QualificationsSkillset required:
- Experience in handling web application security risks - OWASP Top-10 E.G.: Injection attacks, buffer overflow, cross-site scripting etc.
- Skill to provide security controls guidance related to data usage, processing, storage, and transmission.
- Knowledge of different Threat Modeling methodologies (E.G.: STRIDE, VAST, Attack Tree etc.).
- Knowledge of security assessment, risk management processes, cyber security threats, vulnerabilities, attack methods and techniques.
- Knowledge of organization's information security policies, standards, and procedures.
- Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
- Knowledge of network access, cryptography, cryptographic key management concepts, identity and access management (e.G.: OAuth, OpenID, SAML).
- Knowledge of cloud security and API security.
- Knowledge of security assessment for Microservices architecture, Databases (SQL/NoSQL), Google Cloud Platform resources like cloud storage, Redis Pub/Sub and Cloud Run.
- Knowledge of computer networking and network security architecture concepts including topology, protocols, components, and principles.
- Knowledge of laws, regulations, policies, and ethics related to cybersecurity and privacy.
- Ability to evaluate information for reliability, validity, and relevance.
- Excellent analytical, communication, documentation, and presentation skills.
- Knowledge of emerging technologies like AI/ML, Zero Trust, LCNC etc. and willingness to learn new technologies and concepts.
- Knowledge of Agile practices and SDLC
- Self-Starter who can work in ambiguous situations and drive to a solution.
- Solid interpersonal skills, including ability to educate and influence.Qualifications required:
- Bachelor’s degree in computer science, Cyber Security, or related field of study
- 3+ years of experience in Cyber Security or related fields of IT.
- Knowledge on Security Framework such as NIST CSF, ISO27001, OWASP Top-10 etc.
- Cyber security certifications like CISSP, OSCP, CEH, Pentest+ are highly desirable.
📌 Cyber Security Analyst - Application Security (Chennai)
🏢 Ford
📍 Chennai