team of consultants to deliver high-quality cybersecurity and risk management services to our clients. Responsibilities: Good interpersonal skills (written and oral communication) and ability to articulate complex issues Ability to communicate technical information clearly and concisely, commensurate with the audience Conceptual thinking and communication skills — the ability to conceptualize complex business and technical requirements into comprehensible models and templates. Good communicator (written and verbal) and listener. Must be a team player and motivated self-starter with ability to work independently with limited supervision. Must be assertive, methodical and detail oriented Technical Experience: Experience in Web and Mobile Application Security Testing, Vulnerability Assessment and Penetration testing Analyze scan reports and suggest remediation / mitigation plan for security vulnerabilities Should be aware of tools like Qualys, HP Fortify, IBM Appscan , Burpsuite , Kali Linux suite of tools Expertise in mobile apps reverse engineering and in-depth knowledge of Android and iOS ecosystems. Knowledge of industry standard tools for mobile pentest . Thorough understanding of OWASP Top 10 vulnerabilities and their mitigations. Knowledge of Network Security technology in areas of Firewall, IPS, VPN, Gateway security solutions (proxy, web filtering) Conduct penetration test and launch exploits using Nessus, Metaspoilt , kali linux penetration testing distribution tools sets Conduct Vulnerability Assessments of Network Devices using various open source and commercial tools Map out a network, discover ports and services running on the different exposed network and security devices Research and maintain proficiency in computer network exploitation, tools, techniques, countermeasures, and trends in computer network vulnerabilities, data hiding, network security, and encryption. In-depth understanding on Common Vulnerability Exposure (CVE)/ CERT advisory database. Broad background of networks, operating systems (Window, Unix, Linux), firewalls and security engineering concepts. Knowledge of scripting languages (Perl, Python, Shell etc) will be added advantage Knowledge of Open-Source Security Testing Methodology Manual (OSSTMM) Mandatory skill sets: CEH, ECSA, LPT ( any one ) Preferred skill sets: OSCP, OSWE Years of experience required : 2 - 10 Years Education qualification: B.Tech Education (if blank, degree and/or field of study not specified) Degrees/Field of Study required: Bachelor of Technology Degrees/Field of Study preferred: Certifications (if blank, certifications not specified) Required Skills SailPoint IdentityIQ Optional Skills Accepting Feedback, Accepting Feedback, Access Control Models, Access Control System, Access Management, Active Listening, Authorization Compliance, Authorization Management Systems, Azure Active Directory, Cloud Identity and Access Management (IAM), Communication, CyberArk Management, Cybersecurity, Emotional Regulation, Empathy, Encryption Technologies, Federated Identity Management, ForgeRock Identity Platform, Identity and Access Management (IAM), Identity-Based Encryption, Identity Federation, Identity Governance Framework (IGF), Identity Verification, Inclusion, Information Security {+ 17 more} Desired Languages (If blank, desired languages not specified) Travel Requirements Not Specified Available for Work Visa Sponsorship? No Government Clearance Required? No Job Posting End Date Show more Show less

Posted 2 weeks ago

Apply

0 years

0 Lacs

India

Remote

Linkedin logo

One of our clients is looking to hire a Senior QA Engineer on a contract basis. Please see the details below: Job Role: Senior QA Engineer Job Type: Freelance Duration:- 1 months Work mode:- WFH Location:- Remote Job Title: Senior QA Engineer (Automation & Strategy) We’re seeking a Senior QA Engineer to lead and scale our quality assurance efforts. You’ll define the overall QA strategy and drive the implementation of automated testing frameworks, ensuring high reliability across our platforms. Key Responsibilities: QA Strategy & Leadership: Define comprehensive QA vision across functional, regression, performance, and security testing. Champion best practices through documentation and mentoring. Automation Ownership: Build and maintain scalable test frameworks using Cypress, Playwright, or Selenium. Seamlessly integrate test suites into CI/CD pipelines like GitHub Actions or Jenkins. API & Backend Testing: Automate REST/GraphQL API testing with tools like Postman, REST Assured, and custom scripts. Enable contract testing and service mocks. Performance & Security: Lead load and performance testing with JMeter, k6, or Locust. Embed security scans (OWASP ZAP, Burp) into the CI pipeline. Show more Show less

