Free cookie consent management tool by TermsFeed Application Security Analyst - Vulnerability Management | Antal Tech Jobs
Back to Jobs
1 Day ago

Application Security Analyst - Vulnerability Management

decor
Information Technology
Full-Time
Sampoorna Consultants

Overview

Key Responsibilities

  • Support vulnerability assessments using SAST, DAST, and SCA tools.
  • Collaborate with DevOps, Vulnerability Management teams, IBM and third-party PenTest service providers to ensure security is integrated into CI/CD pipelines.
  • Manage the vulnerability management lifecycle, including triage, tracking, and remediation.
  • Provide remediation guidance and recommendations to developers on vulnerabilities.
  • Maintain and evolve secure SDLC practices and documentation.
  • Deliver security awareness and secure coding training sessions.
  • Demonstrate a willingness to learn, research, and innovate to improve the overall AppSec posture.
  • Administer threat modeling activities.

Technical Skills And Experience Required

  • Experience with the following tools:
  • DAST: Qualys, Rapid7
  • SAST: CodeQL, Checkmarx, Fortify, SonarQube
  • SCA: Dependabot, JFrog Xray
  • API Security: Understanding of API security principles and tools like Postman, OWASP API Security Top 10,

or API gateways with security features.

  • 47 years of hands-on experience in application security or secure software development.
  • Strong understanding of OWASP Top 10, CWE/SANS Top 25, and secure SDLC.
  • Understanding of vulnerability management lifecycle and remediation workflows.
  • Understanding of threat modeling concepts.
  • Familiarity with penetration testing tools (e.g., Burp Suite, Metasploit, Nmap).
  • Proficiency in at least one programming language (e.g., Java, Python, JavaScript, C#).
  • Familiarity with CI/CD tools (e.g., Jenkins, GitLab CI, Azure DevOps).
  • Exposure to cloud security (AWS, Azure, or GCP) is a plus.

Soft Skills Required

  • Strong analytical and problem-solving skills.
  • Excellent verbal and written communication.
  • Ability to work independently and collaboratively in cross-functional teams.
  • Strong documentation and reporting capabilities.
  • Proactive, detail-oriented, and eager to learn.

Good To Have Skills

  • Working knowledge of DevSecOps practices and tools.
  • Experience with container security (Docker, Kubernetes).
  • Certifications such as CEH or equivalent.
  • Familiarity with threat modeling tools (e.g., Microsoft Threat Modeling Tool, IriusRisk).
  • Experience in Agile/Scrum environments.

(ref:hirist.tech)
Share job
Similar Jobs
View All
1 Day ago
SDE III - Frontend Heavy
Internet
  • 3 - 5 Yrs
  • Anywhere in India/Multiple Locations
Candidates from Saas, Software Development, Product based companies only. About the Role: We are looking for an experienced software engineer with strong technical and communication skills who has developed full stack web apps, created solid AP...
decor
1 Day ago
VAYUZ Technologies - Python Developer - Django/Flask
Information Technology
Job DescriptionRole Expectations : Provide technical leadership and guidance to a team of Python developers. Mentor junior developers in best practices, coding standards, and problem-solving techniques. Participate in code reviews to ensure code ...
decor
1 Day ago
Go (Golang) Software Engineer, Developer Tooling and Containers
Information Technology
Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is very widely used in breakthrough enterprise initiatives such as public cloud, data science, AI, e...
decor
1 Day ago
Interesting Job Opportunity: AWS Data Engineer - Python/PySpark
Information Technology
Key Responsibilities Hands on experience in data related activities such as data parsing, cleansing quality definition data pipelines, storage and ETL scripts. Expert knowledge in AWS Data Lake implementation and support (S3, Glue, DMS Athena, Lam...
decor
1 Day ago
Go (Golang) Software Engineer, Developer Tooling and Containers
Information Technology
Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is very widely used in breakthrough enterprise initiatives such as public cloud, data science, AI, e...
decor
1 Day ago
Security Consultant (Operational Technology Security)
Information Technology
Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diver...
decor
1 Day ago
Go (Golang) Software Engineer, Developer Tooling and Containers
Information Technology
Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is very widely used in breakthrough enterprise initiatives such as public cloud, data science, AI, e...
decor
1 Day ago
Senior Software Engineer - Digital Workplace
Information Technology
Canonical is a leading provider of open source software and operating systems to the global enterprise and technology markets. Our platform, Ubuntu, is very widely used in breakthrough enterprise initiatives such as public cloud, data science, AI, e...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media