Home
Jobs

1691 Owasp Jobs - Page 46

Filter
Filter Interviews
Min: 0 years
Max: 25 years
Min: ₹0
Max: ₹10000000
Setup a job Alert
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

4.0 years

0 Lacs

Greater Chennai Area

On-site

Linkedin logo

Line of Service Advisory Industry/Sector Not Applicable Specialism Risk Management Level Associate Job Description & Summary At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data. In threat intelligence and vulnerability management at PwC, you will focus on identifying and analysing potential threats to an organisation's security, as well as managing vulnerabilities to prevent cyber attacks. You will play a crucial role in safeguarding sensitive information and enabling the resilience of digital infrastructure. Why PWC At PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us. At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. Job Description & Summary: In-depth knowledge and hands-on experience in VAPT , including: Web Application Vulnerability Assessment & Penetration Testing, Mobile Application Vulnerability Assessment & Penetration Testing , API and Network Penetration Testing, Cloud Security, Network Security, SOC Monitoring and Incident management. Responsibilities Vulnerability Assessment and Penetration Testing (VA/PT) Conduct VAPT Program Management including Remediation and Closure Management Conduct secure configuration review Conduct/ Manage Secure Code review Conduct/ Manage API secure testing Conduct/ Manage VA/PT for new web/ app development Conduct/ Manage Application Security Conduct/ Manage Red Teaming Conduct/ Manage DevSec/DevSecOps Conduct/ Manage Patch Management Mandatory Skill Sets VAPT In-depth knowledge of security issues, exploitation techniques and remediation measures. Hands-on Experience in Vulnerability Assessments & Penetration Testing (Automated + Manual) on business critical assets ( IP,Web,Mobile,API and AWS) Hands-on experience with well-known security tools BurpSuite, Nessus, Nmap, Accunetix, Metasploit Netsparker, Qualys etc Understanding of web application security vulnerabilities (OWASP Top 10), including XSS, SQL injection, CSRF, and others. Strong knowledge of network security concepts, firewalls, VPNs, IDS/IPS, and TCP/IP protocols. Familiarity with mobile security vulnerabilities in iOS and Android platforms, including reverse engineering, mobile app testing, and OWASP Mobile Security Project. Strong written and verbal communication skills for delivering clear, concise security reports and presenting findings to stakeholders. Preferred Skill Sets Strong organizational, teamwork, multitasking & time management skills. Outstanding communication abilities. Ability to effectively communicate the required recommendations. Years Of Experience Required 4+ Years Education Qualification Minimum Qualification: BE/ BTech Education (if blank, degree and/or field of study not specified) Degrees/Field of Study required: Bachelor of Technology, Bachelor of Engineering Degrees/Field Of Study Preferred Certifications (if blank, certifications not specified) Required Skills Burp Suite, Nessus Vulnerability Scanner, Structured Query Language (SQL) Optional Skills Teamwork Desired Languages (If blank, desired languages not specified) Travel Requirements Not Specified Available for Work Visa Sponsorship? No Government Clearance Required? No Job Posting End Date Show more Show less

Posted 3 weeks ago

Apply

2.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Cialfo is a leading platform connecting students, higher education institutions, and counselors through technology-driven solutions. Launched in 2017 with a mission to make education accessible to 100 million students, Cialfo provides a range of mobile and web solutions to students, K-12 institutions, and higher education institutions. We’re one of the fastest-growing tech startups in the region, consistently charting new heights! About This Role We are looking for a Quality Engineer to help our product team improve the quality of the software we develop. You will collaborate with the product team to understand how product features are meant to work and develop tests to validate and invalidate the features in development. You will participate in the product development process by maintaining and running test scenarios according to the feature being developed. If you are passionate about quality, we’d like to meet you. What You Will Be Doing Review and analyze the Cialfo platform and write test cases and test scripts to test the system. Review requirements, specifications, and technical design documents to provide timely and meaningful feedback. Create detailed, comprehensive, and well-structured test plans and test cases. Perform functional and non-functional testing as needed Troubleshoot and perform root cause analysis of the identified bugs/issues with short-term and long-term solutions. Identify, record, thoroughly document, and track bugs. Communicate efficiently with peers, Engineering, Design, and Product Managers regarding requirements and product issues. About You Qualifications 2+ years of professional experience as SQE in a manual capacity and minimum 1 year in automation testing is a mandate. Bachelor’s or Master’s in Computer Science, Software Engineering, or equivalent. Experience 2+ years of professional experience in non-functional areas: performance. Familiarity with tools like JMeter, and OWASP/ZAP will be considered a plus. Knowledge and experience of Test process in Agile. Knowledge and experience in using Test management and defect management tools i.e. TestRail, ALM, HPQC, Zephyr, JIRA with AIO, etc. Knowledge and experience in API testing using Postman. Sound knowledge of Software Development Life Cycle (SDLC) with experience in working with fast-paced production development teams. Ability to comprehend complex system architecture, and create appropriate test solutions. Applying appropriate test measurements and KPIs in the product/project. Skills & Qualities Good planning and organization skills. Excellent oral and written communication skills in English. Show more Show less

