Gurugram, Haryana, India
Information Technology
Full-Time
OSI Digital
Overview
Summary
Job Description – Security Analyst
We are looking for a skilled Security Analyst with expertise in application and network security. The candidate will be responsible for conducting DAST, SAST, and VAPT assessments to identify and remediate vulnerabilities across web, mobile, APIs, and infrastructure. The role involves working with multiple stakeholders, performing manual and automated testing, and ensuring the overall security posture of applications and networks.
Role & Responsibilities
Job Description – Security Analyst
We are looking for a skilled Security Analyst with expertise in application and network security. The candidate will be responsible for conducting DAST, SAST, and VAPT assessments to identify and remediate vulnerabilities across web, mobile, APIs, and infrastructure. The role involves working with multiple stakeholders, performing manual and automated testing, and ensuring the overall security posture of applications and networks.
Role & Responsibilities
- Perform Dynamic Application Security Testing (DAST) and Static Application Security Testing (SAST) for web and mobile applications.
- Conduct Vulnerability Assessment & Penetration Testing (VAPT) for applications, APIs, and networks.
- Identify, validate, and exploit security flaws including OWASP Top 10 and SANS 25 vulnerabilities.
- Perform network security assessments (firewalls, servers, cloud, configurations).
- Collaborate with development and IT teams to provide remediation guidance.
- Prepare detailed security reports with findings, risk ratings, and recommendations.
- Stay updated on latest threats, CVEs, and zero-day vulnerabilities.
- Support in secure SDLC and DevSecOps initiatives.
- Strong knowledge of application security, API security, and network security.
- Hands-on with tools like Burp Suite, OWASP ZAP, Nessus, OpenVAS, WPScan, Metasploit, Postman.
- Understanding of TLS/SSL, authentication, encryption, access controls, cloud security.
- Good analytical, reporting, and communication skills.
- Knowledge of compliance frameworks (ISO 27001, PCI-DSS, OWASP, CIS).
- 1-3 years of experience in Application and Network Security (VAPT, DAST, SAST).
- Strong background in manual penetration testing is essential.
- Knowledge and experience in automated penetration testing are expected.
- Exposure to secure coding practices and remediation support.
- Certifications like CEH or equivalent is a prerequisite.
Similar Jobs
View All
Talk to us
Feel free to call, email, or hit us up on our social media accounts.
Email
info@antaltechjobs.in