Jobs
Interviews

119 Security Tools Jobs - Page 5

Setup a job Alert
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

2.0 - 6.0 years

0 Lacs

pune, maharashtra

On-site

As an IT Hardware & Networking Engineer in the Pharmaceutical industry with a minimum of 3 years of experience, your primary responsibility will be setting up and maintaining networks within the organization and with external partners. Your role will involve providing support to users, staff members, clients, and suppliers, requiring strong troubleshooting skills and collaboration with team members to resolve issues effectively. Your key responsibilities will include configuring and installing various network devices and services such as routers, switches, firewalls, load balancers, VPN, and QoS. You will be tasked with performing network maintenance, system upgrades, monitoring performance, ensuring system availability, and reliability. Capacity planning, trending, and monitoring system resource utilization will also fall under your purview. In addition to these technical responsibilities, you will provide Level-2/3 support and troubleshooting to address network issues promptly. Working within established configuration and change management policies will be essential to ensure the success of changes made to the network infrastructure. Collaborating with the security team to select and implement security tools, policies, and procedures will be crucial to maintaining a secure network environment. Furthermore, you will be expected to liaise with vendors and other IT personnel for problem resolution, demonstrating effective communication and teamwork skills. This position is full-time, requiring a commitment to day shifts in Jejuri, Maharashtra. Relocation to Pune, Maharashtra, is mandatory for this role. The ideal candidate for this position should hold a Bachelor's degree, with preferred expertise in computer hardware networking and software. A minimum of 2 years of relevant experience is required to excel in this role. Paid time off and other benefits will be provided as per company policies.,

Posted 2 months ago

Apply

3.0 - 10.0 years

0 Lacs

chennai, tamil nadu

On-site

As a candidate for this position, you should hold a Bachelors degree in Computer Science, Information Technology, Cybersecurity, or a related field, with a preference for a Masters degree. Your role will involve leading and mentoring the SOC team to promote a culture of continuous improvement and collaboration. Overseeing the day-to-day operations of the SOC is crucial, ensuring efficient incident detection, response, and recovery processes. Collaboration with IT and business units is essential to integrate cybersecurity measures into existing and new technology deployments. Your responsibilities will also include managing cybersecurity projects, selecting and implementing cutting-edge security tools and technologies. Regular security assessments, penetration testing, and proactive threat hunting are key tasks to identify and mitigate potential security vulnerabilities. Relevant cybersecurity certifications such as CISSP, CISM, CEH, or GIAC are desired, along with at least 10 years of experience in cybersecurity, including a minimum of 3 years in a leadership role within an SOC environment. In-depth knowledge and experience with cybersecurity regulations and standards are expected. Proficiency in managing and configuring security technologies such as SIEM, firewall, IDS/IPS, EDR, and vulnerability management tools is required. You should have a demonstrated ability to lead and develop high-performing teams. Additional responsibilities include preparing lab/demo environments, conducting research and development on security tools and best practices, and being flexible to work in US Shift. Excellent problem-solving, communication, and presentation skills are necessary for this role.,

