
Search by job, company or skills

About Company:
Our client is a global technology consulting and digital solutions company that enables enterprises to reimagine business models and accelerate innovation through digital technologies. Powered by more than 84,000 entrepreneurial professionals across more than 30 countries, it caters to over 700 clients with its extensive domain and technology expertise to help drive superior competitive differentiation, customer experiences, and business outcomes.
Job Title: Application Security Engineer / DevSecOps Security Engineer
Location: (PAN India) Bangalore (Global village Tech Park) / Hyderabad (Rai Durg) / Mumbai (Powai / Mahape) / Chennai (DLF IT Park) / Pune (Shivajinagar) / Noida (Candor Techspace, Industrial Area) / Gurgaon (Ambience Island, DLF Phase 3) / Kolkata (Merlin Infinite, Salt Lake Electronics Complex)
Experience: 6 to 8 Years
Employment Type: Contract to Hire
Work Mode: Hybrid
Notice Period: Immediate Joiners Only
Job Description:
Good knowledge on Source code review
Working exp. in Fortify tool
Exp. in CICD tool, preferably in Azure dev-ops, Gitlab and Jenkins
Exp. in Fortify tool installation and configuration
JD is below
Expert in Static Application Security ScanAnalysis source code review SAST Software Composition Analysis SCA Dynamic Application Security ScanAnalysis DAST
Good knowledge of Application Threat Modeling
Implemented DevSecOps Secure CICD integration
Experience of building Security Gates threshold levels for build passfail
Troubleshooting and Configuration of DevSecOps pipeline
Demonstrated experience leading Security Design Reviews andor Architecture Risk Analysis
Expertise in OWASP Good knowledge of NIST SANS PCI ISO 27001
Proficient with manual and automated scanner approaches
Sound Knowledge of DevOps environment
Preparing security advisories and defining the severity levels for the vulnerabilities
Expert in code review false positive analysis
Preparing monthly security reports for the management
Expert in Scanning validation and reporting of vulnerabilities on daily and monthly basis
Technologies Tools
Security Tools Fortify Fortify AWB Fortify SSC Checkmarx Open-Source Tools Visual Studio Eclipse Azure DevOps Jenkins etc
Experienced good knowledge of Devop Tools technologies like Jenkins Ansible Chef Docker GitHubKubernetesRedHatOpen Shift Containers Bug tracking tools ticketing system etc
Job ID: 143154619