HamburgerMenu
hirist

Job Description

DEPARTMENT : Information Security

LOCATION : Mumbai

BAND : 2A / 2B

TRAVEL : Moderate

SHIFT : General Shift

JOB OVERVIEW :

Application Security Manager needs to perform application security assessment, code review, vulnerability management and work closely with development teams, product managers, and third-party vendors to ensure application & code developed are secure.

KEY STAKEHOLDERS : INTERNAL

Business Unit CTO, Development teams

QUALIFICATION :

Graduate (BSc. IT, BE, B Tech.) with Information Security Certifications CEH (Certified Ethical Hacking), Certified Application Security Engineer (CASE), CISSP

EXPERIENCE :

- Strong experience in application security assessment, threat modeling, code review, static and dynamic testing.

- Strong understanding of common security libraries, security controls, and common security flaws.

- Experience on performing application vulnerability Management, penetration testing, application & API security assessment.

- Experience with OWASP, static/dynamic analysis, and common security tools.

- Basic knowledge of development or scripting experience.

- Candidate must have experience of identifying security issues through code review during entire SDLC cycle.

- A basic understanding of network and web related protocols (such as TCP/IP, UDP, HTTP, HTTPS, protocols).

- Experience of working with developers.

Key Roles/Responsibilities :

- He / She will be responsible for performing application security assessment, code review, API security assessment.

- Participate in and support application security reviews and threat modeling, including code review and static / dynamic testing.

- Ensure that security across all aspects of the software is uniform by setting up checkpoints.

- Perform threat modeling for applications determine the potential threats and vulnerabilities to an application and identify points where applications are most vulnerable.

- Based on assessment results explore the threats that each application is exposed to and ranks them on a severity scale.

- Recommend the countermeasures that could be developed to secure application.

- He / She need to facilitate and support the preparation of security releases.

- He / She need to support product and development teams in the area of application security.

- Assist in creation of best security development practices and security trainings for developers.

Skills / Competencies :

- He / She must have 5 to 10 Years of experience in Application security assessment & application vulnerability management with strong academic background.

- Ability to stay current with emerging threats, security risks and potential impacts to the business.

- Should have strong exposure on application security assessment, code review, secure development practices and application security tools & technologies.

- Candidate should have at least one Information security certification CEH, CASE, or CISSP

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...