Posted 2 weeks ago

Apply

1.0 years

0 Lacs

Gurugram, Haryana, India

On-site

Linkedin logo

Job Title: VAPT From Consult to Associate Director Location: Gurgaon, Mohali Experience: 1 to 10+ years Work Mode: Onsite Role Overview: We are seeking a highly skilled Vulnerability Assessment and Penetration Testing (VAPT) Manager / Senior Manager to lead and manage end-to-end security assessment projects across applications, infrastructure, networks, and cloud environments. This role involves both hands-on technical execution and oversight of team deliverables, with a focus on client delivery, quality assurance, and stakeholder communication. Key Responsibilities: Lead and execute VAPT engagements across web apps, mobile apps, infrastructure, networks, cloud platforms , and source code reviews . Conduct detailed manual and automated vulnerability assessments and penetration testing. Review and validate test reports, ensuring clear and actionable remediation guidance. Mentor and guide junior team members, supporting their technical and professional development. Coordinate with clients, internal teams, and management to deliver secure, compliant, and high-quality solutions. Stay updated with emerging threats, tools, and techniques in the cybersecurity domain. Ensure adherence to industry standards such as OWASP, NIST, ISO 27001, PCI-DSS, and RBI guidelines . Desired Skills & Experience: 1 to 10+ years of experience in VAPT with strong expertise in manual testing beyond automated scanners. Hands-on experience with tools such as Burp Suite, Metasploit, Nessus, Nmap, Wireshark, Fortify, AppScan , etc. Proficiency in secure coding practices and at least one programming language (e.g., Python, Java, JavaScript). Strong report writing, presentation, and communication skills. Familiarity with cloud security (AWS, Azure, GCP) is a plus. OSCP certification is an added advantage, but not mandatory . Experience managing security projects and small teams preferred. Why Join Us? Work on high-impact cybersecurity projects. Opportunity to lead and grow a team of security professionals. Collaborative work environment with cutting-edge tools and training. Competitive salary and benefits. Priority consideration for immediate joiners . Show more Show less

Posted 2 weeks ago

Apply

7.0 years

0 Lacs

Surat, Gujarat, India

Remote

Linkedin logo

Experience : 7.00 + years Salary : USD 45000.00 / year (based on experience) Expected Notice Period : 15 Days Shift : (GMT+05:30) Asia/Kolkata (IST) Opportunity Type : Remote Placement Type : Full Time Contract for 12 Months(40 hrs a week/160 hrs a month) (*Note: This is a requirement for one of Uplers' client - A Renowned Hiring Product Company from USA) What do you need for this opportunity? Must have skills required: Ansible, Azure bicep, Azure Well-Architected Framework, GitHub/Azure DevOps, PowerShell, SOC 2, C#/.NET, CI/CD, IAC, Next Js, OWASP security practices, react, Azure, Postgre SQL, Type Script A Renowned Hiring Product Company from USA is Looking for: Senior Full Stack & Cloud Engineer We’re looking for a Senior Full Stack & Cloud Engineer to join our dynamic and globally distributed team. This hybrid role blends deep expertise in software engineering (primarily backend and frontend development) with solid cloud engineering skills, particularly in Microsoft Azure. If you're passionate about modern software architecture, migrating legacy systems, and building robust, cloud-native applications, we want to hear from you! Key Responsibilities (Software Engineering): Lead the migration of a legacy Ruby on Rails codebase to C# .NET WebAPI, ensuring performance, scalability, and maintainability. Design and develop RESTful APIs and backend services using C# .NET WebApi. Build dynamic, responsive front-end applications using Next.js or React. Engineer robust and optimized databases using PostgreSQL, ensuring data integrity and high performance. Implement DevOps best practices, including CI/CD, feature flagging, and Infrastructure as Code (IaC). Write automated test suites using frameworks like Selenium or Playwright. Collaborate with cross-functional teams including product managers, designers, and engineers. Use AI-powered tools (e.g., Caliplot, Azure AI) to streamline workflows and enhance application functionality. Mentor junior developers and conduct thorough code reviews to uphold coding standards. Follow OWASP Top 10 guidelines for secure development. Key Responsibilities (Cloud Engineering): Design and manage highly available Azure-based cloud infrastructure using Infrastructure as Code (IaC) tools like Azure Bicep and PowerShell. Support the transition from AWS to Azure, moving workloads from IaaS to managed services. Maintain and monitor systems using telemetry tools such as Datadog, ensuring 99.99% uptime. Build and maintain secure CI/CD pipelines using GitHub Actions or Azure DevOps. Implement automated self-healing workflows to support 24x7 uptime. Stay up to date with the latest Azure services and DevSecOps practices. Required Skills: 7+ years of experience in backend development with C# .NET WebApi Strong frontend experience using React or Next.js Expertise in PostgreSQL with a solid understanding of database tuning and integrity Proven experience in migrating legacy applications (preferably from Ruby on Rails) Solid grasp of OWASP security practices and modern authentication protocols (OAuth/JWT) Experience with CI/CD, feature toggling, and automated deployments Hands-on experience with IaC and cloud platforms (Azure preferred) Familiarity with AI-enhanced development tools Excellent communication skills in English — written and spoken Ability to collaborate across time zones with US-based team members Preferred Skills: Familiarity with Ansible or other configuration management tools Experience with Azure Bicep, PowerShell, and GitHub/Azure DevOps Understanding of Azure Well-Architected Framework Experience working with compliance standards such as SOC 2 Knowledge of TypeScript for full-stack consistency Educational Requirements: Bachelor’s degree in Computer Science, Information Technology, or a related field Master’s degree preferred Engagement Type: Job Type: Contract for 1 year - High Chances of contract extension Location: 100% Remote Working time: 9:00 AM to 6 :00 PM Interview Process: 3 rounds How to apply for this opportunity? Step 1: Click On Apply! And Register or Login on our portal. Step 2: Complete the Screening Form & Upload updated Resume Step 3: Increase your chances to get shortlisted & meet the client for the Interview! About Uplers: Our goal is to make hiring reliable, simple, and fast. Our role will be to help all our talents find and apply for relevant contractual onsite opportunities and progress in their career. We will support any grievances or challenges you may face during the engagement. (Note: There are many more opportunities apart from this on the portal. Depending on the assessments you clear, you can apply for them as well). So, if you are ready for a new challenge, a great work environment, and an opportunity to take your career to the next level, don't hesitate to apply today. We are waiting for you! Show more Show less

