Security Remediation QA Analyst

8 years

0 Lacs

Posted:2 days ago| Platform: Linkedin logo

Apply

Work Mode

On-site

Job Type

Contractual

Job Description

Job Title: Security Remediation QA Analyst

Experience:

Employment Type:


About the Role:


Application Security Engineers, Developers, and DevOps teams


security validation, OWASP Top 10 testing, and ensuring secure releases


Key Responsibilities

  • Analyze security vulnerability reports from

    SAST, DAST, and penetration testing tools

  • Design

    end-to-end test plans and test cases

    to verify security remediations
  • Perform

    functional, regression, and security testing

    after fixes are implemented
  • Validate remediated code across:

-Classic ASP, ASP.NET (C#), Perl, Java

-JavaScript, React, HTML

  • Verify fixes for

    OWASP Top 10 vulnerabilities

    , including:

-SQL Injection

-Cross-Site Scripting (XSS)

-Cross-Site Request Forgery (CSRF)

-Insecure Direct Object References (IDOR)

  • Test refactored SQL queries to ensure

    injection prevention without breaking functionality

  • Validate

    IIS security configurations

    , including:

-Security headers

-HTTPS enforcement

-Disabled insecure modules

  • Re-run

    SAST/DAST scans

    to confirm vulnerability closure
  • Act as the

    final sign-off authority

    for security remediation validation
  • Document test evidence, validation results, accepted risks, and remediation status
  • Coordinate with release teams to ensure smooth deployments across

Dev → QA → Stage → Production


Key Skills & Technologies

  • Strong hands-on experience with

    manual security QA and remediation validation

  • Deep understanding of

    OWASP Top 10 vulnerabilities and mitigation techniques

  • Experience testing applications built using:

-Classic ASP, ASP.NET (C#), Java, Perl

-JavaScript, React

  • Hands-on experience with

    SAST/DAST tools

    such as:

-Fortify

-Veracode

-OWASP ZAP

-Burp Suite

  • Good understanding of

    secure coding practices and SQL validation

  • Working knowledge of

    IIS and application security configurations

  • Experience with

    defect tracking and test management tools

    (JIRA, TestRail, Zephyr – preferred)


Ideal Candidate Profile

  • 5–8 years of experience in

    Security QA, AppSec testing, or remediation validation

  • Strong experience in

    testing and validating security fixes

    , not just finding issues
  • Ability to work closely with

    security, development, and QA teams

  • Excellent attention to detail and ownership mindset
  • Experience in

    audit- or compliance-driven environments

    is a plus
  • Security certifications (preferred):

-CEH, GWAPT, CSSLP, OSCP (optional but advantageous)

Mock Interview

Practice Video Interview with JobPe AI

Start DevOps Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Java Skills

Practice Java coding challenges to boost your skills

Start Practicing Java Now

RecommendedJobs for You