Free cookie consent management tool by TermsFeed Security Lit - Software Composition Analysis Engineer | Antal Tech Jobs
Back to Jobs
1 Day ago

Security Lit - Software Composition Analysis Engineer

decor
Bangalore, Karnataka, India
Information Technology
Full-Time
Security Lit

Overview

Description

As a Software Composition Analysis (SCA) Engineer, you will be responsible for ensuring the security, compliance, and integrity of all software components used in our projects.

You will identify and address vulnerabilities, enforce licensing rules, and promote secure development practices across our technology stack.

Work Experience : 1 - 3 Years

Job Location : Mumbai

What You Will Do

  • Component Security Analysis : Use SCA tools to scan software codebases including both in-house and third-party/open-source components for vulnerabilities and security risks.
  • Vulnerability Assessment : Analyse scan results to determine the severity and urgency of each issue and prioritize fixes.
  • License Compliance : Check all software components for compliance with licensing agreements.

Advise teams on licensing implications to avoid legal risks.

  • SBOM Management : Maintain an accurate Software Bill of Materials (SBOM), tracking all components, versions, and dependencies.
  • Collaboration : Work closely with developers to communicate findings, suggest secure alternatives, and assist with remediation.
  • Remediation Tracking : Follow up to ensure vulnerabilities are fixed and verify resolutions with follow-up scans.
  • Reporting & Documentation : Document all findings, actions, and compliance status.
  • Prepare clear reports for both technical and non-technical stakeholders.
  • Continuous Learning : Stay current with the latest trends in software security, open-source risks, and regulatory requirements.
  • Training & Improvement : Participate in security meetings and training sessions.
  • Help improve SCA processes and tools based on industry best practices.
  • Cross-Functional Coordination : Partner with compliance and legal teams to ensure all software meets regulatory and legal standards.

Key Skills Were Looking For

  • Analytical Skills : Strong ability to analyse, prioritize, and solve complex security issues.
  • SCA Tools : Hands-on experience with software composition analysis tools and methodologies.
  • DevSecOps : Familiarity with DevSecOps practices and integrating security into CI/CD pipelines.
  • Compliance Knowledge : Understanding of regulatory standards such as GDPR, PCI DSS, and others relevant to software development.
  • Open-Source Awareness : Basic knowledge of open-source software, including licensing and compliance considerations.
  • Communication : Excellent ability to explain technical issues and collaborate with developers, security, and legal teams.
  • Organization : Capable of managing multiple tasks and adapting to a fast-paced environment.

Required Qualifications

  • Education : Bachelors degree in computer science, Information Technology, Cybersecurity, or a related field.
  • Experience : 1 - 3 years in software development, application security, or a closely related area.
  • Certification : Certified Ethical Hacker (CEH) certification is required

(ref:hirist.tech)

Share job
Similar Jobs
View All
22 Hours ago
Lead Software Engineer - Python
Information Technology
  • 5 - 8 Yrs
  • Bengaluru
We are hiring for a software company working with the top semiconductor industries in the world, looking for a Lead Software Engineer – Python. The Lead will use their core engineering capabilities to leverage python and software engineering for Test...
decor
1 Day ago
Scrum Master - Immediate joiners only
Information Technology
  • Bangalore, Karnataka, India
Company Description NEC Software Solutions (India) On 1st July 2021, Rave Technologies became NEC Software Solutions India. This change brought us under the global NEC Corporation brand. We are proud to be part of an organisation with 122 years of ex...
decor
1 Day ago
Automation Tester
Information Technology
  • Bangalore, Karnataka, India
Join us as a “Automation Tester" at Barclays, where you'll spearhead the evolution of our digital landscape, driving innovation and excellence. You'll harness cutting-edge technology to revolutionise our digital offerings, ensuring unapparelled custo...
decor
1 Day ago
Manual Tester
Information Technology
  • Bangalore, Karnataka, India
We are seeking a detail-oriented Manual Tester to join our quality assurance team. The successful candidate will be responsible for executing test cases, identifying and reporting bugs, and ensuring the quality of our software products. Key Responsi...
decor
1 Day ago
SCRUM MASTER L1
Information Technology
  • Bangalore, Karnataka, India
Job Description Job Title: SCRUM MASTER L1 City: Bengaluru State/Province: Karnataka Posting Start Date: 1/15/26 Wipro Limited (NYSE: WIT, BSE: 507685, NSE: WIPRO) is a leading technology services and consulting company focused on building innovativ...
decor
1 Day ago
Data Domain Architect- Associate
Information Technology
  • Bangalore, Karnataka, India
JOB DESCRIPTION You are a strategic thinker passionate about driving solutions in Data and Financial Analysis. You have found the right team. As a Senior Associate in Finance Consolidation and Planning, you will support Finance stakeholders during cr...
decor
1 Day ago
Scrum Master - Immediate joiners only
Information Technology
  • Bangalore, Karnataka, India
Company Description NEC Software Solutions (India) On 1st July 2021, Rave Technologies became NEC Software Solutions India. This change brought us under the global NEC Corporation brand. We are proud to be part of an organisation with 122 years of ex...
decor
1 Day ago
Data Scientist
Information Technology
  • Bangalore, Karnataka, India
Proud to share LSEG in the India is Great Place to Work certified (Jun ’25 – Jun ’26). Learn more about life and purpose of our company directly from India colleagues’ video: Bengaluru, India | Where We Work | LSEG The Emerging Tech Standard Delivery...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media