

Search by job, company or skills

Location - Bangalore(Murgeshpalya)
Notice Period - 0 to 15 days(max)
Key Responsibilities:
Process Responsibility:
• Deploy companys SDL (Secure Development Lifecycle) Prepare and present FCSR for
.Net based application.
• Create/Maintain central repository of security artefacts, create and own security plan updates.
• Act as an expert facilitator on practices such as secure design, threat modelling, and
vulnerability management
• Act as a point of contact for cybersecurity issues for application.
• Support product owners and CS Architect in specifying security requirements and bring knowledge of relevant CS standards and regulations.
• Support product teams with security best practices for design, automation, and tool selection.
• Support site, team, and offer cybersecurity certifications.
• Engage with network of experts inside and outside incubator for technical review and risk management.
Technical Responsibility:
• Familiarity with application Architecture to support plugging gaps on security design issues.
• Support implementation of security features, fixes as prescribed by CS Architect.
• Identify and communicate cybersecurity risks via periodic risk assessments, threat modelling and vulnerability management.
• Evaluate threats and vulnerabilities in application – Estimating severity, proposing possible solutions/fixes.
• Support teams with prioritizing code scan findings (SAST) fixes based on risk factors.
• Support teams with third party library scans (BDBA) to triage, updates and migrations.
• Analysis of V&V, pen test reports for vulnerabilities pertaining to application.
Pl share your updated resume to [Confidential Information]
Overview
Acesoft Labs Pvt Ltd is an ISO 9001 BVQI certified, fast paced, fast growing IT consulting and Recruitment Company managed by a team of dedicated and talented professionals with global IT experience. We cater to specific assignments and provide the finest talent to meet the customer’s requirement. Our talent acquisition team has proven experience in providing the best talent for middle to senior level management.
We are your partner in Enabling Enterprise Excellence.
We make the DIFFERENCE
We are committed to and passionate about our clients.
We start with a comprehensive understanding of each of our clients. This means comprehending the DNA of the organization –the culture, organizational values, business model and strategic goals of the business verticals and the enterprise as a whole.
Acesoft Labs is driven by strong commitment and value system:
People Driven - We care about people we work with as we believe People come first.
Intense - We are passionate and committed about everything we do.
Innovative - We give 'out-of-the-box' solutions.
Ethical - We display integrity, honesty, and respect for other people and take responsibility for our actions from the core of our value system.
Job ID: 104851965
Skills:
Identity And Access Management, VBCS, Pl-sql, Sailpoint, API authentication mechanisms, Oracle Cloud IaaS, Saviynt, SIEM solution, cloud security posture management, Data Safe, Oracle IDCS, Single Sign-On, Key Vaults, Oracle Identity Domains, Cloud Guard, IAM tools, OCI logs, SFTP security
Skills:
DAST, Java, Power Bi, Fortify, Nmap, Azure Cloud, Burp Suite, Vulnerability Scanning, Sonarqube, Python, Azure DevOps, CIS benchmarks, SCA, Security Assessments, SAST, Black Duck, Tenable, nist, Manual code review, Checkmarx
Skills:
Data Security, cloud security, Gap Analysis, Dlp, Soc, DevSecOps, IT General Controls, Iam, Grc, IT Risk Assessments, SOAR, AI LLM, framework and compliance assessments, IT Internal Audits, Ot Security, cybersecurity policies, Generative AI tools, Google SecOps, control mapping, IT Application controls testing
Skills:
Cism, Ccsp, ISO IEC 27001, Security Assessments, cybersecurity frameworks, OT Security ISA 62443, Cissp, Cisa, network security infrastructure assessment, CRISC, network architecture design review, cyber risk assessments
Skills:
Penetration Testing, Ips, Switches, Networks, Application Security Testing, Vulnerability Assessment, Secure Code Review, Ids, Firewall, Routers, Configuration reviews of infrastructure and network assets, Cloud Security Testing, Red Team engagements, Infrastructure Penetration Testing, Code Security Review