Your role and responsibilities
As a Technical Consultant in Application Security, you will guide clients in understanding security challenges, risks, and vulnerabilities in their application landscape. You will apply deep technical expertise to incorporate security measures throughout the Software/Application Development lifecycle.
Your primary responsibilities will include:
- Develop Security Measures: Design and implement security measures throughout the Software/Application Development lifecycle, including Design, Build, and deployment phases, to mitigate security risks and vulnerabilities.
- Analyze Vulnerabilities: Drive Application Security Vulnerability management by analyzing high-risk vulnerabilities, formulating mitigation plans, and minimizing false positives to ensure the security of applications.
- Implement Security Guardrails: Apply expertise in implementing security guardrails during Application Modernization programs on multicloud environments to ensure secure application development and deployment.
- Provide Security Expertise: Offer in-depth knowledge of various Application Security domains, such as Threat Modelling, Secure SDLC, DevSecOps, and Application Security testing, to guide clients in securing their applications.
- Manage Security Risks: Identify and manage security risks and vulnerabilities in clients' application landscapes, providing recommendations for mitigation and remediation.
Required education
Bachelor's Degree
Preferred education
Master's Degree
Required technical and professional expertise
- Application Security Expertise:
Experience with incorporating security measures throughout the Software/Application Development lifecycle, including Design, Build, and deployment phases.
- Vulnerability Management: Experience in analyzing high-risk vulnerabilities, formulating mitigation plans, and minimizing false positives to ensure the security of applications.
- Multicloud Security: Experience implementing security guardrails during Application Modernization programs on multicloud environments.
- Application Security Domains: In-depth knowledge of various Application Security domains, such as Threat Modelling, Secure SDLC, DevSecOps, and Application Security testing.
- Security Risk Management: Experience identifying and managing security risks and vulnerabilities in application landscapes, with expertise in providing recommendations for mitigation and remediation.
Preferred technical and skilled experience
- Deep Understanding of DevSecOps: Experience with implementing DevSecOps practices to ensure the security of applications throughout the Software/Application Development lifecycle. Knowledge of DevSecOps tools and methodologies is beneficial.
- Familiarity with Multicloud Environments: Experience working with multiple cloud providers, such as AWS, Azure, or Google Cloud, is advantageous. Understanding of cloud security controls and compliance requirements is desirable.
- Threat Modelling Expertise: In-depth knowledge of threat modelling methodologies and tools, such as STRIDE or PASTA, is beneficial. Experience with threat modelling in Agile development environments is advantageous.
Years of Experience:
8 - 10
📌 Technical Consultant-Application Security (Bengaluru)
🏢 IBM
📍 Bengaluru