Posted 3 weeks ago

Apply

4.0 years

0 Lacs

India

On-site

Linkedin logo

Job Overview: Responsible for the design, development, and maintenance of web applications using the .NET Core and Angular frameworks. Work across the entire application lifecycle, from front-end user interfaces to back-end services, ensuring the delivery of high-performance and scalable solutions. The ideal candidate will be a proactive, collaborative team player who thrives in a fast-paced environment and is passionate about delivering quality software solutions. Key Responsibilities: Design and develop web applications using Angular for front-end development and .NET Core for back-end services. Write efficient, maintainable, and scalable code across the full stack, ensuring a seamless user experience. Develop RESTful APIs and ensure secure, high-performance communication between the front-end and back-end. Build responsive, dynamic, and user-friendly web interfaces using Angular, React, HTML5, CSS3, JavaScript, and TypeScript. Implement and manage reusable components, modular UI development, and ensure cross-browser compatibility. Collaborate with UI/UX designers to ensure high-quality user experience. Develop robust and scalable back-end services using .NET Core and C#. Create and maintain SQL databases, ensuring optimized queries and data management. Integrate third-party services and APIs into the application architecture. Write unit tests, perform integration testing, and debug both front-end and back-end code to ensure the integrity of the system. Work closely with QA engineers to ensure smooth deployment and high application quality. Participate in code reviews and contribute to continuous improvement of development practices. Collaborate with cross-functional teams (e.g., product owners, designers, QA) in an Agile environment. Participate in sprint planning, daily stand-ups, retrospectives, and backlog refinement meetings. Break down complex problems into tasks, estimate timelines, and ensure timely delivery of features. Use Git for version control, branching, and merging to ensure code quality and seamless collaboration. Work with DevOps engineers to deploy applications using CI/CD pipelines to environments (e.g., Azure DevOps, Jenkins). Identify performance bottlenecks and optimize applications for speed and scalability. Monitor application performance and implement improvements where necessary, including database optimization and code refactoring. Ensure security best practices in both front-end and back-end development, implementing measures to protect against vulnerabilities (e.g., OWASP, cross-site scripting, SQL injection). Follow industry best practices for software development, including documentation, design patterns, and code refactoring. Key Skills and Qualifications: Education: Bachelor’s degree in Computer Science, Software Engineering, or a related field. Experience: 4+ years of experience as a Full Stack Developer, working with .NET Core and Angular. Proven experience in C#, ASP.NET Core, Entity Framework Core, and SQL. Strong front-end development experience using Angular, JavaScript/TypeScript, HTML5, and CSS3. Technical Skills: Proficient in building RESTful services and APIs using .NET Core. Experience with Angular 14+, RxJS, NgRx (or similar state management tools). Solid understanding of database design, querying (SQL Server, MySQL), and ORM tools like Entity Framework Core. Familiarity with front-end build tools such as Webpack, Angular CLI, and npm. Experience with version control tools like Git and CI/CD practices. Knowledge of cloud platforms (e.g., Azure, AWS), containerization (e.g., Docker), and microservices architecture is a plus. Soft Skills: Strong problem-solving abilities with attention to detail. Excellent communication skills to collaborate with cross-functional teams and translate technical information to non-technical stakeholders. Ability to work independently as well as part of a team in a fast-paced, agile environment. Show more Show less

Posted 3 weeks ago

Apply

3.0 years

0 Lacs

Surat, Gujarat, India

On-site

Linkedin logo

About the Role We are looking for a Senior Node.js Developer with over 3 years of professional experience in backend development using Node.js. The ideal candidate will have a strong foundation in JavaScript, a solid understanding of scalable architecture, and hands-on experience building robust APIs and real-time applications. This role is perfect for someone who thrives in a collaborative environment, is passionate about writing clean code, and is driven to solve complex technical challenges. Contributions of a Senior Node.js Developer The capabilities of a Sr. Node.js developer encompass a wide range of technical skills, soft skills, and domain knowledge. Here are the key contributions they make: · Server-Side Development · Security Implementation · Middleware Development · Microservices Architecture · Real-Time Applications · API Development Expectations for a Sr. Node.js Developer · JavaScript Proficiency: Mastery of modern JavaScript (ES6+), including closures, modules, and asynchronous paradigms (callbacks, promises, async/await). Deep understanding of Node.js internals and event-driven architecture. · Real-Time Applications: Build and optimize real-time features using WebSockets, Socket.IO, or similar technologies. · Database Skills: Competence in working with databases, both SQL and NoSQL. This includes database design, querying, and integration with Node.js applications. · Package Management: Familiarity with npm (Node Package Manager) for managing dependencies and integrating third-party packages. Knowledge of creating and publishing npm packages is a plus. · Version Control: Competence in using version control systems like Git for tracking changes, collaborating with other developers, and managing code repositories. · Asynchronous Programming: Ability to write asynchronous code using callbacks, Promises, and async/await. Understanding the event-driven nature of Node.js is crucial. · Middleware & Framework Expertise: Develop middleware and leverage frameworks like Express.js for routing and integrations . · Performance Optimization: Ability to identify and address performance bottlenecks in Node.js applications. Knowledge of caching strategies and optimization techniques is valuable. · Security Best Practices: Familiar with OWASP standards, token-based authentication (JWT), OAuth2, input validation, and secure API design Capabilities of a Senior Node.js Developer · Education: Bachelor’s or Master’s degree in Computer Science, Information Technology, or related field. · Proven Experience: Demonstrable 3+ years of experience as a Node.js Developer, usually supported by a strong portfolio showcasing relevant projects and accomplishments. · Problem Solving: Strong problem-solving skills, including the ability to troubleshoot and debug issues efficiently. Effective use of debugging tools and logs. · Scalability: Understanding of scalability principles and the ability to design and implement scalable architectures for applications that can handle growth. · Containerization and Orchestration: Familiarity with containerization using Docker and orchestration using Kubernetes for efficient deployment and scaling. · Team Collaboration: Collaboration with cross-functional teams, including front-end developers, designers, testers, and project managers, to deliver high-quality solutions. Benefits of joining Atologist Infotech 👉 Paid Leaves 👉 Leave Encashment 👉 Friendly Leave Policy 👉 5 Days Working 👉 Festivals Celebrations 👉 Friendly Environment 👉 Lucrative Salary packages 👉 Paid Sick Off 👉 Diwali Vacation 👉 Annual Big Tour 👉 Festive Off If the above requirements suit your interest, please call us on +91 9909166110 or send your resume to hr@atologistinfotech.com Show more Show less

