28 Sep
|
Cloudxtreme
|
Hyderabad
28 Sep
Cloudxtreme
Hyderabad
Role & Responsibilities
- Perform application security assessments using Checkmarx (SAST), Zafran, and ThreatModeler.
- Build and maintain threat models to identify risks across applications and cloud environments.
- Integrate AppSec tools into CI/CD pipelines and automate security checks.
- Collaborate with developers and DevOps teams to remediate vulnerabilities and guide secure coding practices.
- Monitor, track, and report security findings with clear mitigation plans.
- Ensure alignment with OWASP, secure SDLC standards, and internal security policies.
Preferred Candidate Profile
- 38 years of experience in Application Security / DevSecOps.
- Hands-on experience with Checkmarx, Zafran, and ThreatModeler.
- Strong knowledge of SAST, threat modeling methods (STRIDE), OWASP Top 10, and secure SDLC.
- Experience working with CI/CD tools (Jenkins, GitLab, Azure DevOps, etc.).
- Good understanding of at least one programming language (Java, .NET, Python, JavaScript).
- Solid analytical, communication, and problem-solving skills.
- Relevant certifications (CEH, Security+, CAST, or Threat Modeling) are a plus.
📌 Application Security Engineer (AppSec/DevSecOps)H HYD (Hyderabad)
🏢 Cloudxtreme
📍 Hyderabad