26 Aug
|
Bread Financial
|
Bengaluru
26 Aug
Bread Financial
Bengaluru
Job Summary
The Security Testing Engineer will strengthen the organizations defenses by performing in-depth security testing across applications, networks, cloud environments, and infrastructure. The Engineer will identify vulnerabilities through ethical hacking, adversarial simulations, manual testing, and automated scanning, delivering clear, accurate reports to guide remediation. The role will configure and optimize testing tools, validate fixes, and collaborate with cross-functional teams to ensure security controls operate effectively. Responsibilities will include evaluating weaknesses such as SQL injection, insecure configurations, and authentication or authorization flaws. The Engineer will support proactive defense by tracking emerging threats, refining testing methods, and recommending improvements to reduce risk. This role will require strong cybersecurity knowledge, hands-on testing skills, and the ability to work with increasing autonomy while aligning with security standards.
Essential Job Functions
- Perform security assessments and penetration tests using established tools and procedures, progressing toward independent execution. Analyze vulnerabilities, summarize findings, and recommend remediation to senior staff. Support implementation of fixes that strengthen system security and ensure compliance. - (20%)
- Collaborate with development and IT teams to embed security testing within the software development cycle, ensuring security is a core component of all stages, from design to deployment. - (20%)
- Support the development and maintenance of security testing tools and methodologies by implementing updates, following established best practices, and documenting changes. Assist in refining testing techniques by evaluating results and identifying opportunities to enhance the accuracy and effectiveness of security evaluations. - (20%)
- Analyze security incidents by reviewing test results,
validating indicators of compromise, and assessing the incidents nature, impact, and scope. Develop clear incident reports that outline findings and propose practical remediation options to strengthen security controls and reduce the likelihood of recurrence. - (20%)
- Monitor current security threats, trends, and technologies by reviewing threat intelligence sources and applying relevant updates to testing procedures. Implement approved security protocol updates and adjust testing approaches to address identified risks and support ongoing protection against emerging threats. - (20%)
Minimum Qualifications
- Bachelor s Degree in Computer Science, or equivalent, relevant work experience
- 2+ years of experience in Cloud Security, App Security, IT Audit, Risk Management
Preferred Qualifications
- Master s Degree in Cyber Security, or equivalent, relevant work experience
- Certified Information Systems Security Qualified (CISSP) - International Information System Security Certification Consortium
- Certified Information Security Manager (CISM) Certification
- Certified Information Systems Auditor (CISA) - The Information Systems Audit and Control Association, Inc.
- CompTIA Security+ Certification
- AWS Certified Security Specialist
- Azure Security Engineer
- 4+ years of experience in Cloud Security, App Security, IT Audit, Risk Management
Skills
- Penetration Testing
- Vulnerability Assessments
- Security Incident Response
- Threat Modeling
- DevSecOps
- Application Security
- Dynamic Application Security Testing (DAST)
- Kubernetes
- Cloud Security
Reports To : Manager and above
Direct Reports : 0
Work Environment
- This is for the work environment section: Normal office environment.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Security Testing Engineer (Bengaluru)
🏢 Bread Financial
📍 Bengaluru