Posted 3 weeks ago

Apply

30.0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Today’s world is crime-riddled. Criminals are everywhere, invisible, virtual and sophisticated. Traditional ways to prevent and investigate crime and terror are no longer enough… Technology is changing incredibly fast. The criminals know it, and they are taking advantage. We know it too. For nearly 30 years, the incredible minds at Cognyte around the world have worked closely together and put their expertise to work, to keep up with constantly evolving technological and criminal trends, and help make the world a safer place with leading investigative analytics software solutions. We are defined by our dedication to doing good and this translates to business success, meaningful work friendships, a can-do attitude, and deep curiosity. So, if you rock at DevSecOps and being a technical expert, and want in on the action, let’s talk! Role Overview: This role focuses on integrating security best practices into CI/CD pipelines and production system deployments, ensuring security is embedded throughout the software development lifecycle. As a DevSecOps Engineer, you will work closely with architecture, development, and operations teams to make security a shared responsibility across all stages of software development and deployment. Your primary responsibility will be implementing security best practices, testing, and automation tools into CI/CD pipelines and production environments using industry-standard tools such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and other security mechanisms. Key Responsibilities : · Security Integration into DevOps: Collaborate with development and operations teams to integrate security practices into every stage of the software development lifecycle, from code creation to deployment. · CI/CD Pipeline Security: Configure, implement, and manage security tools and automation in CI/CD pipelines to detect vulnerabilities early in the development process. · Security Testing: Use SAST and DAST tools to automate security testing for code and applications. Continuously monitor security scans, report findings, and recommend remediation strategies. · Automation & Process Improvement: Continuously enhance and automate security processes to deliver secure software efficiently while minimizing manual intervention. Experience Required: 3+ years of experience in DevOps or a similar role focused on integrating security into CI/CD processes. Proven experience implementing and configuring security tools such as SAST, DAST, and other automation tools. Strong hands-on experience with CI/CD tools and languages (e.g., Jenkins, Groovy, Git, Python, Bash) for pipeline automation. Proficiency in cloud-native deployments and management (e.g., Helm, Kustomize), Kubernetes objects, and cluster debugging. Familiarity with Infrastructure as Code (IaC) tools like Terraform and Ansible. Knowledge of CIS benchmark recommendations and system hardening practices. Technical Skills : Proficiency in programming/scripting languages (e.g., Python, Bash, Groovy, Ansible, Helm) for automation. In-depth knowledge of security vulnerabilities (e.g., OWASP Top 10) and mitigation best practices. Experience with vulnerability scanning and static and dynamic application security testing tools (e.g., SonarQube, Checkmarx, OWASP ZAP, Coverity, Lint). Familiarity with on-premises cloud platforms (e.g., OpenShift, Tanzu) and public cloud platforms (AWS, Azure, GCP) and their security configurations. Soft Skills : Strong communication skills to effectively collaborate with cross-functional teams. A problem-solving mindset with the ability to quickly troubleshoot and resolve security issues. A proactive and collaborative approach to fostering a security-first mindset across the organization. We believe that diverse teams drive the greatness of ideas, products, and companies. Whatever your race, gender, age, creed, or taste in music – if you’ve got the drive, commitment, and dedication to be the best, do your best, and work with the best, then come join us. We’re waiting for you. Curious? Apply now. Show more Show less

Posted 3 weeks ago

Apply

5.0 years

0 Lacs

Ahmedabad, Gujarat, India

Remote

Linkedin logo

Join MSBC as a QA Engineer (C#) – Driving Excellence in Backend and API Automation We are seeking a skilled and detail-oriented QA Engineer with 5+ years of experience in backend testing and API automation. In this role, you will play a critical part in ensuring the robustness and reliability of backend systems through strategic test planning, automation development, and strong collaboration with engineering teams. If you're passionate about building scalable test frameworks and working with complex API ecosystems, we’d love to hear from you. Key Responsibilities: API Test Automation Develop, maintain, and execute automated test cases for RESTful APIs , SOAP services , and Protobuf messages using .NET-based frameworks . Design reusable automation frameworks and scripts tailored to backend and integration workflows. Implement automation for FIX protocol interfaces and message validation processes. Manual API Testing Conduct manual testing for API endpoints to ensure functional accuracy and data integrity. Validate message serialization/deserialization and protocol compliance for Protobuf and FIX. Test Strategy & Execution Design and execute detailed test plans, test cases, and test scripts focused on API and backend systems. Perform regression, integration, and performance testing for service-level validation. Collaboration & Reporting Partner with development, architecture, and product teams to understand API specifications and system behavior. Track and communicate test coverage, bugs, and progress using test management tools. Continuous Improvement Enhance existing test frameworks and propose automation strategies for increased efficiency. Stay updated on evolving tools, libraries, and best practices in API and backend testing. Required Skills & Qualifications: 5+ years of experience in manual and automation testing , with a strong focus on backend and API validation. Proficiency in .NET for developing automated testing solutions. Experience testing RESTful and SOAP APIs , including message types like Protobuf and protocols like FIX . Familiarity with API testing tools (e.g., Postman , Swagger ) and version control systems (e.g., Git ). Working knowledge of CI/CD tools (e.g., Jenkins, GitHub Actions). Strong debugging skills and understanding of backend architectures and integration flows. Exposure to API contract testing tools (e.g., Pact ) and security testing (e.g., OWASP standards). Comfortable working in Agile/Scrum environments. Excellent problem-solving, analytical, and communication skills. Note: Shift timings align with UK working hours. This role is based in Ahmadabad, but candidates from other cities or states are encouraged to apply as remote or hybrid working options are available. MSBC Group has been a trusted technology partner for over 20 years, delivering cutting-edge digital and AI-powered solutions across financial services, manufacturing, logistics, and construction sectors. We specialise in Custom Software Development, Staff Augmentation, Managed Services, and Business Process Outsourcing—driving innovation and enterprise transformation globally. If you're passionate about trading systems, connectivity, and creating high-impact technology solutions, we’d love to hear from you. Show more Show less