Posted 2 weeks ago

Apply

4.0 years

0 Lacs

Bengaluru, Karnataka, India

On-site

Linkedin logo

Responsible for assessing, challenging, and testing the design and operational effectiveness of controls using TR’s control framework by working collaboratively with control owners and stakeholders to improve the control testing process, including defining re-test cycles and evidence expected. About the Role: In this opportunity as Compliance Program Technical Auditor, you will assess, challenge, and test the design and operational effectiveness of controls using TR’s control framework by working collaboratively with control owners and stakeholders to improve the control testing process, including defining re-test cycles and evidence expected. Execute a testing plan by communicating requirements to control owners, reviewing evidence submitted, agreeing on deficiencies found and finalizing the next steps in meeting control requirements. Oversee and act as a liaison for both external and internal audits . Identify procedures and practices that are not compliant with industry Frameworks Recommend and support stakeholders making changes to address non-compliance issues. Compile reports on audit results and present them to managers & supervisors. Propose efficiencies and automation where possible to optimize workflow. Work closely with other teams like ERM, Finance, business and application owners, third party or contractors supporting processes to report and track remediation plans for any control deficiencies identified. Ensure awareness about security risks, best practices and policy/standard requirements are essential to ensure compliance. Work independently, act decisively and ensure personal deadlines and team requirements are met. Willingness and drive to learn continuously and approach change with openness. About You: You're a fit for the role of Senior Business Technology Analyst if your background includes: Bachelor's degree in IT, Accounting, Finance or equivalent education and experience. At least 4+ years of relevant work experience in SoX, ITGC, SOC, PCI within Audit, Big 5, consulting firms or as line 1a or line 1b completing IT-IS control testing or working within a Governance or Compliance function across Financial Services organizations. One of these certifications in order of preference is essential CISA, CISSP, CCAK, CISM, CRISC. Strong ethical principles and understanding of business and IS ethics. Awareness about common security vulnerabilities of web and cloud applications and operating techniques from sources such as SANS, OWASP Top 10 and Cloud Security Alliance (CSA). Experience in testing Cloud controls and related technologies will be an asset. Excellent oral and written communication skills in English. Additional expertise in French, Spanish or another language will be an asset. Knowledge about GRC platforms like ServiceNow, Process Unity, RSA Archer, MetricStream and like. What’s in it For You? Hybrid Work Model: We’ve adopted a flexible hybrid working environment (2-3 days a week in the office depending on the role) for our office-based roles while delivering a seamless experience that is digitally and physically connected. Flexibility & Work-Life Balance: Flex My Way is a set of supportive workplace policies designed to help manage personal and professional responsibilities, whether caring for family, giving back to the community, or finding time to refresh and reset. This builds upon our flexible work arrangements, including work from anywhere for up to 8 weeks per year, empowering employees to achieve a better work-life balance. Career Development and Growth: By fostering a culture of continuous learning and skill development, we prepare our talent to tackle tomorrow’s challenges and deliver real-world solutions. Our Grow My Way programming and skills-first approach ensures you have the tools and knowledge to grow, lead, and thrive in an AI-enabled future. Industry Competitive Benefits: We offer comprehensive benefit plans to include flexible vacation, two company-wide Mental Health Days off, access to the Headspace app, retirement savings, tuition reimbursement, employee incentive programs, and resources for mental, physical, and financial wellbeing. Culture: Globally recognized, award-winning reputation for inclusion and belonging, flexibility, work-life balance, and more. We live by our values: Obsess over our Customers, Compete to Win, Challenge (Y)our Thinking, Act Fast / Learn Fast, and Stronger Together. Social Impact: Make an impact in your community with our Social Impact Institute. We offer employees two paid volunteer days off annually and opportunities to get involved with pro-bono consulting projects and Environmental, Social, and Governance (ESG) initiatives. Making a Real-World Impact: We are one of the few companies globally that helps its customers pursue justice, truth, and transparency. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, and provide trusted, unbiased information to people all over the world. About Us Thomson Reuters informs the way forward by bringing together the trusted content and technology that people and organizations need to make the right decisions. We serve professionals across legal, tax, accounting, compliance, government, and media. Our products combine highly specialized software and insights to empower professionals with the data, intelligence, and solutions needed to make informed decisions, and to help institutions in their pursuit of justice, truth, and transparency. Reuters, part of Thomson Reuters, is a world leading provider of trusted journalism and news. We are powered by the talents of 26,000 employees across more than 70 countries, where everyone has a chance to contribute and grow professionally in flexible work environments. At a time when objectivity, accuracy, fairness, and transparency are under attack, we consider it our duty to pursue them. Sound exciting? Join us and help shape the industries that move society forward. As a global business, we rely on the unique backgrounds, perspectives, and experiences of all employees to deliver on our business goals. To ensure we can do that, we seek talented, qualified employees in all our operations around the world regardless of race, color, sex/gender, including pregnancy, gender identity and expression, national origin, religion, sexual orientation, disability, age, marital status, citizen status, veteran status, or any other protected classification under applicable law. Thomson Reuters is proud to be an Equal Employment Opportunity Employer providing a drug-free workplace. We also make reasonable accommodations for qualified individuals with disabilities and for sincerely held religious beliefs in accordance with applicable law. More information on requesting an accommodation here. Learn more on how to protect yourself from fraudulent job postings here. More information about Thomson Reuters can be found on thomsonreuters.com. Show more Show less

