Experience
7 - 10 yrs
Job Location
Bengaluru, India
Vacancy
1
Designation
Application Security Specialist
Job Type
Not specified
Job Description
Job Title / Role :
Department: D AI (H)
Location: Electronic City
Education Qualification : Bachelor's or Master's degree
Required Experience:
- Collaborate with development teams to identify and address security gaps early in SDLC.
- Review the architecture and conduct threat modelling to identify threats and risks.
- Prioritize and guide remediation efforts for mitigating the identified risks.
- Promote secure coding practices through collaboration developer training.
- Implement automated security testing in CI/CD pipelines.
- Perform security assessment of the applications or the features being developed.
- Support teams in resolving vulnerabilities found during security assessment
- Partner with DevOps and infrastructure teams to ensure secure application delivery.
- Constantly improve the application security posture from both tech and process perspectives.
- Conduct regular security audits and assessments to ensure that Applications/APIs are secure.
- Respond to security incidents and provide technical support as required.
- Assist and respond to internal/external audits and ensure compliance with security standards.
- Stay up to date with the latest security trends and technologies.
- Monitor emerging AI-related threats, risks, and assess their impact on application security.
Required Skills:
- Strong understanding of security principles across the Software Development Lifecycle (SDLC), with the ability to embed security from design to deployment.
- Experience in software development to effectively collaborate with engineering teams.
- Knowledge of threat modeling methodologies (STRIDE, DREAD, PASTA )
- Skilled in manual and automated code reviews for secure coding compliance.
- Hands-on experience with security tools like SAST, SCA and triaging the issues.
- Hands-on experience with testing Web Applications and Mobile Applications to identify Security loopholes
- Deep understanding of API security and testing common vulnerabilities.
- Good understanding of Cloud Security (AWS, Azure etc.)
- Understanding of OWASP Top 10, CWE and mitigation strategies.
- Understanding of AI/ML security risks and mitigation strategies.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