Posted 3 weeks ago

Apply

0.0 - 3.0 years

0 Lacs

Surat, Gujarat

On-site

Indeed logo

About the Role We are looking for a Senior Node.js Developer with over 3 years of professional experience in backend development using Node.js. The ideal candidate will have a strong foundation in JavaScript, a solid understanding of scalable architecture, and hands-on experience building robust APIs and real-time applications. This role is perfect for someone who thrives in a collaborative environment, is passionate about writing clean code, and is driven to solve complex technical challenges. Contributions of a Sr. Node.js Developer The capabilities of a Sr. Node.js developer encompass a wide range of technical skills, soft skills, and domain knowledge. Here are the key contributions they make: · Server-Side Development · Security Implementation · Middleware Development · Microservices Architecture · Real-Time Applications · API Development Expectations for a Sr. Node.js Developer · JavaScript Proficiency: Mastery of modern JavaScript (ES6+), including closures, modules, and asynchronous paradigms (callbacks, promises, async/await). Deep understanding of Node.js internals and event-driven architecture. · Real-Time Applications: Build and optimize real-time features using WebSockets, Socket.IO, or similar technologies. · Database Skills: Competence in working with databases, both SQL and NoSQL. This includes database design, querying, and integration with Node.js applications. · Package Management: Familiarity with npm (Node Package Manager) for managing dependencies and integrating third-party packages. Knowledge of creating and publishing npm packages is a plus. · Version Control: Competence in using version control systems like Git for tracking changes, collaborating with other developers, and managing code repositories. · Asynchronous Programming: Ability to write asynchronous code using callbacks, Promises, and async/await. Understanding the event-driven nature of Node.js is crucial. · Middleware & Framework Expertise: Develop middleware and leverage frameworks like Express.js for routing and integrations . · Performance Optimization: Ability to identify and address performance bottlenecks in Node.js applications. Knowledge of caching strategies and optimization techniques is valuable. · Security Best Practices: Familiar with OWASP standards, token-based authentication (JWT), OAuth2, input validation, and secure API design. Capabilities of a Sr. Node.js Developer · Education: Bachelor’s or Master’s degree in Computer Science, Information Technology, or related field. · Proven Experience: Demonstrable as a Node.js Developer, usually supported by a strong portfolio showcasing relevant projects and accomplishments. · Problem Solving: Strong problem-solving skills, including the ability to troubleshoot and debug issues efficiently. Effective use of debugging tools and logs. · Scalability: Understanding of scalability principles and the ability to design and implement scalable architectures for applications that can handle growth. · Containerization and Orchestration: Familiarity with containerization using Docker and orchestration using Kubernetes for efficient deployment and scaling. · Team Collaboration: Collaboration with cross-functional teams, including front-end developers, designers, testers, and project managers, to deliver high-quality solutions. Job Type: Full-time Benefits: Leave encashment Paid sick time Paid time off Provident Fund Schedule: Fixed shift Monday to Friday Ability to commute/relocate: Surat, Gujarat: Reliably commute or planning to relocate before starting work (Preferred) Education: Bachelor's (Preferred) Experience: Node.js: 3 years (Preferred) Work Location: In person

Posted 3 weeks ago

Apply

3.0 - 8.0 years

10 - 20 Lacs

Hyderabad, Chennai, Bengaluru

Hybrid

Naukri logo

Job Title: Application Security Engineer SAST & DAST Experience Required: 3 to 8 Years Location: Hyderabad / Bangalore / Chennai / Mumbai / Pune / Kolkata / Gurgaon Mode of Interview: MS Teams (12 rounds) Notice Period: 0 to 30 Days Job Overview: We are looking for an experienced Application Security Engineer specializing in SAST & DAST to join our growing team. The ideal candidate will be responsible for integrating security throughout the software development lifecycle (SDLC), implementing and managing security tools, and driving security best practices across the organization. Key Responsibilities: Implement and manage application security testing activities throughout the development, deployment, and maintenance phases. Perform Static Application Security Testing (SAST) using tools like Checkmarx and Fortify . Execute and manage Dynamic Application Security Testing (DAST) tools such as AppScan and WebInspect . Conduct secure code reviews in languages including Java, .NET, Swift, Objective-C . Integrate security tools in DevOps pipelines and CI/CD environments (e.g., Jenkins, TeamCity, Bamboo, Chef, Puppet). Apply OWASP Top 10 , SANS Secure Coding Practices , and Security Engineering Principles during development and assessment. Analyze, triage, and report vulnerabilities using CVSS scoring and determine business impact. Perform penetration testing for web, mobile, and desktop applications. Implement mobile security testing techniques, including bypassing SSL pinning , root detection , reverse engineering , and manifest analysis . Work with containerized environments such as Docker and Kubernetes . Utilize at least one scripting language (e.g., Python, Bash, PowerShell) for automation or security tooling. Required Skills & Experience: Strong experience with SAST and DAST tools (Checkmarx, Fortify, AppScan, WebInspect) Familiarity with OWASP Top 10 , secure coding practices, and vulnerability remediation Proficient in secure code review for Java, .NET, Swift, Objective-C Solid understanding of DevSecOps practices and security toolchain integration Hands-on experience with CI/CD tools (Jenkins, TeamCity, Bamboo, etc.) Experience with container security in Docker/Kubernetes environments Knowledge of CVSS scoring and vulnerability risk assessment Understanding of mobile application security techniques and concepts Experience with scripting in Python, Bash, or equivalent Preferred Qualifications: Security certifications (e.g., CEH, OSCP, GWEB, GWAPT, Security+ ) Exposure to cloud environments (AWS, Azure, GCP) from a security standpoint Familiarity with automated testing tools like Selenium Experience working in Agile and DevOps environments Interested Candidates can share your updated resume to subashini.gopalan@kiya.ai