Posted 2 weeks ago

Apply

Exploring OWASP Jobs in India

The OWASP (Open Web Application Security Project) job market in India is growing rapidly as organizations prioritize cybersecurity and the protection of sensitive data. Professionals with expertise in OWASP are in high demand across various industries, offering lucrative career opportunities for job seekers in India.

Top Hiring Locations in India

  1. Bangalore
  2. Mumbai
  3. Delhi NCR
  4. Hyderabad
  5. Pune

These cities are hotspots for OWASP job opportunities, with numerous companies actively seeking professionals with OWASP skills.

Average Salary Range

The average salary range for OWASP professionals in India varies based on experience levels:

  • Entry-level: INR 4-6 lakhs per annum
  • Mid-level: INR 8-12 lakhs per annum
  • Experienced: INR 15-20 lakhs per annum

Salaries can vary based on the company, location, and individual skills and qualifications.

Career Path

A typical career path in OWASP may include progressing from roles such as Junior Security Analyst or Web Application Security Engineer to Senior Security Consultant, OWASP Project Leader, and ultimately to a Chief Information Security Officer (CISO) or Security Architect.

Related Skills

In addition to OWASP expertise, professionals in this field are often expected to have knowledge and experience in areas such as penetration testing, secure coding practices, network security, cryptography, and risk management.

Interview Questions

  • What is OWASP and why is it important in web application security? (basic)
  • Can you explain the difference between XSS and CSRF attacks? (medium)
  • How would you mitigate SQL injection vulnerabilities in a web application? (medium)
  • What tools do you use for OWASP testing and vulnerability assessment? (basic)
  • Describe the steps you would take to secure a RESTful API. (advanced)
  • What are the common security risks associated with mobile applications? (medium)

...and many more!

Closing Remark

As you explore OWASP job opportunities in India, remember to continuously enhance your skills, stay updated on the latest trends in cybersecurity, and showcase your expertise confidently during interviews. With dedication and preparation, you can secure a rewarding career in OWASP and contribute to safeguarding digital assets in the ever-evolving landscape of cybersecurity. Good luck on your job search!

cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies