Get alerts for new jobs matching your selected skills, preferred locations, and experience range. Manage Job Alerts
3.0 - 6.0 years
5 - 15 Lacs
Navi Mumbai
Work from Office
1. Experience in the following process areas: Secure SDLC Methodologies for Waterfall/ Agile software development (Mandatory) Should be well-versed with Security best practices like OWASP and NIST guidelines (Mandatory) Ability to perform security review of microservices architecture, API Security (Mandatory) Hands on experience on Source Code reviews - SAST solution (Mandatory) Hands on experience on Dynamic Application Security Testing - DAST (Mandatory) Hands on experience in Software Composition Analysis - SCA (Mandatory) Hands on experience in performing Tech Stack Review -(Mandatory) Comfortable working in an environment that practices Agile development, engaging Product Owner and other stakeholders Good knowledge of Cloud platform/VMware Ability to identify vulnerabilities & threat actors in the application cycle and communicate effectively to the stake holders. Threat Modelling PASTA ,STRIDE etc (Good to Have) 2. Possesses ability to quickly understand the technical and functional aspects of the project to be able to communicate effectively with different stakeholders. 3. Excellent written and verbal communication skills in English, high integrity, strong work ethic and ability to empathize with the customer. 4. Ability to work effectively in a fast-paced, project-oriented environment 5. Ability to prioritize and execute tasks 6. Ability to handle sensitive and confidential information Strong analytical and problem-solving skills
Posted 1 day ago
7.0 - 12.0 years
14 - 24 Lacs
Bengaluru
Hybrid
Key Responsibilities Design and implement application security architecture for AWS-hosted services and applications. Ensures secure-by-design initiatives across SDLC, including threat modeling, risk assessments, and architectural reviews. Responsible for the production and review of Architecture Decision Records (ADRs). Collaborates with Define and promote secure coding standards and security-focused CI/CD pipelines. Provide application security guidance for integrated security tools (e.g., MAST, SAST, DAST, SCA, IaC scanning, secret detection) tailored for cloud environments. Develop and provide consultation on security design patterns and reusable reference architectures (platform level) for AWS microservices, APIs, containers, and serverless workloads. Monitor emerging AWS security features and provide recommendations for adoption. Support incident response and forensics related to application-layer attacks. Guide remediation strategies for vulnerabilities and design flaws. Serve as the SME for application security in security governance, audits, and compliance efforts. Provide architectural governance, reviewing projects to ensure alignment to technical strategy, company platform roadmaps, and enterprise standards Drive both high level and detailed design ensuring to partner with others where applicable Find opportunities to embrace innovative technologies, perform rapid POCs to experiment and build rails for the engineering / product teams Coach and mentor engineering colleagues on solution architecture; providing advice, mentorship and assistance as required Actively participate in team and enterprise-wide architecture and engineering discussions Introduce enterprise architectural paradigms and solutions into the portfolio Communicate to senior leaders regarding strategy direction and changes to ensure alignment with security best practices. software engineers, DevOps, various security teams and cloud architects Qualifications 7+ years in application security, software engineering, or security architecture roles. 3+ years of hands-on experience with AWS services, like IAM, KMS, CloudTrail, VPCs, CodePipeline, Terraform, etc. Deep understanding of AWS: Compute, Storage, Networking, Data, and Security. Deep understanding of secure development lifecycle (SSDLC) and cloud-native application patterns (e.g., microservices, containers, CI/CD). Experience implementing security controls in CI/CD pipelines using Jenkins, GitHub, GitHub Actions, etc. Expertise in at least one or more programming languages (e.g., Python, Java, Go, Node.js). Familiarity with OWASP Top 10, SANS CWE Top 25, and threat modeling methodologies (e.g., STRIDE). Proven ability to communicate risk to technical and executive stakeholders. At least one security related certification like: GDSA, GCAD, GWAT, GWEB, GPEN, GCPN GXPN, Others. Any of the following certifications are a plus, SABSA, TOGAF, AWS Certified Solutions Architect.
Posted 1 week ago
7.0 - 12.0 years
12 - 22 Lacs
Bengaluru
Hybrid
Responsibilities: Design and implement secure architecture on Google Cloud Platforms (GCP) using IAM, SDLC, CI/CD pipelines with Python or Java.
Posted 1 week ago
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.