09 Oct
|
Techcom Solutions India Private
|
Bengaluru
09 Oct
Techcom Solutions India Private
Bengaluru
Experience in cybersecurity, focusing specifically on vulnerability management, security operations, or infrastructure security
Possess robust understanding of vulnerability types, (OWASP Top 10, CWE, CVE, misconfiguration, insecure API) and be able to clearly explain common attack techniques. Having a solid grasp of web application security and API security principles.
Demonstrate solid capability in vulnerability prioritization, with the ability to access risk based on exploitability, asset criticality and business context.
Uplift DevSecOps vulnerability triage operations to enhance effectiveness and efficiency.
Perform manual and semi-automated triage of vulnerability findings to provide expert judgment on severity, exploitability, and business impact.
Conduct false positive analysis, de-duplication, and tool output normalization.
Provide technical input during project release to prepare triage readiness.
Identify and correlate recurring vulnerability data across projects or business units to observe trends to simplify or streamline triage processes.
Collaborate with application teams, DevOps, BISOs and developers effectively by explaining vulnerabilities and risk clearly to application team.
Participate in security tool PoC/PoV and selection processes.
Drive implementation and integration of selected tools into the triage workflow to enhance automation, data accuracy and analyst efficiency.
Design and implement automation workflows for enrichment, de-duplication, and ticketing
Contribute to strategic planning and continuous improvement of VOC capabilities.
Prepare documentation and reporting on knowledge base documentation and playbook creation. Maintain accurate records of analysis, risk decisions and triage actions.
Provide guidance to developers and application teams on secure coding best practices.
📌 Appsec Vulnerability Bengaluru
🏢 Techcom Solutions India Private
📍 Bengaluru