Posted 3 weeks ago

Apply

11.0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Introduction A career in IBM Software means you’ll be part of a team that transforms our customer’s challenges into solutions. Seeking new possibilities and always staying curious, we are a team dedicated to creating the world’s leading AI-powered, cloud-native software solutions for our customers. Our renowned legacy creates endless global opportunities for our IBMers, so the door is always open for those who want to grow their career. IBM’s product and technology landscape includes Research, Software, and Infrastructure. Entering this domain positions you at the heart of IBM, where growth and innovation thrives. Your Role And Responsibilities Lead the design, development, and deployment of scalable, secure backend systems using Java, J2EE, and GoLang. Architect and implement robust RESTful APIs and microservices aligned with enterprise cloud-native standards. Collaborate closely with DevOps, QA, and frontend teams to deliver end-to-end product functionality. Set coding standards, influence architectural direction, and drive adoption of best practices across backend systems. Own performance tuning, monitoring, and high availability for backend services using tools like Prometheus, ELK, and Grafana. Implement security, compliance, and privacy by design principles in backend systems. Lead incident response and resolution of complex production issues across multi-cloud environments (e.g., AWS, Azure, OCP). Mentor and guide junior developers and contribute to team-wide knowledge sharing and skill development. Actively participate in Agile ceremonies and contribute to continuous delivery and process improvement. Preferred Education Bachelor's Degree Required Technical And Professional Expertise 11+ years of backend software development experience focused on scalable, secure, cloud-native enterprise systems. Deep expertise in Java, J2EE, and GoLang for building distributed backend systems. Advanced experience in architecting and implementing RESTful APIs, service meshes, and inter-service communication. Expert in Postgres or equivalent RDBMS — data modeling, indexing, and performance optimization at scale. Proven track record with microservices architecture, including Docker, Kubernetes, and service deployment patterns. Expert-level familiarity with backend-focused CI/CD tooling (Jenkins, GitLab CI/CD, ArgoCD) and IaC tools (Terraform, CloudFormation). Strong knowledge of monitoring/logging tools such as Prometheus, Grafana, ELK, and Splunk, focusing on backend telemetry and observability. Experience deploying applications on cloud platforms: AWS (EKS, ECS, Lambda, CloudFormation), Azure, or GCP. Familiarity with DevSecOps, secure coding practices, and compliance-aware architecture for regulated environments. Proficient in integration, load, and unit testing using JMeter, RestAssured, JUnit, etc. Leadership in backend architecture, performance tuning, platform modernization, and mentoring of technical teams. Effective cross-functional collaboration skills in multi-team, multi-region environments. Preferred Technical And Professional Experience Deep understanding of backend architecture patterns including microservices, event-driven architecture, and domain-driven design. Experience implementing security and privacy by design principles in cloud-native backend systems. Hands-on expertise with cryptographic protocols and standards such as TLS, FIPS, and experience integrating with Java security frameworks (e.g., JCE, Spring Security). Strong grasp of secure coding practices, with experience identifying and mitigating OWASP Top 10 vulnerabilities. Exposure to designing and developing shared platform services or backend frameworks reused across products or tenants (e.g., in multi-tenant SaaS environments). Familiarity with API security patterns, including OAuth2, JWT, API gateways (e.g., Kong, Apigee). Prior experience working on compliance-oriented systems (e.g., SOC2, HIPAA, FedRAMP) or architecting for high-assurance environments. Proficiency with Shell scripting, Python, or Node.js for infrastructure automation or backend utilities. Show more Show less

Posted 3 weeks ago

Apply

4.0 - 8.0 years

12 - 14 Lacs

Bengaluru

Work from Office

Naukri logo

Consultant - MAST Vanguard Requirements: Mandatory Technical & Functional Skills Strong knowledge on manual secure code review against common programming languages (Java, C#) Minimum three (3) years of recent experience working with application tools to perform security tests: AppScan, NetsSparker, Acunetix, Checkmarx, Veracode, BurpSuite, OWASP ZAP, Kali Linux, or equivalent. Minimum three (3) years of performing manual penetration testing and code review against web apps, mobile apps, and APIs Minimum three (3) years of working with technical and non-technical audiences in reporting results and lead remediation conversations. Preferred one year of experience in development of web applications and/or APIs. Should be able to identify and work with new tools / technologies to plug and play on client projects as needed to solve the problem at hand. One or more major ethical hacking certifications not required but preferred; GWAPT, CREST, OSCP, OSWE, OSWA Job Description: Roles & responsibilities Perform manual application penetration tests on one or more of the following to discover and exploit vulnerabilities: web applications, internal applications, APIs, internal and external networks, and mobile applications Perform manual security code review against common programming languages (Java, CSharp). Perform automated testing of running applications and static code (SAST, DAST). Experience in one or more of the following a plus: AI pen testing. Need to work on application tools to perform security tests: AppScan, NetsSparker, Acunetix, Checkmarx, Veracode, BurpSuite, OWASP ZAP, Kali Linux. Able to explain IDOR, Second Order SQL Injection, CSRF Vulnerability, Root cause, Remediation

