05 Oct
|
Techcom Solutions India Private
|
India
05 Oct
Techcom Solutions India Private
India
- Experience in cybersecurity, focusing specifically on vulnerability management, security operations, or infrastructure security
- Possess solid understanding of vulnerability types, (OWASP Top 10, CWE, CVE, misconfiguration, insecure API) and be able to clearly explain common attack techniques. Having a solid grasp of web application security and API security principles.
- Demonstrate strong capability in vulnerability prioritization, with the ability to access risk based on exploitability, asset criticality and business context.
- Uplift Dev SecOps vulnerability triage operations to enhance effectiveness and efficiency.
- Perform manual and semi-automated triage of vulnerability findings to provide expert judgment on severity, exploitability, and business impact.
- Conduct false positive analysis, de-duplication, and tool output normalization.
- Provide technical input during project release to prepare triage readiness.
- Identify and correlate recurring vulnerability data across projects or business units to observe trends to simplify or streamline triage processes.
- Collaborate with application teams, Dev Ops, BISOs and developers effectively by explaining vulnerabilities and risk clearly to application team.
- Participate in security tool PoC/PoV and selection processes.
- Drive implementation and integration of selected tools into the triage workflow to enhance automation, data accuracy and analyst efficiency.
- Design and implement automation workflows for enrichment, de-duplication, and ticketing
- Contribute to strategic planning and continuous improvement of VOC capabilities.
- Prepare documentation and reporting on knowledge base documentation and playbook creation. Maintain accurate records of analysis, risk decisions and triage actions.
- Provide guidance to developers and application teams on secure coding best practices.
📌 AppSec Vulnerability (VOC) (India)
🏢 Techcom Solutions India Private
📍 India