Talent.com
This job offer is not available in your country.
Sr. Analyst II, Application Security

Sr. Analyst II, Application Security

OppenheimerFunds Distributor, IncHyderabad, Telangana
8 days ago
Job description

Description

Key Responsibilities / Duties :

  • Design, implement, and maintain web application firewall solution for Invesco’s web applications.
  • Collaborate with the Application and Cyber defense team to evaluate and mitigate potential threats to Invesco's web applications.
  • Monitor the web application firewall for security events and take appropriate action to mitigate threats.
  • Configure and maintain web application firewall rules and policies to ensure optimal protection.
  • Exception handling the WAF rules.
  • Conduct thorough penetration tests on Applications to identify vulnerabilities.
  • Simulate real-world cyber-attacks to assess the effectiveness of security controls.
  • Utilize a variety of security testing tools, both commercial and open source, to identify and exploit vulnerabilities.
  • Perform regular vulnerability assessments using automated tools and manual testing methods.
  • Stay current with emerging security threats and trends in penetration testing methodologies.
  • Provide consulting services to stakeholders on remediation and mitigation strategies.
  • Writing reports based on testing output.
  • Stay up to date with the latest web application security trends and techniques.
  • Research industry trends and news sources for emerging threat patterns, attack techniques, and vulnerabilities.
  • Other duties as assigned.

Work Experience / Knowledge :

  • 5 plus years of relevant experience in information security
  • Minimum 3 years of experience in designing, implementing, and maintaining web application firewall solutions.
  • Minimum 3 years in penetration testing of Web Applications.
  • The candidate should also have a solid understanding of API security, API and Application standards, DevSecOps practices, Threat modeling.
  • Strong understanding of web application security and common vulnerabilities such as SQL Injection, Cross-Site Scripting (XSS), and Cross-Site Request Forgery (CSRF).
  • Experience with web application firewall solutions such as AWS WAF, Cloudflare.
  • Prior knowledge of penetration testing tools, scripting languages, software vulnerabilities, exploits and malware.
  • Excellent analytical and problem-solving skills.
  • Strong communication skills and ability to work well in a team environment.
  • Relevant certifications such as Pentest+, Burp suite certified practitioner exam, AWS Cloud Practitioner are a plus.
  • Prior experience of vulnerability management and application security
  • Possess a solid understanding of enterprise-grade technologies including operating systems, databases, web applications & applicable monitoring tools.
  • Network infrastructure knowledge
  • Security configuration knowledge
  • Proficient operational understanding of how to ascertain, validate, and employ data from sources that are generally available to the public.
  • Fluent in the techniques that hackers utilize to attack an organization and understand how to pull information from large data sets and how to structure information for reuse.
  • Skills / Other Personal Attributes Required :

  • Experience of working in a high volume and result-oriented operational environment
  • Ability to communicate assertively – verbally as well as in writing- technical information clearly and concisely, commensurate with the audience.
  • Maintain strict confidentiality of all security issues.
  • Must be assertive, methodical and detail oriented.
  • Must be intensely curious, innovative, and think beyond existing procedures.
  • Must be able to build rapport quickly and positively influence outcomes.
  • Must be a team player and self-starter.
  • Ability to multi-task and work on more than one initiative at a time
  • Flexible – able to meet changing requirements and priorities.
  • Maintain current knowledge for all applicable technical areas.
  • Formal Education :

  • Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
  • Full Time / Part Time

    Full time

    Worker Type

    Employee

    Job Exempt (Yes / No)

    Workplace Model

    At Invesco, our workplace model supports our culture and meets the needs of our clients while providing flexibility our employees value. As a full-time employee, compliance with the workplace policy means working with your direct manager to create a schedule where you will work in your designated office at least three days a week, with two days working outside an Invesco office.

    Why Invesco

    In Invesco, we act with integrity and do meaningful work to create impact for our stakeholders. We believe our culture is stronger when we all feel we belong, and we respect each other’s identities, lives, health, and well-being. We come together to create better solutions for our clients, our business and each other by building on different voices and perspectives. We nurture and encourage each other to ensure our meaningful growth, both personally and professionally.

    We believe in diverse, inclusive, and supportive workplace where everyone feels equally valued, and this starts at the top with our senior leaders having diversity and inclusion goals. Our global focus on diversity and inclusion has grown exponentially and we encourage connection and community through our many employee-led Business Resource Groups (BRGs).

    What’s in it for you?

    As an organization we support personal needs, diverse backgrounds and provide internal networks, as well as opportunities to get involved in the community and in the world.

    Our benefit policy includes but not limited to :

  • Competitive Compensation
  • Flexible, Hybrid Work
  • 30 days’ Annual Leave + Public Holidays
  • Life Insurance
  • Retirement Planning
  • Group Personal Accident Insurance
  • Medical Insurance for Employee and Family
  • Annual Health Check-up
  • 26 weeks Maternity Leave
  • Paternal Leave
  • Adoption Leave
  • Near site Childcare Facility
  • Employee Assistance Program
  • Study Support
  • Employee Stock Purchase Plan
  • ESG Commitments and Goals
  • Business Resource Groups
  • Career Development Programs
  • Mentoring Programs
  • Invesco Cares
  • Dress for your Day
  • In Invesco, we offer development opportunities that help you thrive as a lifelong learner in a constantly evolving business environment and ensure your constant growth. Our AI enabled learning platform delivers curated content based on your role and interest. We ensure our manager and leaders also have many opportunities to advance their skills and competencies that becomes pivotal in their continuous pursuit of performance excellence.