Posted 3 weeks ago

Apply

5.0 years

0 Lacs

Mumbai Metropolitan Region

On-site

Linkedin logo

Why Noventiq? Do you want to contribute directly to successful business outcomes by driving digital transformation for its customers’ businesses, connecting 75k organizations forward in a secure way? Are you motivated to evolve the global best practices within all sectors with hundreds of best-in-class IT vendors, alongside its services and solutions? Noventiq Is a Leading Global Solutions And Services Provider Founded in 1993 Headquartered in London, UK Revenue of $ 2.1 billion Headcount of 6400 employees Partnering with Microsoft, IBM, Oracle, Google, AWS and up to 500 other vendors Operating in roughly 60 countries 16 strategic acquisitions What's in it for you? Here you will collaborate with multi-national teams, ameliorate to a bazillion of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow, capable of taking on more significant responsibilities and leadership roles. This can be invaluable in understanding and serving clients from different regions, making the company truly expand its presence in new markets, bringing a profound positive repercussion to the business. Now we are looking for an Application Security Specialist , you will be a part of our Global Delivery team. Job Overview: As an Application Security Specialist, you’ll play a vital role in building secure systems from the ground up. Working closely with engineering, compliance, and DevOps teams, you will ensure our applications meet rigorous security and regulatory standards across global jurisdictions. Your Impact On The Mission Integrate security into the Software Development Lifecycle (SDLC), embedding security controls at every phase. Conduct threat modeling, secure code reviews, and penetration testing for internal and third-party applications. Collaborate with development teams to address security issues across CI/CD pipelines (DevSecOps). Manage and mitigate application-level risks in line with security frameworks and regulatory requirements. Support compliance efforts for GDPR, NIS2, PCI-DSS, and DORA by applying security controls and maintaining evidence. Drive secure practices in the software supply chain, improving defenses against attacks like those seen in SolarWinds. Business Impact Reduces application security vulnerabilities across internal and customer-facing systems. Helps ensure Noventiq’s compliance with global cybersecurity regulations. Lowers production defects and remediation costs through early detection. Strengthens resilience of cloud-native and third-party platforms. About What You’ll Bring to The Table – About You: 5 years in Application Security, including secure development, testing, and DevSecOps. Solid understanding of OWASP Top 10, SAST/DAST, threat modeling, and common attack vectors. Familiarity with CI/CD environments (e.g., GitLab, GitHub Actions, Azure DevOps). Hands-on experience with tools such as Burp Suite, OWASP ZAP, SonarQube, Checkmarx, or similar. Preferred Certifications Industry-recognized certifications are a plus, including: OSCP , GWAPT, CISSP, or CSSLP Bonus for Azure Security Engineer (AZ-500) or Certified DevSecOps Professional Frameworks & Compliance Working knowledge of: OWASP , CIS Controls v8, ISO/IEC 27001 GDPR , NIS2 Directive, PCI-DSS, DORA Regulation How To Apply If you would like to apply, please click on the button or send an email with your CV attached to the TA Team. If you would like an informal chat before applying, please feel free to contact TA directly on LinkedIn or the same email address. Show more Show less

Posted 3 weeks ago

Apply

5.0 years

0 Lacs

Hyderabad, Telangana, India

On-site

Linkedin logo

Job description Role Overview : The Application Security Senior Engineer will play a crucial role in safeguarding our applications and digital assets against security threats. With a primary focus on Vulnerability Assessment and Penetration Testing (VAPT), the role involves identifying, assessing, and mitigating security vulnerabilities across our application portfolio. This position requires a proactive mindset, strong technical skills, and the ability to collaborate effectively with cross-functional teams and support the security projects. Key Responsibilities : 1. Vulnerability Assessment and Penetration Testing (VAPT): - Conduct comprehensive security assessments of applications using industry-standard tools and techniques. - Perform manual testing and automated scans to identify vulnerabilities such as OWASP Top 10, SQL injection, XSS, CSRF, etc. - Analyze and interpret assessment findings, providing clear and actionable recommendations to development teams. - Support the security gating process with timely security assessment and reporting. - Provide guidance and assistance on secure software development life cycle. - Track identified vulnerabilities through to resolution, collaborating closely with development teams to ensure timely mitigation. - Provide detailed vulnerability reports and metrics to stakeholders, including risk assessments and remediation progress. 2. Support for Security Projects: - Actively participate in security projects and initiatives, providing expertise and guidance on application security best practices. - Perform Security Architecture review for existing and new security projects and guide on security best practices. - Collaborate with architects and developers to integrate security into the SDLC (Secure Development Life Cycle) and CI/CD pipelines. 3. Incident Response and Support: - Assist in incident response activities related to application security incidents. - Contribute to root cause analysis and lessons learned sessions to improve incident handling and prevention strategies. 4. Security Awareness and Training: - Develop and deliver training sessions on secure coding practices and application security awareness. - Promote a culture of security within the organization, advocating for continuous improvement and adherence to security policies. Requirements: Bachelors degree in Computer Science/Information Technology, or a related field. Minimum of 5 years of experience in application security, with a focus on VAPT and secure development practices. Proven experience with security assessment tools such as Burp Suite, Qualys, Nessus, etc. Strong understanding of web application architecture, including front-end, back-end, and APIs. Solid knowledge of OWASP guidelines and best practices for secure coding. Certifications such as CISSP, CEH, OSCP, or similar are preferred. Excellent communication skills with the ability to articulate technical concepts to non-technical stakeholders. Strong analytical and problem-solving skills, with attention to detail. Why join us? Impactful Work: Play a pivotal role in safeguarding Tanla's assets, data, and reputation in the industry. Tremendous Growth Opportunities: Be part of a rapidly growing company in the telecom and CPaaS space, with opportunities for professional development. Innovative Environment: Work alongside a world-class team in a challenging and fun environment, where innovation is celebrated. Tanla is an equal opportunity employer. We champion diversity and are committed to creating an inclusive environment for all employees. www.tanla.com Show more Show less

