Home
Jobs

1381 Owasp Jobs - Page 36

Filter Interviews
Min: 0 years
Max: 25 years
Min: ₹0
Max: ₹10000000
Setup a job Alert
Filter
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

4.0 years

0 Lacs

Mumbai, Maharashtra, India

On-site

Linkedin logo

TCS has been a great pioneer in feeding the fire of Young Techies like you. We are a global leader in the technology arena and there's nothing that can stop us from growing together. Role**: Web Application Firewall (WAF) Desired Skill Set Any: WAF, F5, Akamai, Barracuda, Cloudflare Experience Range : 4+ years Joining Location : PAN India We are currently planning to do a Walk-In Interview on 07th June 2025 at TCS Mumbai. Date - 07th June 2025 (Saturday) Venue - TCS OLYMPUS , Hiranandani Estate, Thane West, Thane , Maharashtra 400615 Job Description Role & Responsibilities: Provide Day to day operational support for WAF Mgmt Responsible for the design, planning, implementation, and operation of setups and management. Onboarding/Offboarding web applications Troubleshooting of operation issues reported by application teams. Firmware upgradation (stable versions) Closing of audit points/vulnerabilities by coordinating with internal and external teams Configuring virtual servers, nodes, pools and certificates Creation of security policies for web applications Fine-tuning of existing security policies in order to strengthen application security. Whitelisting attributes like URL parameters, file types based on the applications requirement. Event logs monitoring Configuration backups Hardening Policies OWASP top 10 compliance ACL configuration for Websites, Applications Event & Log monitoring Maintain Config backup. Knowledge on DNS technology for A record and CName Generating Daily & Weekly & Monthly reports on Application hosted on WAF. ITIL & ITSM Knowledge IPS/IDS signature creation/modification as per requirement of Application Show more Show less

Posted 2 weeks ago

Apply

0 years

0 Lacs

Chennai, Tamil Nadu, India

On-site

Linkedin logo

EXP- 5-8YRS  A strong candidate for this DevOps role will possess expertise across several key areas: 1. Operating Systems & Scripting: Linux Operating Systems (Proficient/Must-Have): Deep understanding of Linux fundamentals, command-line interface (CLI), file systems, process management, networking, and user/group management. Shell Scripting (Bash/Shell): Ability to write and troubleshoot robust shell scripts for automation tasks, system administration, and CI/CD pipelines. 2. Version Control: Git (Source Control): Expert-level proficiency in Git for managing source code, branching strategies (e.g., Gitflow, GitHub Flow), merging, rebasing, and collaborative development. 3. CI/CD (Continuous Integration/Continuous Delivery): Jenkins CI: Hands-on experience with Jenkins for building, testing, and deploying applications. This includes creating and managing pipelines, setting up build jobs, and integrating with other tools. Build Process Knowledge: Understanding and ability to configure build processes for various application types: Java Applications (Maven): Experience with Maven for building Java projects, managing dependencies, and executing tests. Angular Applications (NPM/Yarn): Familiarity with Node.js, npm, or Yarn for building, testing, and packaging Angular applications. 4. Containerization & Orchestration: Docker Containers: Strong knowledge of Docker for containerizing applications (writing Dockerfiles, managing images, running containers, Docker Compose). Container Orchestration (OpenShift): Practical experience with OpenShift (or Kubernetes) for deploying, scaling, and managing containerized applications in a production environment. This includes understanding Pods, Deployments, Services, Routes, ConfigMaps, Secrets, etc. 5. DevSecOps & Security: DevSecOps Principles: Understanding of integrating security practices throughout the entire software development lifecycle (shifting left). Dynamic Application Security Testing (DAST): Experience with tools and processes for performing dynamic security scans against running applications to identify vulnerabilities (e.g., OWASP ZAP, Burp Suite). SSL Certificates: Knowledge of managing, configuring, and troubleshooting SSL/TLS certificates for secure communication. Key Vault Management: Experience with secure storage and management of sensitive information (e.g., API keys, database credentials, secrets) using tools like HashiCorp Vault, Azure Key Vault, AWS Secrets Manager, or OpenShift Secrets Show more Show less

Posted 2 weeks ago

Apply

4.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

TCS has been a great pioneer in feeding the fire of Young Techies like you. We are a global leader in the technology arena and there's nothing that can stop us from growing together. Role**: Web Application Firewall (WAF) Desired Skill Set Any: WAF, F5, Akamai, Barracuda, Cloudflare Experience Range : 4+ years Joining Location : PAN India We are currently planning to do a Walk-In Interview on 07th June 2025 at TCS Noida. Date - 07th June 2025 (Saturday) Venue - TCS Yamuna , First floor, Assotech Business Cressterra, VI Plot 22, Sector 135, Noida, Uttar pradesh- 201301 Job Description Role & Responsibilities: Provide Day to day operational support for WAF Mgmt Responsible for the design, planning, implementation, and operation of setups and management. Onboarding/Offboarding web applications Troubleshooting of operation issues reported by application teams. Firmware upgradation (stable versions) Closing of audit points/vulnerabilities by coordinating with internal and external teams Configuring virtual servers, nodes, pools and certificates Creation of security policies for web applications Fine-tuning of existing security policies in order to strengthen application security. Whitelisting attributes like URL parameters, file types based on the applications requirement. Event logs monitoring Configuration backups Hardening Policies OWASP top 10 compliance ACL configuration for Websites, Applications Event & Log monitoring Maintain Config backup. Knowledge on DNS technology for A record and CName Generating Daily & Weekly & Monthly reports on Application hosted on WAF. ITIL & ITSM Knowledge IPS/IDS signature creation/modification as per requirement of Application Show more Show less

Posted 2 weeks ago

Apply

1.0 years

0 Lacs

Hyderabad, Telangana, India

Remote

Linkedin logo

🚀 We're Hiring! | Flutter Mobile Developer 📍 Location: Hyderabad On site 🔬 Experience: 1-3 Years 📄 Type: Full-Time | Contract-to-Hire 💡 Stage: Early Startup 🏷️ Domain: Fintech | Group Lending | Social Impact At SathPay, we're building a platform that enables families, friends, and communities to achieve shared financial goals—without the burden of joint liability. We're turning informal support systems into trustworthy, digital-first experiences. We're looking for a Flutter Mobile Developer to join our founding team and build the future of community finance with us. If you’re excited about clean UI, performance, security, and meaningful impact—let’s talk. What You’ll Do: Build and scale mobile apps using Flutter Collaborate with design and backend to launch new features Integrate with Firebase (Auth, App Distribution) and third-party APIs Optimize performance, security, and UX Contribute to our product direction from Day 1 What We’re Looking For: 1–3 years of Flutter/Dart experience Strong UI/UX eye + familiarity with OWASP mobile security Experience with Firebase + Git workflows Self-driven, communicative, and startup-ready Bonus Points: Fintech or lending app experience Familiar with payment gateways, privacy practices Play Store / App Store deployment experience Why SathPay? Early-stage role with real ownership Work closely with the founders Remote flexibility & purpose-driven culture Help shape how communities support one another financially How to Apply: DM us here or send your resume/GitHub/portfolio to rohithvedira@sathpay.com Let’s build something that matters. #FlutterDev #HyderabadJobs #MobileDeveloper #Fintech #StartupJobs #Hiring #SathPay Show more Show less