Posted 2 months ago

Apply

5.0 - 9.0 years

0 Lacs

karnataka

On-site

Position Overview: We are seeking an experienced Security Compliance Engineer Key Responsibilities: PCI DSS Compliance: Ensure that all aspects of our API services meet PCI DSS requirements. Conduct regular assessments, gap analysis, and provide remediation strategies. Security Controls Implementation: Design, implement, and manage security controls across the API development lifecycle to protect sensitive data and ensure compliance with industry standards. Risk Management: Identify potential security risks within the API services and infrastructure. Develop and implement risk mitigation strategies. Secure Code Review: Collaborate with development teams to perform secure code reviews, ensuring that APIs follow secure coding practices and comply with PCI DSS. Vulnerability Management: Conduct regular vulnerability scans, penetration testing, and security assessments on the API services. Work with development teams to remediate identified vulnerabilities. Incident Response: Develop and maintain incident response plans for security breaches related to API services. Lead incident investigations and ensure proper documentation and reporting. Audit Preparation: Prepare and maintain documentation for PCI DSS audits and other security compliance audits. Work with auditors to demonstrate compliance and address any findings. Training and Awareness: Provide training and guidance to development and operations teams on security best practices and compliance requirements. Foster a culture of security within the organization. Collaboration: Work closely with cross-functional teams, including DevOps, IT, and legal, to ensure that security and compliance are integrated into all aspects of the software development lifecycle. Required Qualifications: Education: Bachelors degree in Computer Science, Information Security, or a related field. Relevant certifications (e.g., CISSP, CISA, CISM, PCI QSA) are highly desirable. Experience: 5+ years of experience in security engineering or security compliance roles. Proven experience with PCI DSS compliance and audit processes. Strong understanding of API security best practices, secure coding, and encryption techniques. Technical Skills: Hands-on experience with security tools such as vulnerability scanners, penetration testing tools, and SIEM systems. Proficiency in security standards and frameworks, including PCI DSS, ISO 27001, NIST, and GDPR. Familiarity with cloud security, particularly in AWS environments, and securing cloud-native applications. Soft Skills: Strong problem-solving skills and the ability to work under pressure. Excellent communication skills, with the ability to explain complex security concepts to non-technical stakeholders. A proactive mindset with a focus on continuous improvement and staying up-to-date with the latest security trends and technologies. Preferred Qualifications: Experience with DevSecOps practices and integrating security into CI/CD pipelines. Knowledge of data privacy regulations and their implications on API services. Experience working in a fast-paced, agile development environment.,

Posted 2 months ago

Apply

0.0 - 4.0 years

0 Lacs

noida, uttar pradesh

On-site

As a professional services firm affiliated with KPMG International Limited, KPMG in India has been a prominent presence since its establishment in August 1993. Leveraging the extensive global network of firms, our professionals possess in-depth knowledge of local laws, regulations, markets, and competition dynamics. With offices spanning across major cities in India including Ahmedabad, Bengaluru, Chandigarh, Chennai, Gurugram, Hyderabad, Jaipur, Kochi, Kolkata, Mumbai, Noida, Pune, Vadodara, and Vijayawada, we are dedicated to offering a wide range of services to both national and international clients in various sectors. At KPMG in India, we are committed to delivering rapid, performance-based, industry-focused, and technology-enabled services. Our approach is rooted in a deep understanding of global and local industries, coupled with extensive experience in navigating the complex Indian business environment. We strive to ensure that our clients benefit from our shared knowledge and expertise, enabling them to thrive in a constantly evolving marketplace. As an equal opportunity employer, we value diversity and inclusion in our workforce. We believe in providing a supportive and inclusive work environment where all individuals are respected, valued, and given equal opportunities to grow and contribute to our collective success. Should you choose to be a part of KPMG in India, you will join a dynamic team of professionals who are passionate about delivering high-quality services and making a positive impact in the business landscape. Together, we aim to drive innovation, foster collaboration, and achieve excellence in everything we do.,

Posted 2 months ago

Apply

1.0 - 3.0 years

13 - 23 Lacs

Gurugram

Hybrid

Note: This role requires hands-on experience in DSA coding in any of the programming languages (.Net, C# or Java). If you have relevant experience, then only apply. Responsibilities You will be working across functional (development/testing, deployment, systems/infrastructure, cloud) and project teams to ensure continuous operation of build and test systems. You will be driving and perfecting our vision of Continuous Delivery and making the release experience easy and enjoyable. You will be building high quality tools and automation for internal use to support continuous delivery and increasing the velocity and productivity of engineering teams. You will develop and maintain tools and scripts to build, deploy, test, automate and streamline product delivery from engineers to customers. You will design and implement tools and scripts to allow automated configuration management. Qualifications You have an experience of 1 to 3 years with a minimum of 1 years of software development experience using .NET, C# or Java based technologies. Expert knowledge of at least one of the following programming languages: C#, Java Solid understanding and experience of integrating security tools and practices within the DevOps process. Expert knowledge of PowerShell, Groovy and other scripting languages Solid knowledge of continuous integration and continuous delivery practices and tools such as Jenkins. Good working knowledge of Source Code repository systems (Git, TFS) Good knowledge of cloud infrastructure such as AWS, Azure, GCP Experience of working with Windows, Linux, Unix, iOS and Android operating systems Demonstrated ability to learn and acquire new technologies in the areas of DevOps. Experience of working with Packer, Kitchen, Chef, Ansible, Artifactory, SonarQube, Docker containers, Kubernetes, and other tools used for orchestration.

