Free cookie consent management tool by TermsFeed Associate Security Consultant | Antal Tech Jobs
Back to Jobs
2 Days ago

Associate Security Consultant

decor
Chennai, Tamil Nadu, India
Information Technology
Full-Time
Tech Mahindra

Overview

Job Summary

This position is a Contractor at Senior Specialist Cyber Security role for performing Application Security Testing in Cyber Security Organization. This profile will be passionate in preventing risk by performing remediation validation of vulnerabilities identified during the testing process. While doing so they will also be identifying vulnerabilities in the applications of the enterprise by configuring scan settings for effective vulnerability enumeration, Identify and document findings, approve false positives and define/document approved mitigations used by AppSec Testers. Experience Level: 8 years Location: Hyderabad or Bengaluru Roles and Responsibilities: ¿ Perform SAST/SCA/DAST scans using industry vulnerability scanner ¿ SAST/SCA ¿ Veracode, using supplied compiled binary, configure scan platform to correct scan for both static code CWE¿s as well as SCA derived CVEs. Work will include coordination with app owner to ensure all branches of code are included in compiled binary file. ¿ DAST ¿ Work begins with crawling the target application to identify existing directory and file structure. Once identified, execute DAST scan using HCL product to identify dynamic issue only visible during code execution. ¿ This person will be primarily tasked to execute scan retest by performing revalidation tests of previously identified critical and high severity vulnerabilities as requested by the client application teams. ¿ During testing process, tester MUST ensure application is not degraded and/or taken out of service due to scanning activities. ¿ Tester must ensure results from scanner are present in Vulnerability reporting platforms and visible to approved app users. ¿ Perform manual validation and false positive analysis on the automated scan results.¿ ¿ Provide remediation support will analyze the top rated vulnerabilities along with provide support to application teams on remediation strategies from identified risks. Primary / Mandatory skills: Overall ¿ 8+ years of IT experience ¿ 7+ years of application security Experience ¿ 5+ years of Application Security testing Experience ¿ Bachelor's degree required. ¿ Deep familiarity with the OWASP Top 10 and other security concerns for web applications ¿ Deep Understanding of OWASP Application Security Verification Standards (ASVS) ¿ Deep understanding of SAST, DAST, SCA Scanning practices ¿ Experience in scanning leveraging Veracode, Appscan.or other enterprise tools. ¿ Understand how to interpret and assess CVEs (Common Vulnerability and Exposures) and CWEs (Common Weakness Enumeration) as found by scanning tools. ¿ Understanding of SAST, DAST tools and dependency scanning tools ¿ Experience working/integrating with secret management systems. ¿ Advanced knowledge of front end and back end web application development in at least one technology stack (.NET, Java, PHP, Ruby/Rails, Angular, Node.js, etc.) ¿ Track record of staying current with trends, techniques, tools, and processes that drive improvement of security posture of applications. ¿ Strong documentation skills ¿ Excellent verbal and written communication skills, with proven technical writing abilities (English language proficiency required) ¿ Team oriented thinking with demonstrated ability to produce high quality work as part of a fast paced, dynamic team. ¿ Proven ability to communicate, collaborate, and present effectively with teams and individuals in different disciplines or areas. Technical Skills: SAST, DAST, SCA

Share job
Similar Jobs
View All
1 Day ago
Machine Learning Engineer
Information Technology
  • 2 - 6 Yrs
  • Maharashtra
What you ll do: Lead ML model lifecycle, from research and experiments to implementation and deployment. Build and deploy deep learning models on GCP and edge devices , ensuring real-time inference. Combine multiple sensor in...
decor
1 Day ago
D-TechWorks - Java Full Stack Developer
Information Technology
Java Full stack - GurugramJob Title : Java Full stackExp : 5 to 7 yearsLocation : Gurgaon officeMandatory Skills : Java 8, Spring boot, Microservices, Reactjs, Database (MYSQL/PostgreSQL), Rest APIGood to have : AWS, Docker and orchestration to...
decor
1 Day ago
IT Manager (H/F) - AIRBUS INDIA PRIVATE LIMITED
Information Technology
  • Chennai, Tamil Nadu, India
Job Description: Description We are loo king for a highly customer focused, driven and dependable candidate to manage overall IT Operations at the Airbus India Training center (AITC) in Gurgaon. This position will functionally report to the Head of ...
decor
1 Day ago
PHP Developer
Information Technology
Job Description Youll Do Participating in the design and delivery of web-UI product. Developing solutions by designing system specifications and tests before delivering them. Identifying, analysing, and developing interfaces, flows and APIs. Int...
decor
1 Day ago
Technical Lead - .Net Core/AngularJS
Information Technology
  • Chennai, Tamil Nadu, India
We are seeking an experienced Technical Lead to guide a team of software developers in delivering robust and scalable enterprise solutions using ASP.NET Core, Angular, SQL Server, and Microsoft Azure.The ideal candidate will be responsible for end-t...
decor
1 Day ago
Business Analyst - Wealth Management
Information Technology
  • Chennai, Tamil Nadu, India
Primary skills:Domain->Capital Markets->Wealth Management A day in the life of an Infoscion As part of the Infosys consulting team, your primary role would be to get to the heart of customer issues, diagnose problem areas, design innovative solutio...
decor
1 Day ago
Sr. Software Engineer - Pentaho Data Integration Job
Information Technology
  • Chennai, Tamil Nadu, India
We use cookies to offer you the best possible website experience. Your cookie preferences will be stored in your browser’s local storage. This includes cookies necessary for the website's operation. Additionally, you can freely decide and change any...
decor
1 Day ago
Dataviv Technologies - Quality Assurance Test Engineer - Manual & Automation Testing
Information Technology
  • Chennai, Tamil Nadu, India
Job Title: QA Tester (Manual & GurugramEmployment Type: Full-timeJob SummaryWe are looking for a skilled and detail-oriented QA Tester who is proficient in both manual and automation testing. The ideal candidate will be responsible for ensuring the ...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media