Posted 2 weeks ago

Apply

5.0 - 12.0 years

0 Lacs

Hyderabad, Telangana, India

On-site

Linkedin logo

Experience: 5-12 years Location: Kondapur, Hyderabad work mode-(Hybrid - at least 3 days work from office) Mandatory Skills-PHP,Node Js,react,python,cloud Platform,agile,cicd,Docker,kubernetes,devops Key Responsibilities 💻 Lead the development and delivery of high-quality web applications for diverse clients, utilizing one or more of our key technology stacks: PHP (WordPress, Drupal, Laravel), Node.js, React, and/or Python. Architect, design, and implement scalable, secure, and maintainable software solutions. Oversee and participate in the maintenance, enhancement, and troubleshooting of existing web applications, ensuring their optimal performance and reliability. Drive product engineering initiatives by actively contributing to the roadmap and development of Flying Stars Informatics' proprietary products (e.g., AI-driven solutions, communication tools, business enablement platforms). Collaborate closely with project managers, designers, and other stakeholders to understand requirements and translate them into technical specifications and actionable development plans. Mentor and guide junior and mid-level developers, fostering a collaborative and high-performing team environment. Champion best practices in software development, including code reviews, testing, CI/CD pipelines, and agile methodologies. Ensure adherence to coding standards, security protocols, and deployment processes. Stay updated with the latest industry trends, technologies, and frameworks, and advocate for their adoption where appropriate. Participate in technical discussions, R&D, and contribute to an innovative and forward-thinking engineering culture. Required Skills And Experience 🛠 Experience: 5-12 years of proven experience in full-stack web development and technical leadership. Core Technology Stacks: Demonstrable proficiency in at least two of the following: ○ PHP: Strong experience with frameworks like WordPress, Drupal, and/or Laravel. ○ Node.js: Expertise in building scalable server-side applications and APIs. ○ React: Solid understanding of component-based architecture and state management. ○ Python: Experience with web frameworks (e.g., Django, Flask) and relevant libraries. Full-Stack Capabilities: ○ Proficiency in front-end technologies (HTML5, CSS3, JavaScript, and modern JS frameworks). ○ Strong understanding of back-end development principles and API design (RESTful, GraphQL). ○ Experience with various database technologies (e.g., MySQL, PostgreSQL, MongoDB). DevOps & Deployment: ○ Solid experience with CI/CD pipelines and tools (e.g., Jenkins, GitLab CI, GitHub Actions). ○ Proficiency in version control systems, primarily Git. ○ Experience with containerization technologies (e.g., Docker, Kubernetes) is a plus. ○ Familiarity with cloud platforms (e.g., AWS, Azure, GCP) and deploying applications in cloud environments. Software Development Practices: ○ Strong understanding of Agile/Scrum methodologies. ○ Experience with unit testing, integration testing, and test automation. ○ Knowledge of software security best practices (OWASP). Leadership & Soft Skills: ○ Proven ability to lead and mentor development teams. ○ Excellent problem-solving, analytical, and debugging skills. ○ Strong communication (written and verbal) and interpersonal skills. ○ Ability to manage multiple priorities and deliver high-quality work under pressure. ○ A proactive and collaborative approach to teamwork. Skills: postgresql,ci/cd,web,software,html5,problem solving,react,ci,css3,node js,python,docker,skills,devops,testing,debugging,cloud platform,node.js,azure,mysql,html,kubernetes,javascript,cicd,css,agile,aws,php,cloud,mongodb Show more Show less

Posted 2 weeks ago

Apply

12.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

R1 RCM India is proud to be recognized amongst India's Top 50 Best Companies to Work For™ 2023 by Great Place To Work® Institute. We are committed to transform the healthcare industry with our innovative revenue cycle management services. Our goal is to ‘make healthcare simpler’ and enable efficiency for healthcare systems, hospitals, and physician practices. With over 30,000 employees globally, we are about 14,000 strong in India with offices in Delhi NCR, Hyderabad, Bangalore, and Chennai. Our inclusive culture ensures that every employee feels valued, respected, and appreciated with a robust set of employee benefits and engagement activities Key duties & responsibilities Directly contributes as a member of a scrum team to the test-driven development of software features and non-functional quality attributes, applying software engineering best practices and authoring integration tests. Provides thoughtful recommendations in sessions with scrum team members to structure solution source code and implementation approaches — emphasizing the need to optimize code that follows engineering best practices, and maximizes maintainability, testability and performance. Ensures SOLID principles and standard design patterns are applied to system architectures and implementations. Drive adoption of modern engineering practices such as Continuous Integration, Continuous Deployment, Code Reviews, TDD, Functional\Non-Functional testing, Test Automation, Performance Engineering etc. to deliver high-quality, high-value software Works with product management, business stakeholders and application architects to understand software requirements and helps estimate epics, features and stories. Scripts and maintains automated build steps, continuous integration systems and staging environments. Provides skillful communication and respectful listening — conveying logical and structured thoughts, truthfulness, empathy, confidence and friendliness. Applies consistent levels of strategic thinking, judgment, decision making, attention to detail, teamwork, organization, innovation and initiative. Foster a culture and mindset of continuous learning to develop agility using the three pillars transparency, inspection and adaptation across levels and geographies. Mentors other members of the development team. Evaluates, understands and recommends new technology, languages or development practices that have benefits for implementing. Experience, Skills and Knowledge 12+ years of experience designing and developing n-tier Web applications Well versed with C#, modern UI technologies and database, ORM technologies. Must have solid understanding of modern architectural and design patterns. Advanced knowledge of general engineering concepts like design patterns, OO programming, and SOLID principles, HTTP, MVC, APIs, data structures, and algorithms. Advanced knowledge and experience with automated test tools and techniques including test-driven development, behavior-driven development, automated acceptance testing, Gherkin & Given/When/Then. Advanced knowledge and experience with Microsoft development technologies and tools: C#, Visual Studio or Visual Studio Code, .NET Framework/Core, and Entity Framework. Advanced knowledge and experience with REST and WebAPIs including but not limited to Web Sockets, JSON, RAML, Swagger, OData, or GraphQL. Good working understanding and experience with DevOps practices in source code management, continuous build and deployment tools including but not limited to git, Jira, Jenkins, Docker, Kubernetes, APM tools. Working understanding and experience with secure coding practices: OWASP, XSS, CSRF, SSO/Authentication, static code analysis tools, ethical hacking. Working understanding of application architecture concepts like microservices, Domain-Driven Design, broker pattern/message bus, event-driven, CQRS, ports & adapters/hexagonal/onion, SOA. Deep expertise in one or more Clouds (Azure, AWS, Google Cloud) Strong exposure to Agile software development methodologies and enabling tools such as Jira, Confluence Excellent communicator with demonstrable ability of influencing decisions Knowledge of healthcare revenue cycle management, HL7, EMR systems, HIPAA, FHIR would be preferred. Good working understanding of application architecture concepts like microservices, Domain-Driven Design, broker pattern/message bus, event-driven, CQRS, ports & adapters/hexagonal/onion, SOA would be preferred Key competency profile Spot new opportunities by anticipating change and planning accordingly Find ways to better serve customers and patients. Be accountable for customer service of highest quality Create connections across teams by valuing differences and including others Own your development by implementing and sharing your learnings Motivate each other to perform at our highest level Help people improve by learning from successes and failures Work the right way by acting with integrity and living our values every day Succeed by proactively identifying problems and solutions for yourself and others. Working in an evolving healthcare setting, we use our shared expertise to deliver innovative solutions. Our fast-growing team has opportunities to learn and grow through rewarding interactions, collaboration and the freedom to explore professional interests. Our associates are given valuable opportunities to contribute, to innovate and create meaningful work that makes an impact in the communities we serve around the world. We also offer a culture of excellence that drives customer success and improves patient care. We believe in giving back to the community and offer a competitive benefits package. To learn more, visit: r1rcm.com Visit us on Facebook Show more Show less

Posted 2 weeks ago

Apply

0 years

0 Lacs

Kanpur, Uttar Pradesh, India

Remote

Linkedin logo

Description As an IT/OT Vulnerability Assessment and Penetration Testing (VAPT) Engineer, you will be engaged in identifying and mitigating security vulnerabilities across IT systems, Industrial Control Systems (ICS), and Industrial Internet of Things (IIoT) environments. Your work will involve rigorous security assessments of critical infrastructure, SCADA systems, PLCs, field devices, gateways, and cloud-connected IIoT platforms. You will simulate advanced adversary tactics to expose vulnerabilities and provide strategic remediation guidance. The role is suited for professionals with a deep understanding of both enterprise IT security and industrial/embedded system ecosystems. Responsibilities 1-Vulnerability Assessment & Penetration Testing (IT + ICS/IIoT): Perform black-box, grey-box, and white-box VAPT on: Enterprise IT assets (servers, databases, web/mobile apps, Active Directory, cloud) OT/ICS assets (PLCs, RTUs, HMIs, engineering workstations, protocol gateways) IIoT platforms (MQTT/CoAP-based telemetry, edge gateways, cloud dashboards) Emulate APT-level attacks across air-gapped, segmented, or hybrid IT-OT architectures. Execute Red Team scenarios to simulate insider threats or supply chain compromise. 2- ICS Protocol & Field Device Security Testing: Analyze and exploit vulnerabilities in ICS protocols: Modbus TCP, DNP3, IEC 104, OPC-UA, S7comm, Profinet, BACnet, CIP (EtherNet/IP), MQTT, CoAP Perform live traffic analysis, packet manipulation, and protocol fuzzing to test resilience. Evaluate control logic vulnerabilities in ladder logic, structured text, and function blocks. 3- Firmware & Hardware Exploitation (IIoT/ICS Devices): Extract and analyze firmware from industrial devices using JTAG, UART, SPI interfaces. Perform static and dynamic analysis using Ghidra, Binwalk, Radare2, or IDA Pro. Reverse engineer file systems (e.g., squashfs, cramfs) and analyze web interfaces or CLI backdoors. Exploit misconfigured bootloaders, insecure firmware upgrade mechanisms, or exposed debug ports. 4- Network Architecture & Segmentation Testing: Review and test IT-OT segmentation via firewall ACLs, VLANs, DMZ configurations. Assess trust relationships, weak credential policies, and insecure remote access (e.g., exposed VNC, Telnet, RDP). Identify unauthorized bridging of air-gapped networks or misconfigured routing/switching. 5- Cloud & IIoT Platform Security: Evaluate MQTT brokers, edge-to-cloud telemetry, and analytics pipelines. Test REST APIs, insecure mobile app integrations, and cloud misconfigurations (S3, IAM, IoT Core). Identify insecure certificate handling, default API tokens, and lack of encryption at rest/in transit. Reporting & Mitigation Develop technical and executive-level reports with CVSS scoring, attack paths, and exploitation evidence. Recommend hardening measures for both IT (patches, SIEM, EDR) and OT (control policy tuning, physical zoning, least privilege for operators). Coordinate with ICS engineers, IT admins, and SOC teams for patch validation and monitoring upgrades. Compliance & Framework Alignment Ensure assessments comply with industry and regulatory frameworks: NIST SP 800-82, ISA/IEC 62443, ISO 27001, NERC CIP, SANS ICS Top 20 Map findings to MITRE ATT&CK for ICS and monitor emerging CVEs relevant to industrial products. Eligibility Educational Background: Bachelor’s or Master’s in Cybersecurity, Computer Science, Industrial Automation, Electronics, or a related field. Technical Skills: Deep knowledge of ICS/SCADA systems, embedded architectures, and real-time OS (VxWorks, QNX, FreeRTOS). Hands-on experience with tools: VAPT Tools: Nessus, Burp Suite, Metasploit, Nmap, Nikto, SQLMap ICS Tools: Wireshark, Scapy, PLCScan, ICSFuzz, S7comm Tools, Conpot, ModScan Firmware Tools: Binwalk, Ghidra, Radare2, OpenOCD, Logic Analyzers IIoT Security: Shodan, Censys, MQTTX, Postman, OWASP ZAP Certifications (Preferred): OSCP, GRID, GICSP, CRT, CRTP, CEH, CISSP, or equivalent. Participation in ICS/IoT-focused CTFs or open-source contributions is a plus. Travel As and when required, across the country for project execution and monitoring as well as for coordination with geographically distributed teams. Communication Submit a cover letter summarising your experience in relevant technologies and software along with a resume and the Latest passport-size photograph. Show more Show less

Posted 2 weeks ago

Apply

10.0 years

0 Lacs

Kochi, Kerala, India

On-site

Linkedin logo

Job Title: Tech Lead – .NET Core & Angular with Python Experience Location: Kochi – Work from office Employment Type: Full-time Job Summary: We are looking for a highly skilled Tech Lead with expertise in .NET Core and Angular , along with experience or exposure to Python . The ideal candidate should have strong architectural capabilities, be able to conduct research on new technologies, and work closely with the team to drive development efforts. Key Responsibilities:  Architect, design, and develop scalable and high-performance applications using .NET Core, Angular, and Python .  Provide technical leadership and mentorship to the development team.  Collaborate with cross-functional teams to define system architecture and ensure seamless integration.  Conduct research and proof-of-concept (PoC) development for new technologies and frameworks.  Ensure best practices, coding standards, and security guidelines are followed throughout the development lifecycle.  Optimize application performance and troubleshoot complex technical issues.  Work closely with stakeholders and business teams to understand requirements and translate them into technical solutions.  Drive continuous improvement and innovation within the team. Required Skills & Experience:  Minimum 10 years of experience in software development, with at least 3+ years in a Tech Lead role .  Proficiency in .NET Core, ASP.NET Core, C#, and related frameworks Experience in working with architectural design, Entity Framework Core/Dapper, LINQ, Blazor , ASP.NET Identity , Microservices etc.  Expertise in Angular 14 (and above) , TypeScript, HTML5, CSS3, and modern front-end development practices.  Strong experience with SQL Server and database design .  Familiarity with cloud platforms (e.g., Azure, AWS) and DevOps practices (CI/CD pipelines, automated deployments)  Knowledge on containerization (Docker/Kubernetes) is a plus.  Implemented Design Principles, Design Patterns, Cache management, Authentication  Experience with OWASP Guidelines in the application.  Hands-on experience or exposure to Python for backend development, scripting, or automation.  Excellent problem-solving skills and ability to research and adopt new technologies .  Strong communication and leadership skills with the ability to guide a team effectively. Preferred Qualifications:  Experience with Agile/Scrum methodologies .  Knowledge of data structures, algorithms, and system design .  Familiarity with message queues (RabbitMQ, Kafka) and event-driven architecture .  Experience with unit testing and test-driven development (TDD) .  Working with product development companies and experience with large data systems is preferred share your resume with sreekanth@cvsinfosolutions.com Show more Show less

Posted 2 weeks ago

Apply

12.0 years

0 Lacs

Pune, Maharashtra

Remote

Indeed logo

Pune, Maharashtra, India Engineering Full-time Ref ID: JR-007411 Our Mission At Palo Alto Networks® everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and more secure than the one before. We are a company built on the foundation of challenging and disrupting the way things are done, and we’re looking for innovators who are as committed to shaping the future of cybersecurity as we are. Who We Are We take our mission of protecting the digital way of life seriously. We are relentless in protecting our customers and we believe that the unique ideas of every member of our team contributes to our collective success. Our values were crowdsourced by employees and are brought to life through each of us everyday - from disruptive innovation and collaboration, to execution. From showing up for each other with integrity to creating an environment where we all feel included. As a member of our team, you will be shaping the future of cybersecurity. We work fast, value ongoing learning, and we respect each employee as a unique individual. Knowing we all have different needs, our development and personal wellbeing programs are designed to give you choice in how you are supported. This includes our FLEXBenefits wellbeing spending account with over 1,000 eligible items selected by employees, our mental and financial health resources, and our personalized learning opportunities - just to name a few! At Palo Alto Networks, we believe in the power of collaboration and value in-person interactions. This is why our employees generally work full time from our office with flexibility offered where needed. This setup fosters casual conversations, problem-solving, and trusted relationships. Our goal is to create an environment where we all win with precision. Your Career Prisma Access™ combines the Internet connectivity/security you need - and delivers it everywhere you need it. Using cutting-edge public and private cloud technologies, it extends the next-generation security protection to all cloud services and to its customers regardless of whether they are on-premise, on remote networks or mobile users. We are seeking an experienced Software Engineer to design, develop and deliver next-generation technologies within our Prisma Access team. We want passionate engineers who love to code and build great products. Engineers who bring new ideas in all facets of software development. We are looking for leaders who take ownership of their areas of focus and who are driven to solve problems at every level. Collaboration and teamwork are at the foundation of our culture and we need engineers who can communicate at a high level and work well with others towards achieving a common goal. Your Impact Design and implement new features and integrations for virtualization features across diverse cloud environments and deployments. Engage in all phases of the product development cycle from concept definition, design, through implementation, and testing. Develop comprehensive functional specifications, evaluate task requirements and timelines, and contribute to design, development, debugging, and support processes. Hands-on experience with virtualization technologies, various hypervisors, system software, and networking. Customer First Mindset is required and a very good team player. Be a cultural champion and role model for others showcasing the org values Work with different development and quality assurance groups to achieve the best quality Work with DevOps and technical support teams to troubleshoot and fix customer reported issues Your Experience Bachelors/Masters in Computer Science or a related field required 12+ years of experience in Software Development. Proficiency in one or more programming languages including Go, C, C++, Python. A strong grasp of various Layer 7 protocols including TCP/IP stack and SSL/TLS. Knowledge of protocols like OAuth, SAML, and basic authentication methods. A good understanding of the Geneve encapsulation protocol (RFC 8926), its header format, and its purpose in network virtualization. Familiarity with concepts like overlay networks, virtual extensible LANs (VXLAN), Network Virtualization using Generic Routing Encapsulation (NVGRE) is a plus. Understanding how encapsulation and tunneling work in general. Skill in diagnosing application-level network issues using tools like tcpdump, Wireshark, and application-specific debugging tools is a plus. Awareness of application-layer vulnerabilities (e.g., OWASP Top 10) and best practices for secure development. Strong knowledge in network security fields like stateful firewall, packet processing, and network ACL. Solid understanding of operating system networking concepts (e.g., network interfaces, routing tables). Experience with socket programming and network libraries. Experience with virtualization platforms (e.g., VMware, OpenStack, Kubernetes) is a plus. Experience with deployment on cloud environments (OCI/AWS/GCP) Familiarity with cloud service architectures, including compute and networking. Experiencing building highly available, scalable, and performant systems Strong grasp on microservices and designing complex products via distributed systems Experience in mentoring and guiding junior team members in high performing teams. Prior experience in the Cyber Security domain is preferred. The Team As part of the browser technologies team, you will be responsible for building products that protect data, workloads, and infrastructure for some of the largest enterprise customers in the world. We help the customers in their transitional journey to the cloud by ensuring they have the best in class protection. The cloud market has been growing at a rapid rate for the last few years. As more and more enterprises use the public cloud, there is an insatiable demand for securing workloads in the public cloud. Our Commitment We’re problem solvers that take risks and challenge cybersecurity’s status quo. It’s simple: we can’t accomplish our mission without diverse teams innovating, together. We are committed to providing reasonable accommodations for all qualified individuals with a disability. If you require assistance or accommodation due to a disability or special need, please contact us at accommodations@paloaltonetworks.com. Palo Alto Networks is an equal opportunity employer. We celebrate diversity in our workplace, and all qualified applicants will receive consideration for employment without regard to age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or other legally protected characteristics. All your information will be kept confidential according to EEO guidelines. Is role eligible for Immigration Sponsorship? No. Please note that we will not sponsor applicants for work visas for this position. Covid-19 Vaccination Information for Palo Alto Networks Jobs Vaccine requirements and disclosure obligations vary by country. Unless applicable law requires otherwise, you must be vaccinated for COVID or qualify for a reasonable accommodation if: The job requires accessing a company worksite The job requires in-person customer contact and the customer has implemented such requirements You choose to access a Palo Alto Networks worksite If you have questions about the vaccine requirements of this particular position based on your location or job requirements, please inquire with the recruiter.

Posted 2 weeks ago

Apply

10.0 years

0 Lacs

Harihar, Karnataka, India

On-site

Linkedin logo

Principal Software Engineer - .Net Fullstack At ABB, we are dedicated to addressing global challenges. Our core values: care, courage, curiosity, and collaboration - combined with a focus on diversity, inclusion, and equal opportunities - are key drivers in our aim to empower everyone to create sustainable solutions. Write the next chapter of your ABB story. This position reports to Digital Solution Engineering Manager Your role and responsibilities In this role, We are looking for a highly skilled Principal Software Engineer with extensive experience in .NET and Angular to lead the development of cutting-edge software solutions for the Process Automation Industry. In this role, you will drive the technical strategy, define architectural best practices, and mentor engineering teams to build scalable and high-performance industrial automation systems. You will collaborate closely with cross functional stakeholders to align technical roadmaps with business objectives, ensuring innovation, reliability, and efficiency in mission-critical environments The work model for the role is : This role is contributing to Process Automation business for Process Automation Digital division based in Bangalore Southfield, India Your responsibilities: Define and implement scalable, high-performance software architectures using .NET (C#) and Angular Provide technical direction and mentorship to development teams, ensuring adherence to best coding and design practices. Architect and optimize microservices-based solutions, ensuring modularity, performance, and maintainability. Drive innovation by identifying and implementing AI-powered automation tools for software development and testing. Write clean, maintainable, and well-documented code, following SOLID principles. Design and develop applications that integrate with industrial automation systems (SCADA, MES, OPC UA, PLCs, IoT platforms). Ensure seamless real-time data processing and communication between IT and OT systems. Define standards for system reliability, fault tolerance, and high availability in mission-critical industrial environments Actively participate in Agile (Scrum/Kanban) sprints, ensuring timely delivery of features. Ensure frontend and backend integration through well-structured RESTful APIs and WebSockets Lead the development of intuitive, high-performance UIs using Angular (latest versions) for real-time industrial monitoring and control. Lead efforts to reduce technical debt and optimize system performance, improving code maintainability and security Ensure high test coverage using unit tests and end-to-end testing frameworks Qualifications for the role Bachelor's or Master's degree in Computer Science, Engineering, or a related technical field. 10+ years of extensive experience in .NET and Angular to lead the development of cutting-edge software solutions for the Process Automation Industry. Technical Skills: Backend: .NET Core, C#, ASP.NET, Web APIs, Entity Framework & Frontend: Angular (latest versions), TypeScript, RxJS, NgRx Database: SQL Server, PostgreSQL, or NoSQL databases & Cloud & DevOps: Azure/AWS, Docker, Kubernetes, CI/CD Pipelines Automation & Industrial Protocols: OPC UA, MQTT, SCADA, MES & Testing & Security: Unit testing, security best practices, OWASP Good knowledge of containerization using K8s / K3s / Docker & Experience of working with virtual environments (Vmware / Hyperview / Azure) Leadership & Team Play Should have demonstrated innovation in processes followed and/or solutions delivered and encourage it within the team. Successfully delivered complex solutions and in complex customer system landscapes Adhered to processes, defined software development methodologies and best practices within the team. Deliver in predictable timelines and with predictable quality More about us ABB is a leading global technology company that energizes the transformation of society and industry to achieve a more productive, sustainable future. With a history of excellence stretching back more than 130 years, ABB has been a pioneer through the four Industrial revolutions and is at the forefront of the Industry 4.0. By delivering digitalization to its electrification, robotics, automation and motion portfolio, ABB pushes the boundaries of technology to drive performance to new levels. If you are looking for an environment that actively blends the boundaries between technology, data, domain, and Industrial AI to create next-generation analytics solutions for process automation customers, and if you are passionate about driving innovation and delivering top-notch solutions, then this is the team for you. Join ABB and harness the power of our diverse global network as you collaborate with and lead our world-class teams. Above all, challenge yourself every day to achieve exceptional results. Let’s write the future together We value people from different backgrounds. Apply today for your next career step within ABB and visit www.abb.com to learn about the impact of our solutions across the globe. #MyABBStory "It has come to our attention that the name of ABB is being used for asking candidates to make payments for job opportunities (interviews, offers). Please be advised that ABB makes no such requests. All our open positions are made available on our career portal for all fitting the criteria to apply. ABB does not charge any fee whatsoever for recruitment process. Please do not make payments to any individuals /entities in connection to recruitment with ABB, even if is claimed that the money is refundable. ABB is not liable for such transactions. For current open positions you can visit our career website https://global.abb/group/en/careers and apply. Please refer to detailed recruitment fraud caution notice using the link https://global.abb/group/en/careers/how-to-apply/fraud-warning" Show more Show less

Posted 2 weeks ago

Apply

6.0 years

0 Lacs

Greater Vadodara Area

On-site

Linkedin logo

Job Description Key Responsibilities : Lead and scale diverse technical teams to execute on the SecOps roadmap Partner and align with Engineering teams to reinforce product security to drive and automate secure development practices while maintaining business needs Develop an effective strategy to assess and mitigate risk, manage incidents, maintain continuity of operations, and safeguard the engineering products Lead Security Incident Response, Third Party Information Security Assessment, Data Protection and Encryption, threat detection and rapid security response to protect customer data Define cybersecurity governance and control strategies for emerging technologies such as cloud & containerization, blockchain, and AI/ML Continuously evaluate and integrate new technologies to improve SecOps practices Stay up to date with market trends, customer demands and changes to adapt SecOps practices within the organization Build and inspire a highly skilled and diverse Security team. Foster a culture of trusted cross-functional partnership, and continuous and functional areas of expertise : Strong understanding of SecOps methodologies, threat intelligence and penetration testing for web, desktop and mobile Strong understanding of OWASP top 10 for web, mobile, desktop, cloud, and AI Experience working with static assessment SAST and compliance tools like Snyk, Github Advanced Security, etc Experience with penetration testing tools like ZAP/Burp Suite and Objection/Frida Experience with implementation of at least one compliance standard like ISO 27001, HIPAA, GDPR Scripting exposure to using Python, Shell Script or Behaviors : Strong problem-solving and analytical skills Excellent communication and collaboration abilities Ability to work independently and lead cross-functional initiatives Adaptable to change and passionate about security and compliance Strong trade off sense with an ability to balance business value vs security and experience : Bachelors or Masters in Computer Science or related fields 6+ years of experience (ref:hirist.tech) Show more Show less