Posted 2 months ago

Apply

4.0 - 8.0 years

13 - 23 Lacs

Noida, Ahmedabad

Work from Office

Join Us in Transforming Cybersecurity At ThreatModeler , we are on a mission to revolutionize the way organizations approach cybersecurity empowering teams to shift left and proactively design secure systems from the start. It's not just about what we buildit's about how we work and grow together. When you join ThreatModeler, you become part of a team that values curiosity, creativity, and collaboration. Here, you'll have the chance to tackle exciting challenges, learn cutting-edge technologies, and grow alongside industry experts who are passionate about making a difference. As the worlds leading threat modeling platform, we secured $60 million in institutional financing from Invictus Growth Partners. This investment will be used to expand ThreatModelers product offerings and enhance sales and marketing efforts. Come join us and together, well shape the future of cybersecurity! Responsibilities and qualifications (Google Cloud Platform) Security Research Stay updated on the latest security threats, vulnerabilities, and best practices in cloud computing and GCP services. Conduct research on emerging security technologies and trends. Security Architecture Assist in the design and implementation of secure GCP architectures. Review and provide recommendations for security controls in GCP infrastructure. Documentation Create and maintain security documentation, including policies, procedures, and guidelines for GCP security. Ensure that documentation is up-to-date and accessible to relevant stakeholders. Collaboration Collaborate with cross-functional teams, including developers, system administrators, and network engineers, to enhance overall security posture or build the features in security products Continuous Improvement: Continuously assess and improve security processes and controls based on evolving threats and industry best practices. Requirements Bachelor's degree in Computer Science, Information Security, or a related field. GCP Certified Security Engineer or Solutions Architect certification is highly desirable. Proven experience in GCP security, including designing and implementing secure architectures. Strong understanding of cloud computing concepts and principles. Excellent knowledge of security best practices and industry standards. Experience with security tools and technologies for monitoring and incident response. Effective communication and collaboration skills.

