20 Aug
|
We Search
|
India
Budget - 6-18 LPA Locations Gurgaon Mumbai Bangalore Kolkata Pune Ahmedabad API Security – Salt, 42 Crunch, Noname, Skills Required -
1. Hands on experience on building real?time API inventory (managed, shadow, zombie/legacy) across clouds, gateways, ingress controllers, and services
2.Expertise on behavioral anomaly detection, abuse pattern detection (credential stuffing, BOLA/BFLA, scraping), and DDoS rate?limiting via platform policies and gateway integrations.
3. Map API controls to frameworks and regulations (e.g., ISO 27001, SOC 2, PCI DSS, HIPAA, GDPR).
4. Understanding of OWASP API Security Top 10, rate limiting, caching, idempotency, and back?pressure patterns.
5.Experience with OpenAPI/Swagger, schema governance, and contract testing; familiarity with GraphQL security.
6. Hands?on with Salt Security, 42Crunch, and Noname Security (deployment,
policy creation, tuning, and integrations)
Responsibility –
1. Define the API security architecture and standards spanning discovery ? design review ? pre?prod testing ? runtime protection ? monitoring & response.
2. Establish reference architectures integrating Salt / 42Crunch / Noname with gateways (Apigee, Kong, Azure API Management), CI/CD, SIEM/SOAR, and IAM.
3. Establish and enforce API security standards, secure design patterns, and governance controls aligned with Zero?Trust and OWASP API Security principles.
4. Define API authentication and authorization models (OAuth2, OIDC, JWT, mTLS, token scoping, audience restrictions).
📌 API Security (Platform Engineering) (1115)
🏢 We Search
📍 India