Posted 2 weeks ago

Apply

2.0 years

0 Lacs

Bengaluru, Karnataka, India

On-site

Linkedin logo

Job Description KPMG in India, a professional services firm, is the Indian member firm affiliated with KPMG International and was established in September 1993. Our professionals leverage the global network of firms, providing detailed knowledge of local laws, regulations, markets, and competition. KPMG has offices across India in Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, and Vadodara. KPMG in India offers services to national and international clients in India across sectors. We strive to provide rapid, performance-based, industry-focused, and technology-enabled services, which reflect a shared knowledge of global and local industries and our experience of the Indian business environment KPMG Advisory professionals provide advice and assistance to enable companies, intermediaries, and public sector bodies to mitigate risk, improve performance, and create value. KPMG firms provide a wide range of Risk Advisory and Financial Advisory Services that can help clients respond to immediate needs as well as put in place the strategies for the longer term. Projects in IT Advisory focus on the assessment and/or evaluation of IT systems and the mitigation of IT-related business risks. They are either IS audit, SOX reviews, Internal audit engagements, IT infrastructure review and/or risk advisory including but not limited to IT audit supports in nature. Responsibilities Skills Required: Risk Based IT Internal Audit for Financial Services Entities IT SOX 404 Controls Testing, Quality Assurance Internal Financial Controls related to IT General Controls as part of Financial Statements Audits IT Risk & Control Self-Assessment Business Systems Controls / IT Application Controls Auditing Emerging Technologies such as Cloud Security, Intelligent Automation, RPA, IoT etc. Working knowledge of programming languages(C/C++/Java/SQL) Role Collaborate with other members of the engagement team to plan the engagement and develop relevant workpapers/deliverables. Perform fieldwork and share the daily progress of fieldwork, informing supervisors of engagement status. Perform testing of IT Application Controls, IPE, and Interface Controls through code reviews, IT General Controls review covering areas such as Change Management, Access Management, Backup Management, Incident and Problem Management, SDLC, Data Migration, Batch Job scheduling/monitoring and Business Continuity and Disaster Recovery Perform Risk Assessment, identification, and Evaluation of Controls, prepare process flow diagrams and document the same in Risk & Control Matrix. Perform business process walkthrough and controls testing for IT Audits. Performing planning and executing audits, including: — Information Security reviews — Information Technology Infrastructure reviews — Application reviews Use knowledge of the current IT environment and industry IT trends to identify the engagement and client service issues and communicate this information to the project manager. Maintain relationships with client management and the project Manager to manage expectations of service, including work products, timing, and deliverables. Demonstrate a thorough understanding of complex information systems and apply it to client situations. Use extensive knowledge of the client's business/industry to identify technological developments and evaluate impacts on the work to be performed Risk Based IT Internal Audit for Financial Services Entities IT SOX 404 Controls Testing, Quality Assurance Internal Financial Controls related to IT General Controls as part of Financial Statements Audits IT Risk & Control Self-Assessment Business Systems Controls / IT Application Controls Auditing Emerging Technologies such as Cloud Security, Intelligent Automation, RPA, IoT etc. Working knowledge of programming languages(C/C++/Java/SQL) Coordinate effectively and efficiently with the Engagement manager and the client management keeping both constantly updated regarding project’s progress. Monitoring and Tracking for Budget and Time Estimates on engagements. Conducting IT audits, IT Internal Audit, Robotics Process Automation (RPA) Audits Conducting SOX audits, Third Party Security audits Conducting controls assessment in manual/ automated environment Information Security Assessments Conducting OS/DB/Network reviews Prepare/Review of Policies, Procedures, SOPs Qualifications A Bachelor's degree in engineering and approximately 2 -6 years of related work experience; or a master’s or MBA degree in business, computer science, information systems, engineering Expertise in coding skills (e.g., Java, C++, C, SQL, Oracle) Experience in performing IT audits of banking/financial sector applications Good to have knowledge of other IT regulations, standards and benchmarks used by the IT industry (e.g., NIST, PCI-DSS, ITIL, OWASP, SOX, COBIT, SSAE18/ISAE 3402 etc.) Technical Knowledge of IT Audit Tools Experience in carrying out OS/DB/Network reviews Exposure to Risk Management and Governance Frameworks/ Systems will be an added advantage Exposure to ERP systems will be added advantage Experience in performing technical code reviews (understanding code logic based on business requirement) Strong project management, communication (written and verbal) and presentation skills A team player Strong self-directed work habits, exhibiting initiative, drive, creativity, maturity, self-assurance, and professionalism Preferred Certifications – CISA/CISSP//CISM Exposure to automation Data Analytics tools such as QlikView/Qlik sense, ACL, Power BI will be an advantage Proficiency with Microsoft Word, Excel, Visio, and other MS Office tools Equal employment opportunity information KPMG India has a policy of providing equal opportunity for all applicants and employees regardless of their colour, caste, religion, age, sex/gender, national origin, citizenship, sexual orientation, gender identity or expression, disability, or other legally protected status. KPMG India values diversity and we request you to submit the details below to support us in our endeavour for diversity. Providing the below information is voluntary and refusal to submit such information will not be prejudicial to you. Show more Show less

Posted 2 weeks ago

Apply

8.0 - 12.0 years

0 Lacs

Chennai, Tamil Nadu, India

On-site

Linkedin logo

Job Description Experience:8-12 years of experience in software development and quality assurance, with a strong focus on API automation. Responsibilities Key Responsibilities: Leadership and Strategy: Develop and execute a comprehensive API automation strategy aligned with the overall quality goals of the organization. Identify and implement innovative testing approaches and technologies to enhance the efficiency and effectiveness of our QA processes. API Automation Development: Design, develop, and maintain robust and scalable API automation frameworks using RestAssured and BDD principles. Write clean, well-documented, and maintainable automation scripts to validate API functionality, performance, and security. Implement data-driven testing strategies to ensure comprehensive test coverage. Integrate automation scripts into the CI/CD pipeline for continuous testing. Collaboration and Communication: Collaborate closely with developers, product managers, and other stakeholders to understand requirements and ensure testability. Participate in design and architecture reviews to provide feedback on testability and identify potential quality risks. Communicate test results and quality metrics to stakeholders in a clear and concise manner. Work with extended integration partner teams to define and execute exploratory and automated API tests Quality Assurance and Best Practices: Establish and enforce QA guidelines, best practices, and standards across the team. Actively review code to ensure software quality and functional accuracy. Ensure all code adheres to secure coding practices and meets minimum code coverage requirements. Stay up-to-date with the latest trends and technologies in API automation and cloud-native testing. Promote a culture of quality ownership and accountability within the team. Operational Support: Handle operational issues with minimal oversight, troubleshooting and resolving problems quickly and effectively. Build reusable frameworks and integrate SaaS frameworks to improve efficiency and scalability. Responsibilities in Detail: Coding and Development: Complete coding tasks according to design specifications with the highest quality and within the scheduled time. Work under the guidance of a Technical Architect, contributing to the overall system design. Build reusable frameworks and integrate SaaS frameworks to enhance testing capabilities. Code Quality and Security: Ensure all code delivered adheres to secure coding practices. Maintain adequate code coverage, aiming for a minimum of 70%. Actively review code to ensure software quality and functional accuracy across the team. Documentation and Reporting: Develop, document, and maintain test plans, procedures, and scripts. Use code repositories and tracking systems such as Git, Confluence/SharePoint, and JIRA for documentation, scripts, results, configuration, and supporting data. Domain Knowledge (Plus): Good understanding of the eCommerce domain is a plus. Qualifications Technical Expertise: API Automation: Extensive experience with RestAssured for API testing. Proficiency in Behavior-Driven Development (BDD) frameworks like Cucumber/Gherkin. Experience with API testing tools such as Hoppscotch, Postman, Swagger, or ReadyAPI. Knowledge of API security testing principles and tools (e.g., OWASP). Java and Spring Boot: Strong proficiency in Java and related open-source technologies. Hands-on experience with Spring Boot and Spring Cloud frameworks for building microservices. Experience with dependency injection, RESTful APIs, and other core Spring concepts. Cloud Technologies: Solid understanding of cloud-native technologies and architectures. Experience with containerization technologies like Docker and container orchestration platforms like Kubernetes. Familiarity with Google Cloud Platform (GCP) services (e.g., Compute Engine, Cloud Storage, Cloud Functions). Testing Frameworks and Tools: Experience with unit testing frameworks like JUnit and TestNG. Proficiency in using IDEs such as Eclipse or IntelliJ IDEA. Experience with CI/CD tools like Jenkins, GitLab CI, or CircleCI. Databases: Basic knowledge of relational databases (e.g., MySQL, PostgreSQL) and NoSQL datastores (e.g., MongoDB, Cassandra). Experience with data quality testing and working with large datasets. Version Control and Collaboration: Proficiency in using version control systems like Git. Experience with collaborative tools like GitHub, Bitbucket, or GitLab. Other Technologies (Nice to Have): Knowledge of contract testing using Pact or similar frameworks. Exposure to performance testing tools like JMeter or Gatling. Experience with monitoring and logging tools like Prometheus, Grafana, or ELK stack. Agile Development: Familiarity with Agile development methodologies (e.g., Scrum, Kanban). Experience working in Agile teams and participating in sprint ceremonies. Soft Skills: Excellent communication, interpersonal, and collaboration skills. Strong problem-solving and analytical abilities. Ability to work independently and as part of a team. Keen to learn the design and architecture of the product and participate in ceremonies that can influence both. Show more Show less

