Free cookie consent management tool by TermsFeed Security Test Engineer | Antal Tech Jobs
Back to Jobs
3 Days ago

Security Test Engineer

decor
Mumbai, Maharashtra, India
Information Technology
Full-Time
BNP Paribas

Overview

About BNP Paribas India Solutions

Established in 2005, BNP Paribas India Solutions is a wholly owned subsidiary of BNP Paribas SA, European Union’s leading bank with an international reach. With delivery centers located in Bengaluru, Chennai and Mumbai, we are a 24x7 global delivery center. India Solutions services three business lines: Corporate and Institutional Banking, Investment Solutions and Retail Banking for BNP Paribas across the Group. Driving innovation and growth, we are harnessing the potential of over 10000 employees, to provide support and develop best-in-class solutions.

About BNP Paribas Group

BNP Paribas is the European Union’s leading bank and key player in international banking. It operates in 65 countries and has nearly 185,000 employees, including more than 145,000 in Europe. The Group has key positions in its three main fields of activity: Commercial, Personal Banking & Services for the Group’s commercial & personal banking and several specialised businesses including BNP Paribas Personal Finance and Arval; Investment & Protection Services for savings, investment, and protection solutions; and Corporate & Institutional Banking, focused on corporate and institutional clients. Based on its strong diversified and integrated model, the Group helps all its clients (individuals, community associations, entrepreneurs, SMEs, corporates and institutional clients) to realize their projects through solutions spanning financing, investment, savings and protection insurance. In Europe, BNP Paribas has four domestic markets: Belgium, France, Italy, and Luxembourg. The Group is rolling out its integrated commercial & personal banking model across several Mediterranean countries, Turkey, and Eastern Europe. As a key player in international banking, the Group has leading platforms and business lines in Europe, a strong presence in the Americas as well as a solid and fast-growing business in Asia-Pacific. BNP Paribas has implemented a Corporate Social Responsibility approach in all its activities, enabling it to contribute to the construction of a sustainable future, while ensuring the Group's performance and stability

Commitment to Diversity and Inclusion

At BNP Paribas, we passionately embrace diversity and are committed to fostering an inclusive workplace where all employees are valued, respected and can bring their authentic selves to work. We prohibit Discrimination and Harassment of any kind and our policies promote equal employment opportunity for all employees and applicants, irrespective of, but not limited to their gender, gender identity, sex, sexual orientation, ethnicity, race, colour, national origin, age, religion, social status, mental or physical disabilities, veteran status etc. As a global Bank, we truly believe that inclusion and diversity of our teams is key to our success in serving our clients and the communities we operate in.

About Business Line/Function

ITG provides testing services for the BNP Paribas Group. The Security testing team is responsible to execute SAST, Penetration Tests (Black or Gray Box) for the Web and Mobile applications pertaining to the group

Job Title

Security Test Engineer

Date

Department:

ITG

Location:

Mumbai/Chennai

Business Line / Function

ITG CDF Security Testing

Reports To

(Direct)

Grade

(if applicable)

NA

(Functional)

NA

Number Of Direct Reports

NA

Directorship / Registration

NA

Position Purpose

The purpose of the position is to help with the security testing activities mentioned in the direct responsibilities.

Responsibilities

Direct Responsibilities

  • To perform Penetration testing (Gray Box and/or Black Box) for Web applications, Mobile, API, and thick client applications.
  • Hands-on mobile penetration tester with strong knowledge and experience in Android and iOS application security testing (both static and dynamic), responsible for discovering, validating and reporting security issues in mobile applications.
  • Perform Static analysis (SAST) and Dynamic analysis (DAST) on Android APKs and iOS IPA to identify insecure storage, hardcoded secrets, insecure configurations, runtime hooking, parameter tampering etc
  • Conduct reverse engineering and protection bypass on mobile applications including decompiling /inspecting binaries, analyzing native libraries (.so/.dylib) and bypassing client-side protections (root / jailbreak detection, SSL pinning, obfuscation, tamper checks etc.) using tools like Frida, objection magisk, cydia/selio/zebra and Xposed.
  • Strong research knowledge and should be updated with evolving mobile threats and industry standard (OWASP MASVS/MASTG)
  • To understand the application’s security requirements and identify & document the scope of the test.
  • Ensure execution of the documented security scenarios for the application under test.
  • Document and report all findings.
  • Collaborate with the developers to help them understand the vulnerabilities reported in application.
  • Escalate issues to the local management and onshore stakeholders in case it affects the testing progress.
  • Ensure processes for the project is followed for the assessments.
  • Note: Mandatory requirement – Mobile, Web & API Penetration Testing
  • Optional: Experience in Source Code Assessment (SCA)/SAST.

Technical & Behavioral Competencies

  • Clear understanding of OWASP Top 10 - application security risks
  • Tools/OS: Burp Suite, OWASP ZAP, Kali Linux, mobsf, jadx, dex2jar, adb, xcode, Frida, objection, apktool, putil, otool.
  • Manual Security Testing & Analysis, Security Test Designing
  • Excellent Interpersonal and presentation skills
  • Strong in verbal and written communication
  • Good analytical skills
  • Strong Time Management
  • Must be flexible, independent, self-motivated.
  • Team player

Specific Qualifications (if Required)

CSSLP/CEH or equivalent certification preferred

Skills Referential

Behavioural Skills: (Please select up to 4 skills)

Choose an item.

Choose an item.

Choose an item.

Choose an item.

Transversal Skills: (Please select up to 5 skills)

Choose an item.

Choose an item.

Choose an item.

Choose an item.

Choose an item.

Education Level

Bachelor’s degree or equivalent.

Experience Level

At least 5 years of relevant experience.
Share job
Similar Jobs
View All
1 Hour ago
Sr AI Engineer
Information Technology
  • 1000000 - 2500000 INR - Annual
  • 6 - 9 Yrs
  • Pune
Job Description Summary We are looking for a technically skilled and impact-driven AI Engineer to design and develop advanced AI models across use cases such as multi-agent systems, (Graph) RAG, computer vision, and tabular prediction tasks. You w...
decor
17 Hours ago
Devops Engineer
Information Technology
  • 5 - 9 Yrs
  • Pune
To support our growth, client is looking for a DevOps Engineer to join our Platform team within our broader Products organization. You will mainly be focusing on improving our existing infrastructure, as well as coming up with and implementing new ...
decor
17 Hours ago
Site Reliability Engineer
Information Technology
  • 3 - 7 Yrs
  • Pune
SRE Key Skills - GCP: BigQuery, Airflow, Cloudstorage.. Observability: ELK + grafana Devops: CI/CD Gitlab and Jenkins Integration background Key Responsibilities ● Implement and manage the observability stack (metrics, logs, traces ...
decor
20 Hours ago
Java Lead Developer
Information Technology
  • 26 - 36 INR - Annual
  • 8 - 15 Yrs
  • Pune
Skills- Java, Spring boot, Microservices, GCP, Team managment Required Skills & Experience Proven experience as a Team Lead or similar leadership role. Strong Java development background (knowledge of Node.js/TypeScript/Python is a bonus)....
decor
23 Hours ago
Data Integrations Architect - Dell Boomi
Information Technology
  • 3000000 - 3500000 INR - Annual
  • 8 - 15 Yrs
  • Pune
Data Integrations Architect - Dell Boomi Experience: 8+ Years Location: Pune Role Overview We are looking for an experienced Data Integrations Architect - Dell Boomi to design and implement scalable, secure, and high-performance integration s...
decor
23 Hours ago
Full Stack Cloud Engineer - FrontEnd
Information Technology
  • 1800000 - 2000000 INR - Annual
  • 3 - 7 Yrs
  • Pune
Senior Full-Stack Cloud Developer Location: Pune (Hybrid) Experience: 3+ Years Job Type: Full-Time About the Role We are looking for a skilled Senior Full-Stack Developer - FrontEnd to work on an AI-driven knowledge platform. The role in...
decor
23 Hours ago
Data Integration Specialist - Fivetran
Information Technology
  • 2000000 - 2500000 INR - Annual
  • 5 - 10 Yrs
  • Pune
Data Integration Platform Specialist – Fivetran Experience: 8+ Years Location: Pune Role Overview We are hiring a Data Integration Platform Specialist with strong expertise in Fivetran to manage and optimize enterprise data integration platfo...
decor
23 Hours ago
Data Integration Architect
Information Technology
  • 2500000 - 4000000 INR - Annual
  • 8 - 15 Yrs
  • Pune
Position: Data Integration Architect (No Data Engineer) Number of positions: 1 (New role) Reporting to: Data Integration Manager Experience required: 8+ years total, with at least 4+ years in Data Integration Stability requirement: Minimu...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media