    To know more about us

    About Invesco : About our Culture :

    About our D&I policy :

    About our CR program :

    Apply for the role @ Invesco Careers :

    Create a job alert for this search

    Application Security Analyst • Hyderabad, Telangana

    Related jobs
    Security Engineer II (Application Security)

    Security Engineer II (Application Security)

    coinswitchINDIA
    CoinSwitch breaks down the complexities in Crypto, empowering the everyday Indian to make informed investment decisions on a simple and trusted platform. When we started up, Crypto was a field reser...Show moreLast updated: 30+ days ago
    Sr. IT Application Analyst

    Sr. IT Application Analyst

    Air ProductsINDIA
    At Air Products, our purpose is to bring people together to reimagine whats possible, collaborate and innovate solutions to the worlds most significant energy and environmental sustainability chall...Show moreLast updated: 30+ days ago
    Application Security Principal

    Application Security Principal

    EntainHyderabad, India
    This role works closely with the development teams to verify that our applications satisfy the defined security criteria supporting the organization on the secure design of our gaming platform and ...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Lead

    Application Security Lead

    Oak TitaniumHyderabad, IN
    Job Title : Application Security Lead .We are a rapidly growing cybersecurity firm delivering advanced security solutions to enterprises across the Middle East, Europe, and the United States.Our mis...Show moreLast updated: 17 days ago
    Sr Analyst

    Sr Analyst

    ScaleneWorksHyderabad, Telangana, India
    Quick Apply
    Minimum 3 to 5 years of work experience in SAP ABAP workflow in technical design ,development ,testing and documentation. Required at least one implementation experience and should be comfortable in...Show moreLast updated: 30+ days ago
    IS - Sr. Application Security Engineer (L09)

    IS - Sr. Application Security Engineer (L09)

    SynchronyINDIA
    Application Security Engineer (L09).Synchrony (NYSE : SYF) is a premier consumer financial services company delivering one of the industrys most complete digitally enabled product suites.Our experie...Show moreLast updated: 30+ days ago
    Security Threat Analyst II

    Security Threat Analyst II

    AreteHyderabad, Telangana, India
    The Security Threat Analyst II supports the Arete Security Operation Center (SOC) in all monitoring, detection, and response efforts for the Digital Forensics and Incident Response (DFIR) organizat...Show moreLast updated: 10 days ago
    Sr. Analyst Security Operations

    Sr. Analyst Security Operations

    Lennox InternationalINDIA
    Driven by 130 years of legacy, HVAC and refrigeration success, Lennox provides our residential and commercial customers with industry-leading climate-control solutions. At Lennox, we win as a team, ...Show moreLast updated: 30+ days ago
    Cyber Security Analyst-Senior II

    Cyber Security Analyst-Senior II

    FedExHyderabad, Telangana, IN
    Enterprise Security Maintenance – Ensure consistent state across the enterprise by supporting Business Unit (BU) and Service Provider activities encompassing endpoint security, network security, pe...Show moreLast updated: 17 days ago
    • Promoted
    Senior Application Security Analyst

    Senior Application Security Analyst

    Global Infovision Private LimitedHyderabad, IN
    Job Title : Application Security Analyst.Skills : Threat Modeling, Secure SDL, Dev secops & (Comm skills).Show moreLast updated: 1 day ago
    Sr. Application Engineer II

    Sr. Application Engineer II

    Johnson ControlsINDIA
    Build your best future with the Johnson Controls team.As a global leader in smart, healthy and sustainable buildings, our mission is to reimagine the performance of buildings to serve people, place...Show moreLast updated: 30+ days ago
    Sr Security IT Analyst

    Sr Security IT Analyst

    QualysINDIA
    Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!.We are seeking a highly skilled and experienced. The ideal candidate will possess...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    TELUS DigitalHyderabad, IN
    We are a Digital Customer Experience organization, with a comprehensive coverage of IT Services from Traditional Services to Next Gen Digital Services. At TELUS Digital, we focus on lean, agile, hum...Show moreLast updated: 1 day ago
    Sr Analyst II Software Engineering

    Sr Analyst II Software Engineering

    DXC TechnologyHYDERABAD,AP,IND
    Collaborate with the software development team to design, code, and test software solutions, with a focus on developing and maintaining critical components. Work with senior team members to meet pro...Show moreLast updated: 30+ days ago
    Cyber Security Sr.Analyst

    Cyber Security Sr.Analyst

    UnisysINDIA
    What success looks like in this role : .Responsible for the identification, tracking and management of enterprise risks.This includes performing risk assessments and measuring the success and effecti...Show moreLast updated: 30+ days ago
    Security Engineer II

    Security Engineer II

    TPHyderabad, Telangana, India
    Information Security is vital to the operation of Teleperformance.Teleperformance has developed and maintains an effective documented Information Security Management System based on the requirement...Show moreLast updated: 13 days ago
    Analyst II, Information Security

    Analyst II, Information Security

    Anicalls (Pty) LtdHyderabad, India
    Support the review, development, and recommendations of policies and implementation of procedures and practices to ensure the security of information and information resources against unauthorized ...Show moreLast updated: 30+ days ago
    Sr Analyst II Information Security

    Sr Analyst II Information Security

    DXC TechnologiesINDIA
    Support security assessments, audits, and vulnerability scans, contributing to report generation and action items.Monitor security events and incidents, escalating as required and assisting in cont...Show moreLast updated: 30+ days ago