Posted 2 weeks ago

Apply

5.0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Position Overview Job Title: Senior Technology Analyst Location: Pune, India Corporate Title: Associate Job Description The Associate ITAO supports the technical infrastructure required to supply IT services to the bank. They are involved in the strategy, design, development, and deployment of IT solutions. They are able to troubleshoot complex issues, being aware of overlapping and different technology areas. Based on their business knowledge, they are able to identify where IT designs can be strengthened and provide value to the businesses. They are responsible for providing detailed technical feedback into the Engineering function to deliver more robust IT solutions. They understand in detail, how IT needs to be supported and can create appropriate processes and controls which ensure IT failings are captured and remediated to ensure stability. They provide technical direction on all related IT platforms and are considered technical experts for level 3 support in outage coordination. The Lead Technologist is counted upon to provide technical guidance and recommendations for complicated business IT problems. They embrace a Continuous Service Improvement approach to drive efficiencies and remove repetition to streamline support activities, reduce risk, and improve system availability. Role Description The successful candidate is expected to have at least 5+ years’ experience in IT, preferably with Asset Management Business Applications and Processes. The IT Application Owner (ITAO) has sound IT risk management skills. They follow one of several possible service delivery approaches, acknowledge interference with the IT application’s life cycle and assist with incorporating the adopted approach into best practice. The focus is on applications moving onto cloud. Here you support tracking of the application control status and help application dev-teams with practical advice. Make sure that all steps in Identity & Access Management cycle (on-boarding, recertification, off-boarding) are compliant against DB Policies and application is on-boarded to central tools. The ITAO is aware of the gap in the current infrastructure solutions and where industry innovations are along the maturity lifecycle. They work with application stakeholders to improve the infrastructure, ensuring compliance with the technical roadmap. The ITAO has a sound knowledge of development methodologies and the IT policies necessary to perform effectively in the organisation, aligned to the bank’s appetite for risk. The ITAO acts to improve safety and security of the application, compliance with regulations, policies and standards, enhance operational readiness, and ease maintenance of the environment for delivering change into production. The ITAO supports the bank’s audit function in the remediation of audit points and self-identified issues in order to reduce risk. The ITAO is responsible for producing and maintaining accurate documentation on compliance with methodologies, IT policies and IT security requirements. The ITAO interacts with and influences colleagues on the governance of IT platform reliability and resilience ITAOs will also be responsible for Application Decommissioning ITAOs will be driving activity that helps incidents reduction against an application Support compliance on all steps of SDLC process and make sure that all SDLC controls are green. You support the team’s role as key contact for all security controls in the software delivery process and ensure that the security controls are evidenced by driving automated evidence. You are consulting with the ITAO community, information security specialists in our CSO organization, and other infrastructure teams like the ORR/SDLC teams. What We’ll Offer You As part of our flexible scheme, here are just some of the benefits that you’ll enjoy Best in class leave policy Gender neutral parental leaves 100% reimbursement under childcare assistance benefit (gender neutral) Sponsorship for Industry relevant certifications and education Employee Assistance Program for you and your family members Comprehensive Hospitalization Insurance for you and your dependents Accident and Term life Insurance Complementary Health screening for 35 yrs. and above Your Key Responsibilities Enterprise IT Governance: Responsible for review of current and proposed information systems for compliance with the organisation's obligations (including legislation, regulatory, contractual and agreed standards/policies) and adherence to overall strategy Information security : Communicates information security risks and issues to business managers and others. Performs basic risk assessments for small information systems. Contributes to vulnerability assessments. Applies and maintains specific security controls as required by organisational policy and local risk assessments. Investigates suspected attacks. Responds to security breaches in line with security policy and records the incidents and action taken. Information content publishing : Understands technical publication concepts, tools and methods and the way in which these are used. Uses agreed procedures to publish content. Obtains and analyses usage data and presents it effectively. Understands, and applies principles of usability and accessibility to published information. Business risk management : Investigates and reports on hazards and potential risk events within a specific function or business area. Continuity management : Implements and contributes to the development of a continuity management plan. Coordinates the assessment of risks to the availability, integrity and confidentiality of systems that support critical business processes. Coordinates the planning, designing, and testing of maintenance procedures and contingency plans. Data management : Assists in providing accessibility, retrievability, security and protection of data in an ethical manner. Methods and tools : Provide support on the use of existing method and tools. Configures methods and tools within a known context. Creates and updates the documentation of methods and tools Overall Responsibilities Summary: Make sure that all critical activities in application are monitored and logs are reviewed. Ensure appropriate controls onboarded and implemented where appropriate. Make sure that all steps in Identity & Access Management cycle (on-boarding, recertification, off-boarding) are compliant against DB Policies and application is on-boarded to central tools. Manage Internal and external application audits and Audit issue remediation activities. Completion of regular/recurring assessments Timely response to audit & regulatory requirements with evidence, were compliant. Make sure that infrastructure is compliant and has up-to-date patches. Plan for Application Hardware / Software / License upgrades or migration activities to align to the compliant platforms. Keep up-to-date DR Test Plan and manage regular DR Tests Manage application capacity forecasting and monitoring. Manage any IT Security incidents that may occur in the application. Support compliance on all steps of SDLC process and make sure that all SDLC controls are green. Application Decommissioning Drive incidents reduction against an application Planning/Organizing: Able to manage work but also to make the estimate, scheme in detail, work on deployment plans and manage deadlines. Manage the technical roadmap of the application (technology roadmap compliance), estimate/budget capacity needed. Expertise in Planning and execution of Releases, Changes, Patches. Exposure of handling L3 role, incident analysis, patch preparation and implementation. Skilled individual to interact with L2 teams for incident and problem management cases. Your Skills And Experience Degree-level IT and/or information security qualification, or equivalent experience in Information Security and IT Security Experience in Software Development Lifecycle (SDLC) - from idea to production to understand our customer journey, these mostly application owners, business ISOs and development teams GCP-Cloud foundation knowledge General understanding of current security industry standards, best practices, and/or frameworks i.e.: NIST, ENISA, ISO27001, OWASP Problem-solving and analytical skills with the ability to oversee complex processes Ability to educate a technical and non-technical audience about various security measure Excellent communications skills and very service oriented and customer friendly behaviour even in stressful situations Self-driven behaviour Fluent in English (written/verbal) Preferable Knowledge of information security tools e.g., security scan and testing tools Understanding of cloud engineering and native security features to support the migration path for applications onto the cloud environment Firm understanding of DevSecOps and the banks shift left agenda to integrate security in the software development lifecycle as earliest as possible. ISO or ITAO certification (for internals only) How We’ll Support You Training and development to help you excel in your career Coaching and support from experts in your team A culture of continuous learning to aid progression A range of flexible benefits that you can tailor to suit your needs About Us And Our Teams Please visit our company website for further information: https://www.db.com/company/company.htm We strive for a culture in which we are empowered to excel together every day. This includes acting responsibly, thinking commercially, taking initiative and working collaboratively. Together we share and celebrate the successes of our people. Together we are Deutsche Bank Group. We welcome applications from all people and promote a positive, fair and inclusive work environment. Show more Show less

