15 Sep
|
Haparz
|
Bengaluru
Exp:- 5+ years
Bill rate:- 1.60 LPM
Location:- Chennai | Pune | Hyderabad | Bengaluru |
Worktime :- 2 PM to 11 PM.
Key Responsibilities:
- Design and implement security testing strategies for applications, ensuring comprehensive coverage of vulnerabilities and threats
- Conduct penetration testing and vulnerability assessments using industry-standard tools to identify and remediate security risks
- Utilize Blackduck, ZAP Proxy, Fortify, and Veracode to analyze codebases and applications for security flaws and compliance issues
- Collaborate with development teams to integrate security testing into CI/CD pipelines, optimizing automated security checks
- Develop and maintain test plans, scripts, and documentation for security testing processes and results
- Monitor and report on security test outcomes, providing actionable insights and recommendations for improvement
- Stay current with emerging security threats, tools, and methodologies to enhance testing effectiveness
- Support audit and compliance activities by providing evidence and documentation related to security testing
Required Skills:
- Blackduck for open source vulnerability scanning.
- ZAP Proxy for web application security testing.
- Penetration testing methodologies and tools.
- Fortify for static application security testing.
- Veracode for automated security analysis.
- Vulnerability assessment techniques.
- Integrating security testing into CI/CD pipelines.
- Secure coding practices and remediation techniques.
- Security test documentation using industry standards.
- Knowledge of security compliance frameworks (e.g., OWASP, NIST).
Preferred Skills
- Container security tools such as Aqua or Twistlock.
- Cloud security testing frameworks for AWS, Azure, or GCP.
- Threat modeling and risk assessment methodologies.
- Scripting for automating security tests (Python, Bash).
- Experience with SAST and DAST integration in DevOps environments.
Desired Qualifications
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a closely related discipline.
- Certified Ethical Hacker (CEH) or equivalent security certification relevant to application security
- Certification in application security testing, such as CSSLP or OSCP.
📌 Security Testing | Hybrid | Chennai | Pune | Hyderabad | Bengaluru |
🏢 Haparz
📍 Bengaluru