T&T | Cyber - ES | Sr Analyst | Pen Test

3 - 8 years

11 - 13 Lacs

Posted:9 hours ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

:

Security Architecture Review & Threat Modeling:

  • Conduct

    security architecture reviews

    for applications, cloud environments, and IT systems to identify risks.
  • Perform

    threat modeling (e.g., STRIDE, PASTA, MITRE ATT&CK, DREAD)

    to assess potential attack vectors and weaknesses.
  • Analyze

    authentication, encryption, and access control mechanisms

    within application and system architectures.
  • Review security controls against industry standards and organizational policies (e.g.,

    NIST, ISO 27001, OWASP, CIS Controls, TISAX

    ).
  • Provide

    secure design recommendations

    to mitigate identified risks.

Application & Cloud Security Assessment:

  • Assess

    web, mobile, and cloud-based applications

    for security risks and misconfigurations.
  • Evaluate

    API security, microservices architectures, and containerized environments

    for vulnerabilities.
  • Validate implementation of

    IAM, Zero Trust, network segmentation, and encryption standards

    .

Security Risk & Compliance Evaluation:

  • Identify

    security gaps in applications and infrastructure

    and recommend compensating controls.
  • Ensure compliance with

    GDPR, SOC 2, PCI-DSS, ISO 27001, TISAX, and other relevant security frameworks

    .

Collaboration & Reporting:

  • Create

    comprehensive reports

    detailing identified

    risks, mitigation strategies

    ,

    cloud specific controls

    ,

    data flow diagram, trust zones

    , and

    improvement recommendations.

  • Collaborate with stakeholders to develop and refine the

    enterprise security architecture and threat modeling strategies.

Qualifications & Experience:

  • Bachelor s or Master s degree

    in Cybersecurity, Computer Science, Information Technology, or a related field.
  • 3+ years

    of experience in security architecture review, threat modeling, and risk assessment.
  • Strong expertise in

    threat modeling frameworks

    such as

    STRIDE, PASTA, MITRE ATT&CK, OWASP ASVS

    .
  • Knowledge of

    cloud security (AWS, Azure, GCP), API security, and microservices architecture

    .
  • Familiarity with

    IAM, Zero Trust, MFA, RBAC, PAM, and network security principles

    .
  • Experience in

    secure SDLC, DevSecOps, and security assessment

    .
  • Hands-on experience with

    security assessment tools

    (e.g., Microsoft Threat modeling, Microsoft Visio).
  • Understanding of

    penetration testing methodologies, security misconfigurations, and application security risks

    .

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now

RecommendedJobs for You

noida, hyderabad, pune, gurugram, chennai, bengaluru, delhi / ncr, mumbai (all areas)