Posted 2 weeks ago

Apply

7.0 years

0 Lacs

Indore, Madhya Pradesh, India

On-site

Linkedin logo

About Beyond Key  We are a Microsoft Gold Partner and a Great Place to Work-certified company. "Happy Team Members, Happy Clients" is a principle we hold dear. We are an international IT consulting and software services firm committed to providing. Cutting-edge services and products that satisfy our clients' global needs. Our company was established in 2005, and since then we've expanded our team by including more than 350+ Talented skilled software professionals. Our clients come from the United States, Canada, Europe, Australia, the Middle East, and India, and we create and design IT solutions for them. If you need any more details, you can get them at https://www.beyondkey.com/about. Job Description We are seeking a highly skilled DevOps Engineer to join our team. The ideal candidate will have a strong background in automation, cloud technologies, and CI/CD pipelines. This role will be instrumental in driving our DevOps initiatives, improving our software delivery process, and ensuring the reliability and security of our systems. Responsibilities Design, implement, and maintain robust CI/CD pipelines using tools like GitHub Actions and Azure DevOps. Automate infrastructure provisioning and configuration using tools like Terraform and Ansible. Deploy and manage containerized applications in Kubernetes environments. Implement and maintain test automation frameworks (e.g., Selenium, JUnit) to ensure code quality and reliability. Integrate vulnerability scanning tools (e.g., SonarQube, OWASP ZAP) into the CI/CD pipeline to identify and address security risks. Monitor system performance and troubleshoot issues proactively. Collaborate with development teams to improve software delivery practices. Stay up to date with the latest DevOps trends and technologies. Participate in on-call rotations for production support. Qualifications 7+ years of experience in DevOps or a related field. Strong proficiency in scripting languages like Bash, Python, or PowerShell. In-depth knowledge of cloud platforms, preferably Azure. Expertise in containerization technologies like Docker and Kubernetes. Hands-on experience with CI/CD tools like GitHub Actions and Azure DevOps. Experience with configuration management tools like Puppet or Chef. Strong understanding of test automation frameworks and methodologies. Experience with vulnerability scanning tools and security best practices. Strong problem-solving and troubleshooting skills. Excellent communication and collaboration skills. Preferred Qualifications Experience with Azure DevOps, GitHub Action and CI/CD pipeline. Experience in Test Automation integration with pipelines. Knowledge of security best practices for DevOps. A good knowledge of Cloud Technology preferably Azure. Share with someone awesome View all job openings Show more Show less

Posted 2 weeks ago

Apply

4.0 - 5.0 years

6 - 7 Lacs

Tamil Nadu

Work from Office

Naukri logo

Perform security testing on applications using Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) tools to identify vulnerabilities and recommend mitigations.

Posted 2 weeks ago

Apply

10.0 - 15.0 years

30 - 37 Lacs

Hyderabad

Work from Office

Naukri logo

About Zscaler Serving thousands of enterprise customers around the world including 40% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world’s largest security cloud, Zscaler accelerates digital transformation so enterprises can be more agile, efficient, resilient, and secure. The pioneering, AI-powered Zscaler Zero Trust Exchange™ platform, which is found in our SASE and SSE offerings, protects thousands of enterprise customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Named a Best Workplace in Technology by Fortune and others, Zscaler fosters an inclusive and supportive culture that is home to some of the brightest minds in the industry. If you thrive in an environment that is fast-paced and collaborative, and you are passionate about building and innovating for the greater good, come make your next move with Zscaler. Our Engineering team built the world's largest cloud security platform from the ground up, and we keep building. With more than 100 patents and big plans for enhancing services and increasing our global footprint, the team has made us and our multitenant architecture today's cloud security leader, with more than 15 million users in 185 countries. Bring your vision and passion to our team of cloud architects, software engineers, security experts, and more who are enabling organizations worldwide to harness speed and agility with a cloud-first strategy. We're looking for an experienced Senior Staff Engineer to join our App Protection team. Reporting to the Senior Director, you'll be responsible for: Handling process packets at ingress and egress points at high speed to ensure no noticeable latency for clients Collaborating with the operations team to deploy, monitor, patch, and scale systems as needed Identifying and resolving hotspots to ensure smooth performance as the user base grows What We're Looking for (Minimum Qualifications) 10+ years of experience in C programing in a distributed and enterprise-scale environment Design and development skills for high-volume production applications Experience in Web Application Firewall (WAF), API Security, Active Directory (AD) security, TCP/IP protocol stack, HTTP, DNS, and other related protocols Experience developing distributed software product architectures Unix/Linux Kernel & file system What Will Make You Stand Out (Preferred Qualifications) Skilled in AD/ADFS, Azure/EntraID setup, with expertise in AD security and vulnerabilities Expert in API security, OWASP risks, ModSecurity, and various API styles and authentication methods #LI-AN4 #LI-Hybrid At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure. Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including: Various health plans Time off plans for vacation and sick time Parental leave options Retirement options Education reimbursement In-office perks, and more! By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines. Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. See more information by clicking on the Know Your Rights: Workplace Discrimination is Illegal link. Pay Transparency Zscaler complies with all applicable federal, state, and local pay transparency rules. Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.

Posted 2 weeks ago

Apply

0 years

0 Lacs

India

Remote

Linkedin logo

About Netskope Today, there's more data and users outside the enterprise than inside, causing the network perimeter as we know it to dissolve. We realized a new perimeter was needed, one that is built in the cloud and follows and protects data wherever it goes, so we started Netskope to redefine Cloud, Network and Data Security. Since 2012, we have built the market-leading cloud security company and an award-winning culture powered by hundreds of employees spread across offices in Santa Clara, St. Louis, Bangalore, London, Paris, Melbourne, Taipei, and Tokyo. Our core values are openness, honesty, and transparency, and we purposely developed our open desk layouts and large meeting spaces to support and promote partnerships, collaboration, and teamwork. From catered lunches and office celebrations to employee recognition events and social professional groups such as the Awesome Women of Netskope (AWON), we strive to keep work fun, supportive and interactive. Visit us at Netskope Careers. Please follow us on LinkedIn and Twitter@Netskope. About The Position Netskope is looking for an analyst on the Threat and Vulnerability Management team. This position will focus on the identification and proactive mitigation of Netskope’s attack surface, threat landscape, security gaps , and cyber threats which could impact the business. In addition, this role will be responsible for performing the vulnerability management function such as finding, reporting, and supporting business units in their vulnerability remediation efforts. Roles & Responsibilities Continuous development and execution of the enterprise Threat and Vulnerability Management strategic plan to identify and reduce vulnerable attack surfaces Perform complex analysis to understand emerging threats, and continuously demonstrates awareness of current threat posture Reviews emerging and existing threat methodologies and exploit code / proof of concept code to develop mitigations, prioritize risks and navigating sources for identification of vulnerable assets. Execute on core team functions such as scanning, reporting, custom checks, asset tagging, as well as incorporating threat intelligence into vulnerability checks Automate security tasks using scripting languages such as python. Maintain and contribute to the threat models understanding emerging/existing threats and countermeasures to them. Partners with internal teams to lead, develop, test, and continuously validate detection signatures for various attacks Provide internal teams with hardening guidance and develop tooling for auditing Support teams by being a Remediation Champion giving them guidance on various strategies to remediate a vulnerability and supporting them in their testing and validation efforts. Provides expertise in incident response activities. Teach and understand CVSS, CVE, and additional vulnerability ratings and methodologies Qualifications/Requirements Experience 2 to 5 Yrs in Security Should possess relevant university degree and/or professional qualifications/certification (e.g. CEH, OSCP) Must have knowledge with tools Tenable, Qualys, NMAP, SCAPY, and other tools. Must have the ability to understand hardening guidelines for new technologies and applications being adopted by Netskope. Understanding of containerization and containerized applications, their security weaknesses and how to secure them Must have an understanding of patch automation, security orchestration, and management tooling for on premise, private cloud, and cloud infrastructure. Knowledge of OWASP Web and Mobile Top 10 vulnerabilities and identifying them. Knowledge of TCP/IP and other application and network level protocols. Knowledge of Cloud Applications like AWS, Azure and other SAAS Applications. Excellent written and verbal communication skills. Self-motivated, curious, knowledgeable pertaining to news and current events. Ability to be effective in a remote global work environment. Netskope is committed to implementing equal employment opportunities for all employees and applicants for employment. Netskope does not discriminate in employment opportunities or practices based on religion, race, color, sex, marital or veteran statues, age, national origin, ancestry, physical or mental disability, medical condition, sexual orientation, gender identity/expression, genetic information, pregnancy (including childbirth, lactation and related medical conditions), or any other characteristic protected by the laws or regulations of any jurisdiction in which we operate. Netskope respects your privacy and is committed to protecting the personal information you share with us, please refer to Netskope's Privacy Policy for more details. Show more Show less