Posted 3 weeks ago

Apply

8.0 years

0 Lacs

Pune, Maharashtra, India

On-site

Linkedin logo

Job Requisition ID # 25WD86351 Position Overview Autodesk is a leader in 3D design, engineering, and entertainment software. Our solutions span the architecture, engineering, construction, manufacturing, media, and entertainment industries, empowering innovators to push boundaries and shape the future. As an Engineering Manager for the Data Security team, you will be responsible for overseeing the development and implementation of security measures designed to protect our data infrastructure. You will lead a talented group of engineers, fostering a culture of security excellence, collaboration, and innovation. In this role, you will work closely with cross-functional teams—including Engineering, Product, Compliance, and Legal—to build and maintain secure systems while ensuring that data privacy and security practices remain a central focus throughout the development process. Responsibilities Lead and manage a high-performing team of data security engineers, guiding their personal and professional growth Foster a culture of continuous learning and improvement to ensure the team stays current with the latest security trends and technologies Develop and mentor team members through coaching, feedback, and performance reviews Lead the team in responding to data security incidents, ensuring rapid detection, resolution, and root-cause analysis Define and implement security strategies, policies, and procedures to safeguard sensitive data across systems and environments Manage the identification, evaluation, and mitigation of security risks related to data handling and storage Conduct regular security assessments and penetration tests, continuously improving threat detection and response capabilities Build and maintain strong relationships with internal stakeholders—including Product, Engineering, Compliance, Legal, and executive leadership—to align data security goals with business objectives Serve as the primary point of contact for data security concerns across departments, advocating for best practices and ensuring proactive communication regarding data risks and initiatives Collaborate with product managers and engineering leads to embed data security into the development process—from ideation to deployment—ensuring it is prioritized in all projects Provide regular updates to senior leadership and stakeholders on data security initiatives, incident responses, and key metrics to ensure transparency and alignment Monitor industry trends and emerging data security technologies to continuously enhance the organization’s security posture Create and track data security metrics and KPIs to measure the effectiveness of security programs and initiatives Minimum Qualifications Bachelor’s or master’s degree in Computer Science, Information Security, or a related field Proven experience (8+ years) in data security engineering, with at least 3 years in a leadership or management role In-depth knowledge and hands-on experience with data security principles, practices, and technologies, including encryption, identity management, and access control systems Strong understanding of secure coding practices and principles Expertise in security frameworks and standards (e.g., SOC 2, GDPR, NIST, OWASP, ISO 27001) Deep understanding of cloud security practices (AWS, Azure, Google Cloud) and the secure software development lifecycle (SDLC) Proficiency with security tools and technologies, including firewalls, encryption, intrusion detection systems (IDS), data loss prevention (DLP), and SIEM tools Excellent problem-solving, analytical, and decision-making skills Ability to thrive in a fast-paced, dynamic environment Demonstrated ability to build strong relationships and influence stakeholders at all organizational levels Learn More About Autodesk Welcome to Autodesk! Amazing things are created every day with our software – from the greenest buildings and cleanest cars to the smartest factories and biggest hit movies. We help innovators turn their ideas into reality, transforming not only how things are made, but what can be made. We take great pride in our culture here at Autodesk – our Culture Code is at the core of everything we do. Our values and ways of working help our people thrive and realize their potential, which leads to even better outcomes for our customers. When you’re an Autodesker, you can be your whole, authentic self and do meaningful work that helps build a better future for all. Ready to shape the world and your future? Join us! Salary transparency Salary is one part of Autodesk’s competitive compensation package. Offers are based on the candidate’s experience and geographic location. In addition to base salaries, we also have a significant emphasis on discretionary annual cash bonuses, commissions for sales roles, stock or long-term incentive cash grants, and a comprehensive benefits package. Diversity & Belonging We take pride in cultivating a culture of belonging and an equitable workplace where everyone can thrive. Learn more here: https://www.autodesk.com/company/diversity-and-belonging Are you an existing contractor or consultant with Autodesk? Please search for open jobs and apply internally (not on this external site). Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

7.0 years

0 Lacs

Noida, Uttar Pradesh, India

On-site

Linkedin logo

Note: If shortlisted, we’ll contact you via WhatsApp and email. Please monitor both and respond promptly. Location: Noida, India Work Mode: Financials SuppoWork from Office Salary 5–7 years: Up to INR 20,00,000 per annum 8–10 years: Up to INR 25,00,000 per annum Joining Time / Notice Period: Immediate – 30 days About The Client Hiring for a technology-driven organization with a strong focus on cybersecurity, cloud infrastructure, and risk management practices. The company supports global clients in achieving compliance and robust information security postures. Job Overview Seeking a Cyber Risk Management Lead to drive enterprise-level risk governance, compliance assessments, and security control implementation across on-premise and cloud environments. The ideal candidate has 5+ years of experience in cybersecurity risk, infrastructure audits, and cloud (AWS) security. Key Responsibilities Ensure alignment with regulations, guidelines, and industry best practices (e.g., NIST, ISO, OWASP, ITIL) Maintain, develop, and audit security documentation: policies, standards, procedures Monitor control effectiveness for EDR, cloud, email, and server security Conduct internal security risk assessments for ongoing compliance Guide cross-functional teams on their roles in risk management Lead SOC 2 Type 2 assessments and evidence collection Review and respond to cybersecurity-related RFPs Oversee AWS and Office365 security governance and implementation Track and close audit findings; support internal and external audits Create and manage dashboards for tracking IT and IS events Minimum Qualifications Bachelor's degree in IT, Computer Science, or related field 5+ years of relevant experience in cybersecurity and risk management In-depth knowledge of enterprise IT components: O365, firewalls, VPN, IDS/IPS, proxy, AV/EDR, DHCP/DNS, MFA, WAF, DLP Strong experience with AWS Cloud Security (mandatory) and Azure (preferred) Experience with audit frameworks (SOC2, HIPAA, ISO27001) At least one security certification preferred (e.g., CISM, CRISC, CISSP) Strong communication, documentation, and stakeholder management skills Show more Show less

