Free cookie consent management tool by TermsFeed Security Lit - Software Composition Analysis Engineer | Antal Tech Jobs
Back to Jobs
1 Day ago

Security Lit - Software Composition Analysis Engineer

decor
Bangalore, Karnataka, India
Information Technology
Full-Time
Security Lit

Overview

Overview

As a Software Composition Analysis (SCA) Engineer, you will be responsible for ensuring the security, compliance, and integrity of all software components used in our projects. You will identify and address vulnerabilities, enforce licensing rules, and promote secure development practices across our technology stack.

Work Experience : 1 - 3 Years

Job Location : Mumbai

What You Will Do

  • Component Security Analysis : Use SCA tools to scan software codebases including both in-house and third-party/open-source components for vulnerabilities and security risks.
  • Vulnerability Assessment : Analyse scan results to determine the severity and urgency of each issue and prioritize fixes.
  • License Compliance : Check all software components for compliance with licensing agreements. Advise teams on licensing implications to avoid legal risks.
  • SBOM Management : Maintain an accurate Software Bill of Materials (SBOM), tracking all components, versions, and dependencies.
  • Collaboration : Work closely with developers to communicate findings, suggest secure alternatives, and assist with remediation.
  • Remediation Tracking : Follow up to ensure vulnerabilities are fixed and verify resolutions with follow-up scans.
  • Reporting & Documentation : Document all findings, actions, and compliance status. Prepare clear reports for both technical and non-technical stakeholders.
  • Continuous Learning : Stay current with the latest trends in software security, open-source risks, and regulatory requirements.
  • Training & Improvement : Participate in security meetings and training sessions. Help improve SCA processes and tools based on industry best practices.
  • Cross-Functional Coordination : Partner with compliance and legal teams to ensure all software meets regulatory and legal standards.

Key Skills Were Looking For

  • Analytical Skills : Strong ability to analyse, prioritize, and solve complex security issues.
  • SCA Tools : Hands-on experience with software composition analysis tools and methodologies.
  • DevSecOps : Familiarity with DevSecOps practices and integrating security into CI/CD pipelines.
  • Compliance Knowledge : Understanding of regulatory standards such as GDPR, PCI DSS, and others relevant to software development.
  • Open-Source Awareness : Basic knowledge of open-source software, including licensing and compliance considerations.
  • Communication : Excellent ability to explain technical issues and collaborate with developers, security, and legal teams.
  • Organization : Capable of managing multiple tasks and adapting to a fast-paced environment.

Required Qualifications

  • Education : Bachelors degree in computer science, Information Technology, Cybersecurity, or a related field.
  • Experience : 1 - 3 years in software development, application security, or a closely related area.
  • Certification : Certified Ethical Hacker (CEH) certification is required.

(ref:hirist.tech)

Share job
Similar Jobs
View All
2 Hours ago
PostgreSQL DBA
Information Technology
  • 10 - 15 Yrs
PostgreSQL Database Administrator (DBA) - 10 Years Experience Key Responsibilities: Install, configure, upgrade, and maintain PostgreSQL database systems across development, testing, and production environments. Monitor and optimize database perf...
decor
21 Hours ago
Java Lead
Fintech
  • 8 - 12 Yrs
  • Mumbai, Thane
Desired Candidate Profile • Experience: Prior experience of 8-10 years • Education: Bachelor’s Degree, MBA, MS, M.Tech, MCA (Computer Science/IT) Certification: Product Management Training, Leadership and Management Training • Skills: Strate...
decor
1 Day ago
Payments - Analytics & Reporting- Data Scientist Associate
Information Technology
  • Bangalore, Karnataka, India
JOB DESCRIPTION Description The JPMorgan Chase SMB Payments Analytics team is dedicated to cultivating a data-driven culture and empowering fact-based decision-making. Our Business Analytics division champions this mission by delivering data and fost...
decor
1 Day ago
GenAI Data Scientist
Information Technology
  • Bangalore, Karnataka, India
Discover your future at Citi Working at Citi is far more than just a job. A career with us means joining a team of more than 230,000 dedicated people from around the globe. At Citi, you’ll have the opportunity to grow your career, give back to your c...
decor
1 Day ago
Azure Finops, AWS Network Architect, Azure migration Architect
Information Technology
  • Bangalore, Karnataka, India
TCS Hiring for Azure Finops, AWS Network Architect, Azure migration Architect at Hyderabad, Delhi, Mumbai, Pune, Bangalore, Chennai locations!! Exp Range- 5 to 10 Years Key Technical Skills: 1. Azure/AWS 2. Kubernetes 3. Ansible 4. Terraform 5...
decor
1 Day ago
IT Technician
Information Technology
  • 20000 - 22000 INR - Monthly
  • Bangalore, Karnataka, India
Oversee IT infrastructure (networks, servers, cloud systems, software)-two years experienceJob Types: Full-time, PermanentPay: ₹20,000.00 - ₹22,000.00 per monthBenefits:Health insuranceProvident FundWork Location: In person...
decor
1 Day ago
DailyObjects - Technical Lead - MEAN Stack
Information Technology
  • Bangalore, Karnataka, India
DescriptionDailyObjects is an Indian lifestyle and tech accessories brand focused on building design-led, functional products that enhance everyday experiences.As we scale our digital and retail presence, were looking for a hands-on Tech Lead who can...
decor
1 Day ago
Data Engineer - Pyspark, Databricks and SQL
Information Technology
  • Bangalore, Karnataka, India
Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data an...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media