Posted 2 weeks ago

Apply

5.0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

About AppDirect Become a digital, global citizen and enable the new generation of digital entrepreneurs around the world. AppDirect offers a subscription commerce platform to sell any product, through any channel, on any device - as a service. We power millions of subscriptions worldwide for organizations. We do this by our values-driven culture—one that enables you to Be Seen, Be Yourself, and Do Your Best Work. About You AppDirect is seeking a Lead Application Security Engineer to join our Global Application Security Team. As the Technical lead, you will have the responsibility of ensuring the security and integrity of our SaaS platform. By collaborating with our talented Application Security and Engineering teams, you will play a crucial role in enhancing and maintaining a security engineering culture within our organization. If you are a driven and collaborative individual with a deep understanding of application security principles and devsecops, we invite you to join us at AppDirect and make a significant impact in securing our SaaS platform. What you’ll do and how you’ll have an impact Implement and enforce secure code principles (e.g., OWASP TOP 10) across all AppDirect products. Identify security gaps and vulnerabilities through SAST, DAST, SCA, penetration testing, code review. Participate in design and architecture reviews to provide security guidance and recommendations and help shift left the security activities at AppDirect. Conduct security reviews and code audits to identify vulnerabilities, propose remediation strategies and work with Engineering teams to lower the risk. Ensure end-to-end security of AppDirect Marketplace by hands-on testing, hypothesizing threats, helping development teams remediating risks upfront, and championing secure implementation efforts Evaluate and secure the CI/CD pipeline to ensure the safe and reliable delivery of products. Develop and deliver training programs to promote security awareness among developers and engineers. Work closely with Developers and Pipeline team to best secure the code and the tools used to deliver the product. Write Policies, Standards, Processes, Guidelines and help answering customer questionnaires. What We’re Looking For At least 5 years of professional hands-on experience in application security Strong understanding of secure coding practices and knowledge of industry-standard frameworks such as OWASP TOP 10. Knowledge and experience working with one or more SAST, DAST, IAST, SCA and Fuzz testing tools; Experience with containerization technologies (e.g., Docker, Kubernetes) and securing containerized applications. Experience with CI/CD tools and pipelines (e.g., Jenkins, ArgoWorflows, etc.) and securing the delivery process. A strong foundation of security architecture, protocols, vulnerabilities, and countermeasures. Experience working with development, engineering, and architecture teams to ensure security best practices are followed. Experience with one or more programming languages and Frameworks including but not limited to: Java, JavaScript, React, NodeJS, Python. Strong analytical and problem-solving skills, with the ability to think outside the box and quickly adapt to new technologies. Ability to communicate effectively utilizing critical thinking skills, the ability to learn new concepts, and problem-solving as they arise. Self-motivated; able to work independently and aiming to lead a world wide team. At AppDirect, we believe that innovation thrives in an environment that houses diversity of excellence, experience and thought. We respect each AppDirector as their own fingerprint; unique with no one alike. We foster an environment of inclusion without regard to race, religion, age, sexual orientation, or gender identity enabling AppDirectors to embrace their uniqueness to do their best work. As such, we strongly encourage applications from Indigenous peoples, racialized people, people with disabilities, people from gender and sexually diverse communities, and/or people with intersectional identities. At AppDirect we take privacy very seriously. For more information about our use and handling of personal data from job applicants, please read our Candidate Privacy Policy. For more information of our general privacy practices, please see AppDirect Privacy Notice: https://www.appdirect.com/about/privacy-notice Show more Show less

Posted 2 weeks ago

Apply

2.0 - 4.0 years

4 - 6 Lacs

Mumbai

Work from Office

Naukri logo

The Cyber Security role involves working with relevant technologies, ensuring smooth operations, and contributing to business objectives. Responsibilities include analysis, development, implementation, and troubleshooting within the Cyber Security domain.

Posted 2 weeks ago

Apply

2.0 - 4.0 years

4 - 6 Lacs

Chennai

Work from Office

Naukri logo

The Cyber Security E2 role involves working with relevant technologies, ensuring smooth operations, and contributing to business objectives. Responsibilities include analysis, development, implementation, and troubleshooting within the Cyber Security E2 domain.

Posted 2 weeks ago

Apply

3.0 - 5.0 years

5 - 7 Lacs

Mumbai

Work from Office

Naukri logo

The Firewall,WAF role involves working with relevant technologies, ensuring smooth operations, and contributing to business objectives. Responsibilities include analysis, development, implementation, and troubleshooting within the Firewall,WAF domain.

Posted 2 weeks ago

Apply

2.0 - 4.0 years

4 - 6 Lacs

Hyderabad

Work from Office

Naukri logo

The Cyber Security role involves working with relevant technologies, ensuring smooth operations, and contributing to business objectives. Responsibilities include analysis, development, implementation, and troubleshooting within the Cyber Security domain.

Posted 2 weeks ago

Apply

2.0 - 4.0 years

4 - 6 Lacs

Bengaluru

Work from Office

Naukri logo

The Cyber Security role involves working with relevant technologies, ensuring smooth operations, and contributing to business objectives. Responsibilities include analysis, development, implementation, and troubleshooting within the Cyber Security domain.

Posted 2 weeks ago

Apply

2.0 - 4.0 years

4 - 6 Lacs

Bengaluru

Work from Office

Naukri logo

The Pen Testers role involves working with relevant technologies, ensuring smooth operations, and contributing to business objectives. Responsibilities include analysis, development, implementation, and troubleshooting within the Pen Testers domain.

Posted 2 weeks ago

Apply

Exploring OWASP Jobs in India

The OWASP (Open Web Application Security Project) job market in India is growing rapidly as organizations prioritize cybersecurity and the protection of sensitive data. Professionals with expertise in OWASP are in high demand across various industries, offering lucrative career opportunities for job seekers in India.

Top Hiring Locations in India

  1. Bangalore
  2. Mumbai
  3. Delhi NCR
  4. Hyderabad
  5. Pune

These cities are hotspots for OWASP job opportunities, with numerous companies actively seeking professionals with OWASP skills.

Average Salary Range

The average salary range for OWASP professionals in India varies based on experience levels:

  • Entry-level: INR 4-6 lakhs per annum
  • Mid-level: INR 8-12 lakhs per annum
  • Experienced: INR 15-20 lakhs per annum

Salaries can vary based on the company, location, and individual skills and qualifications.

Career Path

A typical career path in OWASP may include progressing from roles such as Junior Security Analyst or Web Application Security Engineer to Senior Security Consultant, OWASP Project Leader, and ultimately to a Chief Information Security Officer (CISO) or Security Architect.

Related Skills

In addition to OWASP expertise, professionals in this field are often expected to have knowledge and experience in areas such as penetration testing, secure coding practices, network security, cryptography, and risk management.

Interview Questions

  • What is OWASP and why is it important in web application security? (basic)
  • Can you explain the difference between XSS and CSRF attacks? (medium)
  • How would you mitigate SQL injection vulnerabilities in a web application? (medium)
  • What tools do you use for OWASP testing and vulnerability assessment? (basic)
  • Describe the steps you would take to secure a RESTful API. (advanced)
  • What are the common security risks associated with mobile applications? (medium)

...and many more!

Closing Remark

As you explore OWASP job opportunities in India, remember to continuously enhance your skills, stay updated on the latest trends in cybersecurity, and showcase your expertise confidently during interviews. With dedication and preparation, you can secure a rewarding career in OWASP and contribute to safeguarding digital assets in the ever-evolving landscape of cybersecurity. Good luck on your job search!

cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies