Posted:8 hours ago| Platform:
On-site
Full Time
PwC India is inviting applications for Secure Code Reviewer/Specialist to join in Kolkata Responsibilities: Review application source code based on the industry standard security frameworks and organization's internal security policy. Running the source code scan and analyzing the results derived from the SAST platform. Coordinate with application development teams to ensure identified gaps are fixed in proper time. Work with the application development team to eliminate false positives, to clarify compensating security controls. Closely work with issue management team to ensure proper remediation plans are in places with well documented records. Collaborate with senior developers and architects to ensure security best practices and secured design patterns are followed. Work closely with other team members, including project leads, regional leads and territory security leadership team. Provide regular updates on progress and issues to project managers and stakeholders Skill sets Strong knowledge of secure coding practices and common security vulnerabilities (e.g., OWASP Top 10). Strong knowledge of Industry standard SAST tools (e.g. Veracode, Fortify on Demand). Strong knowledge of Industry standard SCA tools (e.g. Blackduck). Strong knowledge in manual and tool-based code review process, focusing on OWASP methodology. Strong Knowledge of security vulnerability identification and remediation methodologies. Familiarity with industry standard security frameworks and policies. Strong knowledge of DevSecOps practices and integration of security within C Show more Show less
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
3.75 - 5.5 Lacs P.A.
15.0 - 20.0 Lacs P.A.
5.0 - 7.315 Lacs P.A.
4.0 - 8.0 Lacs P.A.
4.0 - 8.0 Lacs P.A.
4.0 - 6.0 Lacs P.A.
Salary: Not disclosed
Experience: Not specified
Salary: Not disclosed
Experience: Not specified
Salary: Not disclosed
Salary: Not disclosed