Posted 2 months ago

Apply

8.0 - 13.0 years

7 - 17 Lacs

Bengaluru

Remote

Job Overview We are seeking a skilled and dynamic Security & Privacy Architect and SDL Coach to join our team and help strengthen the security posture of our software development lifecycle. This role combines a strong foundation in code analysis, security architecture, and coaching teams on security best practices. The ideal candidate will work closely with development teams, conducting security assessments, guiding secure coding practices, and ensuring compliance with industry standards. As a Security & Privacy Architect , you will be responsible for identifying vulnerabilities and providing actionable recommendations to reduce security risks. As an SDL Coach , you will help application teams adopt security-focused practices into their software development lifecycle (SDLC) while ensuring compliance with regulatory standards like PCI-DSS. Key Responsibilities Code Analysis, Scanning, and Remediation Security Tool Configuration : Configure and operate security scanning tools (e.g., Snyk, Grit, Checkmarx, Coverity, Mend etc.) to scan applications and interpret results to identify potential security flaws. Static and Dynamic Code Analysis : Perform static and dynamic code analysis to identify vulnerabilities in the source code. Help App teams in adopting best practices. Vulnerability Remediation : Work directly with development teams to guide them in resolving identified vulnerabilities and promote secure coding practices. Issue Prioritization : Prioritize critical security issues and escalate them for immediate remediation when necessary. Security & Privacy Architecture Security Assessments : Conduct in-depth security assessments to identify potential attack vectors, vulnerabilities, and risks in the application architecture and source code. Recommendations : Provide actionable recommendations to development and architecture teams to address security gaps and ensure compliance with security standards. Security Design : Assist in the design of secure application architectures that meet both business and security requirements. SDL Coaching and Best Practices SDL Awareness : Conduct Security Development Lifecycle (SDL) Coaching and Assessments with development teams to raise awareness of security practices and ensure they align with best security practices. Security Best Practices Adoption : Guide teams in adopting and integrating Security practices into their SDLC, focusing on secure coding, testing, and deployment. Coaching & Mentoring : Provide ongoing coaching and mentoring to developers to help them understand the importance of security throughout the development process. Compliance Lead (CGA, PCI, CPP) Regulatory Compliance : Participate in security risk assessments and ensure that applications comply with relevant industry standards and regulations (e.g., PCI-DSS, CGA, CPP). Audit Preparation : Assist application teams with preparation for security audits, providing guidance before and after audits to address any issues. Documentation : Ensure that all security compliance requirements are well documented and tracked. Research and Continuous Improvement Threat Intelligence : Stay updated on the latest security threats, vulnerabilities, and emerging trends in application security to proactively mitigate risks. Tool & Framework Evaluation : Evaluate new security tools, frameworks, and technologies that can improve the effectiveness of security code scanning and remediation. Conduct comparative analysis and provide recommendations. Process Improvement : Continually assess and improve security processes within the development lifecycle to enhance overall security posture. Required Qualifications Experience : 8+ years of experience in application security, including hands-on experience with code analysis, security testing, and risk assessments. Technical Skills : Strong understanding of secure software development practices. Familiarity with security tools such as Snyk, Grit, Checkmarx, Mend and other static/dynamic code analysis tools. Knowledge of security vulnerabilities (e.g., OWASP Top 10, CVEs) and remediation techniques. Experience with common security frameworks and methodologies (e.g., OWASP, NIST, CIS, PCI-DSS). Proficient in at least one programming/scripting language (e.g., Python, Java, C#, JavaScript). Compliance Knowledge : In-depth understanding of industry compliance standards such as PCI-DSS, CGA, and CPP. Communication Skills : Excellent written and verbal communication skills with the ability to interact with technical and non-technical teams alike. Preferred Qualifications Certifications : CISSP, CISM, CISA, or equivalent security certification is highly preferred. Experience with Cloud Security : Knowledge of security best practices in cloud environments (AWS, Azure, GCP). Experience with DevSecOps : Experience with integrating security practices into DevOps pipelines and workflows.

Posted 2 months ago

Apply

10.0 - 20.0 years

20 - 35 Lacs

Mumbai

Work from Office

Role & responsibilities Project Management: Lead and manage multiple projects from inception to completion, ensuring timely delivery, budget adherence, and quality standards. Develop project plans, timelines, and resource allocation strategies. Coordinate with cross-functional teams including marketing, IT, and customer service to ensure seamless project execution. Technical Expertise: Work on .NET or JAVA-based applications, providing technical guidance and support. Implement and manage DevSecOps practices, integrating security into the CI/CD pipeline. Conduct security assessments, vulnerability scanning, and penetration testing. Develop and maintain security policies, procedures, and standards. Application Security: Monitor and respond to security incidents, conducting incident investigations and providing remediation plans. Implement and manage security tools and technologies such as DAST, SAST, and container security. Collaborate with development teams to ensure secure coding practices and perform code reviews.

Posted 2 months ago

Apply

5.0 - 9.0 years

17 - 25 Lacs

Ahmedabad

Work from Office

Responsible for SAP security implementation, role/catalog design, authorization adjustments, and user support. Works on GRC, regression testing, role builds, S/4 HANA maintenance, & security tool configuration under the SAP Security Lead's guidance. Required Candidate profile 5+ years SAP security exp, SAP GRC, NetWeaver, Fiori, S/4 HANA & SoD expertise. Strong communication, process modeling, and global implementation skills. Flexible, detail-oriented, and self-motivated. Perks and benefits 5 Days Working Work with Globally present company.

Posted 2 months ago

Apply

5.0 - 10.0 years

5 - 15 Lacs

Navi Mumbai

Work from Office

Key Skills: Patch Management Back up management Asset management Process documentation skill System Hardening management Security Tools Vulnerability management Job Description: * Work closely with project teams to understand network requirements and objectives, ensuring seamless integration of network infrastructure within the integrated resort. * Provide comprehensive support and administration for the entire project, including network and security devices. * Implement and manage network solutions to support project initiatives, prioritizing scalability, performance, and robust security. * Configure and optimize network devices, including routers and switches. * Implement and maintain Check Point and Palo Alto firewalls, including configuration, monitoring, troubleshooting, and ensuring optimal network security. Perform regular updates, security assessments, and issue resolution. * Advanced networking troubleshooting and knowledge of web connectivity and protocols. * Conduct network and firewall log analysis, troubleshooting network connectivity problems using packet capture technologies. * Conduct thorough network assessments, identifying potential improvements and upgrades to align with project goals. * Collaborate effectively with cross-functional teams to ensure seamless integration of network infrastructure within overall project deliverables. * Maintain adherence to industry best practices, security standards, and compliance requirements throughout the network design and implementation stages. * Continuously monitor network performance, proactively resolving any network-related issues or bottlenecks to minimize project disruptions. * Undertake any other tasks or responsibilities as requested and assigned by the Company

Posted 3 months ago

Apply

5.0 - 10.0 years

7 - 16 Lacs

Bengaluru

Work from Office

Project Role : Security Delivery Lead Project Role Description : Leads the implementation and delivery of Security Services projects, leveraging our global delivery capability (method, tools, training, assets). Must have skills : Security Quality Assurance Good to have skills : NA Minimum 5 year(s) of experience is required Educational Qualification : Bachelors in relevant field Summary: As a Security Delivery Lead, you will lead the implementation and delivery of Security Services projects, leveraging our global delivery capability (method, tools, training, assets). Roles & Responsibilities: - Expected to be an SME - Collaborate and manage the team to perform - Responsible for team decisions - Engage with multiple teams and contribute on key decisions - Provide solutions to problems for their immediate team and across multiple teams - Lead and mentor junior professionals - Ensure project timelines are met - Implement best practices for security quality assurance Professional & Technical Skills: - Must To Have Skills: Proficiency in Security Quality Assurance - Strong understanding of security testing methodologies - Experience with security tools and technologies - Knowledge of security compliance standards - Good To Have Skills: Security certifications - Experience with penetration testing Additional Information: - The candidate should have a minimum of 5 years of experience in Security Quality Assurance - This position is based at our Bengaluru office - A Bachelors in relevant field is required Bachelors in relevant field

Posted 3 months ago

Apply

4.0 - 9.0 years

22 - 30 Lacs

Gurugram, Bengaluru

Work from Office

Job Description:The candidate will have expertise in penetration testing, cloud security, compliance frameworks (HIPAA, PCI DSS), security documentation, and security tools such as Qualys, Burp Suite, and other industry-standard solutions Strong communication skills and the ability to document security processes effectively are essential for this role Key ResponsibilitiesPenetration Testing & Vulnerability ManagementPerform penetration testing on web applications, networks, and cloud environments to identify security vulnerabilities Utilize tools like Burp Suite, Qualys, Nessus, Metasploit, and other scanning tools to detect threats Work with development and operations teams to remediate vulnerabilities and strengthen security posture Cloud SecurityEnsure cloud security best practices for AWS, Azure, and other cloud platforms Implement security controls for cloud-hosted applications and workloads Conduct security assessments and recommend security enhancements Compliance & Regulatory SecurityEnsure compliance with HIPAA, PCI DSS, ISO 27001, NIST, and other security frameworks Conduct audits, risk assessments, and compliance gap analysis Assist in developing policies, procedures, and security documentation to meet regulatory requirements Security Operations & Incident ResponseMonitor security logs and alerts for threat detection and response Work with security teams to investigate and mitigate security incidents Conduct forensic analysis in the event of security breaches Documentation & CommunicationDevelop and maintain security policies, procedures, and technical documentation Create security reports and communicate findings effectively to stakeholders Provide security training and awareness programs for employees

Posted 3 months ago

Apply

0.0 - 1.0 years

1 - 3 Lacs

Mohali

Work from Office

Responsibilities: Monitor and maintain Linux server performance, availability, and health. Manage OS/software installations and updates (CentOS 6/7). Implement security tools and follow change management policies. Provident fund Flexi working

Posted 3 months ago

Apply

10.0 - 15.0 years

20 - 30 Lacs

Gurugram

Work from Office

Strategic Leadership and Vision,Risk Management and Compliance,Technical Security Operations,Vendor Lifecycle Management,Communication and Reporting,Extensive experience in information security and IT risk management.

Posted 3 months ago

Apply

5.0 - 8.0 years

6 - 16 Lacs

Chennai

Hybrid

Job Role: Java Developer Experience: 5+ Years Work Mode: Hybrid Location: Chennai Developer for AdVantage/Social/Reputation/Listings- Java Developer Solid knowledge of API automation and development tools (similar to Postman) MongoDB and SQL knowledge extremely important for this position Understanding of HTML, CSS, Angular, and similar website development experience Prior experience with Social and Advertising APIs and platforms helpful (such as Facebook Business Manager, Google Campaign Manager, SA360, etc.) Server maintenance experience extremely helpful Understanding and experience with security tools such as SonarQube Basic knowledge and experience with AI tools such as Meta Lllama, Chat GPT, etc. Fluent in Java Development Solid knowledge of API automation and development tools (similar to Postman) MongoDB and SQL knowledge

Posted 3 months ago

Apply

5.0 - 7.0 years

5 - 10 Lacs

Hyderabad

Work from Office

Working Monday to Friday. We are looking for a skilled Cybersecurity Manager to oversee and enhance the security posture of our Hyderabad office, internal websites, and in-house applications across iOS, Android, and desktop platforms. This role will be responsible for managing and implementing robust cybersecurity practices, conducting security assessments, and ensuring the highest level of data protection for our digital assets. Requirements: Bachelor's Degree preferred. 5+ years of experience in cybersecurity, with a focus on application and infrastructure security. Expertise in mobile and desktop application security, as well as website protection practices. Hands-on experience with security tools for threat detection, vulnerability management, and incident response. Excellent problem-solving skills and the ability to work in high-pressure environments. Good knowledge of Network Engineer Experience with firewalls, VPN technologies, monitoring systems, and Wi-Fi. QoS experience. AWS Certified Advanced Networking certification a plus, but not required. Experience with dynamic routing protocols such as BGP and best practices for availability and performance. AWS experience in setting up VPC, Transit Gateways, etc. Experience with Networks Firewalls. Cisco Certification (CCNA or CCNP) a plus, but not required. Understanding of VoIP support systems on a network Scripting, such as PHP a strong asset. Limited travel may be required, including internationally. Ability to provide support during off-hours and during incident situations

Posted 3 months ago

Apply

7 - 12 years

15 - 30 Lacs

Gurugram

Work from Office

Role & responsibilities What youll be working on • Designing, implementing, and maintaining security solutions for our organization's infrastructure, cloud, and systems environments to protect our information assets • Developing a DevSecOps pipeline that ensures that the applications and systems built by our organization are secure and defect free. Conducting regular vulnerability assessments and risk analyses to identify potential threats, and recommending remediation actions to enhance our security posture Collaborating with cross-functional teams to ensure the secure development and deployment of applications, systems, and networks • Developing and implementing security policies, procedures, and guidelines to maintain compliance with industry standards and regulations Providing technical guidance and support to stakeholders on security-related matters, such as secure development practices, security technologies, and architectural design principles Staying current with the latest security trends, threats, and technologies, using this knowledge to continuously improve our security posture Conducting security awareness training for employees to foster a culture of security within the organization Preferred candidate profile • A Bachelor's degree in Computer Science, Information Security, or a related field, with a minimum of 5 years of experience in IT security, focusing on infrastructure, cloud, and systems security • Solid understanding of information security principles and best practices • Experience with application security (OWASP, SANS) and secure development practices. • Familiarity with various security technologies and tools, including firewalls, SIEM, and vulnerability scanners • Experience with specific cloud platforms (e.g., AWS, Azure, GCP) is highly desirable • CISSP, CCSP, or other relevant certifications are a plus • Experience in a highly regulated industry, such as finance or healthcare, and knowledge of relevant laws and regulations (e.g., GDPR, HIPAA) are advantageous Interested candidate can share their updated resume at surinder.kaur@mounttalent.com

Posted 4 months ago

Apply

4 - 8 years

7 - 11 Lacs

Navi Mumbai, Chennai

Work from Office

Conduct vulnerability assessments using industry-leading tools (e.g., Nessus, Tenable, Qualys). Develop and maintain vulnerability management processes, Analyze assessment results to identify and prioritize risks. Perform penetration testing.

Posted 4 months ago

Apply

3.0 - 6.0 years

7 - 11 Lacs

bengaluru

Work from Office

We are seeking a skilled and motivated Cyber Security Engineer to lead efforts in securing our Software as a Medical Device (SaaMD) offerings. This pivotal role ensures global compliance and best-in-class security practices throughout the software development lifecycle, anchored in standards like ISO/IEC 27001, ISO/IEC 27002, and ISO 13485. Key Responsibilities : Security Control Implementation : - Design, implement, and monitor robust security controls across the SaaMD SDLC. - Align with ISO/IEC 27001, 27002, and ISO 13485 frameworks. - Guide secure coding, DevSecOps practices, and vulnerability management. - Apply a risk-based approach to identify and mitigate threats proactively. Compliance & Audit Readiness : - Support internal and external audits with detailed documentation. - Collaborate with Quality & Regulatory teams for ISO 13485 compliance. - Maintain audit-ready procedures and manage change documentation. Threat Modeling & Penetration Testing : - Develop threat models using tools like LucidChart. - Conduct pen-testing via BurpSuite, nmap, Wireshark, and Deptrack. - Run static and dynamic code analysis for vulnerability detection. Vulnerability Management : - Assess vulnerabilities using Grype, Dockle, Trivy, and Deptrack. - Partner with development teams for triage and resolution. - Drive remediation workflows and monitor KPIs. Reporting & Stakeholder Communication : - Produce detailed security assessments with actionable steps. - Deliver periodic updates on security posture to leadership. - Translate complex risks into business-friendly language. Security Awareness & Training : - Build training modules to cultivate a security-first mindset. - Advocate for secure engineering culture across teams. Qualifications : Required : - Bachelors in Computer Science, Information Security, or relevant experience. - 3+ years in cybersecurity engineering, ideally in healthcare or medical devices. - Proven knowledge of ISO/IEC 27001, 27002 & ISO 13485. - Hands-on expertise with LucidChart, BurpSuite, nmap, Wireshark, Deptrack. - Experience with Grype, Dockle, Trivy; DevSecOps & secure coding practices. - Track record in audit support and regulatory compliance. Preferred : - Certifications like CISSP, CEH, OSCP, CISM, or ISO/IEC 27001 Lead Implementer. - Background in SaaMD or regulated industries (healthcare/pharma). - Familiarity with frameworks like NIST, HITRUST, and CI/CD workflows. Skills & Traits : - Strong analytical, communication, and problem-solving skills. - Detail-oriented with a proactive risk management approach. - Team collaborator able to influence across engineering and compliance functions.

Posted Date not available

Apply
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies