Search by job, company or skills

Cyber Security Consultant

  • Posted 2 days ago
  • Be among the first 10 applicants

Job Description

Job Description:

  • We are seeking a mid level engineer to identify manage and remediate application vulnerabilities throughout the software development lifecycle
  • This role plays a key part in maintaining our security posture across web mobile and cloud based applications
  • Ideal candidates will have deep technical curiosity and practical experience with vulnerability scanning security assessments prioritization and coordination of remediation efforts

Key Responsibilities:

  • Responsibilities
  • Execute and support application vulnerability assessments SAST DAST SCA and manual code review ensuring findings are accurate actionable and relevant to application risk
  • Validate scanner results perform false positive analysis and track findings through remediation including retesting to confirm effective fixes
  • Manage multiple application security initiatives concurrently while meeting strict timelines in a fast paced environment
  • Prioritize vulnerabilities based on business impact exploitability exposure and likelihood using industry best practices e
  • g
  • CVSS scoring
  • Develop and maintain dashboards and reports tracking vulnerability metrics such as severity distribution remediation SLAs and mean time to remediation MTTR
  • Support the integration of security scanning and vulnerability workflows into CI CD pipelines leveraging existing tooling and automation
  • Facilitate remediation planning by providing actionable recommendations and coordinating root cause analysis
  • Support threat modeling and application risk assessments with a focus on discovering insecure design patterns
  • Participate in high severity or zero day vulnerability response activities including impact analysis and coordinated remediation efforts as needed
  • Provide input into policies and standards related to application and cloud security controls

Technical Requirements:

  • Bachelor s degree in information technology Cybersecurity Computer Science or related discipline or equivalent professional experience
  • 5 7 years of relevant experience in application security and or vulnerability management
  • Solid understanding of common vulnerability classes e
  • g
  • OWASP Top 10 and secure architecture principles
  • Proficiency in using Burp Suite for manual security testing of web applications and APIs including validation of automated findings and identification of complex authentication authorization and business logic vulnerabilities
  • Hands on experience with tools such as Burp Suite Fortify Checkmarx SonarQube Black Duck Tenable and common network discovery tools e
  • g
  • Nmap
  • Familiarity with NIST MITRE ATT CK and CIS benchmarks
  • Programming scripting proficiency in languages such as Python Java
  • NET or similar
  • Excellent documentation communication and stakeholder engagement skills

Additional Responsibilities:

  • Professional certifications e
  • g
  • Security SSCP GWAPT or pursuing CISSP OSCP
  • Experience using the ServiceNow platform for vulnerability or incident tracking
  • Proficiency in Azure cloud and Azure DevOps environments
  • Experience using Power BI or similar tools to visualize vulnerability metrics and remediation trends for technical and non technical stakeholders

Preferred Skills:

Technology->Application Security->Application Security - ALL,Technology->Mobile Testing->Mobile Security Testing->Burp Suite,Technology->Security Testing->SAST,Technology->Application Security->Vulnerability Management,Technology->Application Security->Application Risk Profiling, Threat Modeling

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 153368009

Similar Jobs

Bengaluru, India

Skills:

.NETDASTJavaPower BiFortifyNmapAzure CloudBurp SuiteSonarqubePythonAzure DevOpsCVSS scoringSCASASTmanual code reviewBlack DuckTenableCheckmarx

Bengaluru, India

Skills:

.NETJavaPower BiFortifyNmapBurp SuiteSonarqubeAzurePythonAzure DevOpsTenableBlack DuckCheckmarx

Bengaluru, India

Skills:

JavaIamLdapAccess governanceBeanShellSailPoint IIQ

Bengaluru, India

Skills:

FirewallsSecurity GroupsMicrosoft AzureSplunkautomationlog collection and storage toolsDevOps practicesautomation of software testingsecurity frameworksSOC 2key managementscripting toolingElastic Stack

Beware of Scammers

We don’t charge money for job offers