Posted 3 weeks ago

Apply

0 years

0 Lacs

India

Remote

Linkedin logo

Ethical Hacking Intern Company: INLIGHN TECH Location: Remote (100% Virtual) Duration: 3 Months Stipend for Top Interns: ₹15,000 Certificate Provided | Letter of Recommendation | Full-Time Offer Based on Performance About the Company: INLIGHN TECH empowers students and fresh graduates with real-world experience through hands-on, project-driven internships. The Ethical Hacking Internship is designed to equip you with offensive cybersecurity skills through practical exposure to penetration testing, vulnerability assessment, and ethical hacking methodologies. Role Overview: As an Ethical Hacking Intern, you will work on real-world cybersecurity challenges, identify system vulnerabilities, and learn how to ethically exploit weaknesses to help secure systems. This internship will enhance your skills in reconnaissance, exploitation, and reporting, while working on live simulations and projects. Key Responsibilities: Perform vulnerability scanning and security assessments on virtual systems Conduct reconnaissance and information gathering using open-source tools Analyze potential threats and simulate cyberattacks in controlled environments Document and report discovered vulnerabilities and exploits Collaborate with mentors to understand system hardening techniques Assist in preparing cybersecurity awareness and best practices materials Qualifications: Pursuing or recently completed a degree in Cybersecurity, Computer Science, or a related field Basic understanding of networking, operating systems, and web application security Familiarity with tools like Nmap, Burp Suite, Metasploit, Wireshark, or Kali Linux Knowledge of OWASP Top 10 and common vulnerability types Strong analytical and problem-solving skills Eagerness to learn, adapt, and apply ethical hacking techniques Internship Benefits: Hands-on experience with industry-standard cybersecurity tools Certificate of Internship upon successful completion Letter of Recommendation for top performers Build a strong portfolio of ethical hacking reports and security assessments Show more Show less

Posted 3 weeks ago

Apply

5.0 years

0 Lacs

Chennai, Tamil Nadu, India

On-site

Linkedin logo

Are you an experienced technology architect with a strong background in cloud-native application design, microservices, and security frameworks? Do you aspire to influence enterprise-level architecture decisions and shape platforms used by millions? We are looking for a Senior Architect to join our client's Group IT team and support the development of scalable, resilient, and secure digital banking platforms. Role Overview As a Senior Architect, you will work across cross-functional squads, guiding solution delivery, defining architecture best practices, and mentoring junior architects. This role requires close collaboration with engineering, security, infrastructure, and business leaders to design modern applications and ecosystems aligned with business strategy. Key Responsibilities Design and deliver end-to-end architectures for mobile, web, and cloud-native applications. Define and enforce architecture standards, guidelines, and reusable reference patterns. Collaborate with cyber security teams to embed security into all layers of design. Lead architecture reviews and ensure adherence to performance, resiliency, and user experience standards. Integrate apps with microservices, event-streams, containers, and external systems. Conduct peer reviews, lead technical workshops, and coach junior team members. Continuously evaluate emerging technologies and propose adoption strategies Technical Expertise Required 5+ years of experience designing applications (web, mobile), microservices, APIs. Deep knowledge of modern architectural patterns (Microservices, APIs, Event-Driven). Hands-on experience with Kubernetes, OpenShift, containers, and service mesh. Strong understanding of cyber security (OWASP, Encryption, IAM, AppSec). Experience with cloud platforms (Azure, AWS, OCI preferred). Familiarity with architecture and data modeling tools (e.g., Sparx EA, ER/Studio) What We're Looking For Strong analytical and critical thinking skills. Ability to influence stakeholders and manage priorities independently. Passion for clean architecture, security by design, and scalable systems. Proactive contributor in communities of practice and chapter discussions. Prior experience working in agile tribes or product-led organizations is a plus Key Outcomes Expected Deliver complete architectural designs aligned with timelines. Introduce reusable patterns and automate architecture design tasks. Contribute to building secure, reliable digital platforms. Share knowledge via training sessions and workshops. Continuously upskill and strive for excellence in security architecture Why Join Us? Work with cutting-edge technology for one of the largest digital banking transformations in the Middle East , collaborate with global teams, and contribute to systems impacting millions of users daily. Show more Show less

Posted 3 weeks ago

Apply

Exploring OWASP Jobs in India

The OWASP (Open Web Application Security Project) job market in India is growing rapidly as organizations prioritize cybersecurity and the protection of sensitive data. Professionals with expertise in OWASP are in high demand across various industries, offering lucrative career opportunities for job seekers in India.

Top Hiring Locations in India

  1. Bangalore
  2. Mumbai
  3. Delhi NCR
  4. Hyderabad
  5. Pune

These cities are hotspots for OWASP job opportunities, with numerous companies actively seeking professionals with OWASP skills.

Average Salary Range

The average salary range for OWASP professionals in India varies based on experience levels:

  • Entry-level: INR 4-6 lakhs per annum
  • Mid-level: INR 8-12 lakhs per annum
  • Experienced: INR 15-20 lakhs per annum

Salaries can vary based on the company, location, and individual skills and qualifications.

Career Path

A typical career path in OWASP may include progressing from roles such as Junior Security Analyst or Web Application Security Engineer to Senior Security Consultant, OWASP Project Leader, and ultimately to a Chief Information Security Officer (CISO) or Security Architect.

Related Skills

In addition to OWASP expertise, professionals in this field are often expected to have knowledge and experience in areas such as penetration testing, secure coding practices, network security, cryptography, and risk management.

Interview Questions

  • What is OWASP and why is it important in web application security? (basic)
  • Can you explain the difference between XSS and CSRF attacks? (medium)
  • How would you mitigate SQL injection vulnerabilities in a web application? (medium)
  • What tools do you use for OWASP testing and vulnerability assessment? (basic)
  • Describe the steps you would take to secure a RESTful API. (advanced)
  • What are the common security risks associated with mobile applications? (medium)

...and many more!

Closing Remark

As you explore OWASP job opportunities in India, remember to continuously enhance your skills, stay updated on the latest trends in cybersecurity, and showcase your expertise confidently during interviews. With dedication and preparation, you can secure a rewarding career in OWASP and contribute to safeguarding digital assets in the ever-evolving landscape of cybersecurity. Good luck on your job search!

cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies