16 Aug
|
Suzva Software Technologies
|
Mumbai
16 Aug
Suzva Software Technologies
Mumbai
Level 2 Resource Source Code Review (SCR)
Experience : 5-6 years
Skills : Source Code Review, Multiple Languages, Checkmarx, SonarQube, Certifications (CEH/OSCP/SANS25/LPT/CEPT)
Level 1 Resource Source Code Review (SCR)
Experience: 2- 3 years
Skills : Source Code Review, Checkmarx, SonarQube, Certifications (CEH/OSCP/SANS25/LPT/CEPT)
The Source Code Review (SCR) Qualified is responsible for analyzing, reviewing, and evaluating application source code to identify security vulnerabilities, coding errors, and adherence to best practices. This role ensures the integrity, security, and quality of software by performing thorough code assessments and working closely with development teams to implement fixes and improvements.
Key Responsibilities :
- Conduct detailed manual and automated source code reviews to identify security flaws, vulnerabilities, and coding standards violations.
- Analyze source code for security risks such as injection flaws, buffer overflows,
insecure cryptography, and improper error handling.
- Collaborate with developers, QA, and security teams to discuss findings, recommend remediation steps, and ensure timely resolution.
- Develop and maintain source code review guidelines, checklists, and best practice documentation.
- Stay updated on the latest security threats, vulnerabilities, and secure coding practices.
- Assist in the development of secure coding standards and contribute to training developers on secure coding techniques.
- Use static application security testing (SAST) tools and other code analysis software efficiently.
- Prepare clear, detailed reports outlining vulnerabilities, risks, and recommendations for improvement.
- Participate in security audits, compliance reviews, and assist in risk assessment activities.
📌 Source Code Review (Mumbai)
🏢 Suzva Software Technologies
📍 Mumbai