Posted on: 21/02/2026
Description :
- Conduct REST API security testing, including authentication, authorization, input validation, and rate limiting checks.
- Identify vulnerabilities such as OWASP Top 10, business logic flaws, and configuration issues. Validate vulnerability fixes and perform re-testing.
- Assess AWS cloud infrastructure security.
- Security Posture Improvement
- Work closely with development and DevOps teams to shift security left. Provide actionable remediation guidance to engineering teams.
- Help define and improve secure coding practices and security standards. Support secure SDLC and DevSecOps initiatives.
Compliance & Governance :
- Assist in meeting compliance requirements such as ISO 27001, SOC 2, FEDRAMP, etc Support internal and external security audits.
- Maintain security documentation, risk assessments, and vulnerability reports.
Required Skills & Qualifications :
Technical Skills :
- Strong understanding of LAMP stack security.
- Experience with REST API security testing (Postman, Burp Suite, OWASP ZAP). Hands-on experience securing AWS cloud infrastructure.
- Knowledge of OWASP Top 10, CWE, and common attack vectors.
- Familiarity with vulnerability scanning tools (e.g., Nessus, Qualys, Snyk, etc.). Understanding of authentication mechanisms (OAuth, JWT, API keys).
Tools & Technologies :
- AWS Security tools (IAM, GuardDuty, Inspector, CloudTrail) Git, CI/CD pipelines (security integration preferred)
- Linux command line
Preferred Qualifications :
- Experience with DevSecOps and CI/CD security automation. Knowledge of container security (Docker, EKS) is a plus.
- Scripting knowledge (Python, Bash) is an advantage.
The job is for:
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1614901