Search by job, company or skills

People Prime Worldwide

Application Security Engineer / DevSecOps Security Engineer

new job description bg glownew job description bg glownew job description bg svg
  • Posted 20 days ago
  • Be among the first 10 applicants
Early Applicant

Job Description

About Company:

Our client is a global technology consulting and digital solutions company that enables enterprises to reimagine business models and accelerate innovation through digital technologies. Powered by more than 84,000 entrepreneurial professionals across more than 30 countries, it caters to over 700 clients with its extensive domain and technology expertise to help drive superior competitive differentiation, customer experiences, and business outcomes.

Job Title: Application Security Engineer / DevSecOps Security Engineer

Location: (PAN India) Bangalore (Global village Tech Park) / Hyderabad (Rai Durg) / Mumbai (Powai / Mahape) / Chennai (DLF IT Park) / Pune (Shivajinagar) / Noida (Candor Techspace, Industrial Area) / Gurgaon (Ambience Island, DLF Phase 3) / Kolkata (Merlin Infinite, Salt Lake Electronics Complex)

Experience: 6 to 8 Years

Employment Type: Contract to Hire

Work Mode: Hybrid

Notice Period: Immediate Joiners Only

Job Description:

Good knowledge on Source code review

Working exp. in Fortify tool

Exp. in CICD tool, preferably in Azure dev-ops, Gitlab and Jenkins

Exp. in Fortify tool installation and configuration

JD is below

Expert in Static Application Security ScanAnalysis source code review SAST Software Composition Analysis SCA Dynamic Application Security ScanAnalysis DAST

Good knowledge of Application Threat Modeling

Implemented DevSecOps Secure CICD integration

Experience of building Security Gates threshold levels for build passfail

Troubleshooting and Configuration of DevSecOps pipeline

Demonstrated experience leading Security Design Reviews andor Architecture Risk Analysis

Expertise in OWASP Good knowledge of NIST SANS PCI ISO 27001

Proficient with manual and automated scanner approaches

Sound Knowledge of DevOps environment

Preparing security advisories and defining the severity levels for the vulnerabilities

Expert in code review false positive analysis

Preparing monthly security reports for the management

Expert in Scanning validation and reporting of vulnerabilities on daily and monthly basis

Technologies Tools

Security Tools Fortify Fortify AWB Fortify SSC Checkmarx Open-Source Tools Visual Studio Eclipse Azure DevOps Jenkins etc

Experienced good knowledge of Devop Tools technologies like Jenkins Ansible Chef Docker GitHubKubernetesRedHatOpen Shift Containers Bug tracking tools ticketing system etc

More Info

Job Type:
Industry:
Employment Type:

Job ID: 143154619