Talent.com
Senior Manager - Security Application Testing - Information Security

Senior Manager - Security Application Testing - Information Security

ConfidentialMumbai, India
19 days ago
Job description

OSCP certification, Penetration testing or OWASP Top 10, Team Management

Classification - Internal

Classification - Internal

Job Title Senior Manager Application Security Testing - ISG

Experience 8-9 Years

Location : Airoli, Mumbai

Mandatory :

8-9 years of hands-on experience in application security and SCR

Bachelors in engineering or MCA.

Certification – any two of the certificates from the list such as LPT, OSCP, OSCE.

Job Description :

Complete understanding of application security and source code review programs.

Very strong technical skills and ability to think out of the box.

Candidate should be good in understanding of application security, mobile application security (Android and iOS), API security testing and detailing, articulation of vulnerability and should be able to review and recommend on the assessment report with details of vulnerabilities identified, categorization of the risks by assessment of potential impact and detailed remediation / recommendation for all the identified risks.

Provide technical assistance to clarify the reported issues to the relevant teams and provide required support to resolve the issues. Explain the issues in layman language to the business teams.

Should have experience in automation of vulnerability and web scanners (e.g. Qualys, Nessus, AppScan, Web inspect, Acunetix, Burp suite Pro, etc) using industry automation software's.

Technical knowledge of Windows and UNIX operating systems, networking, security & network devices.

Strong knowledge of the OWASP Top 10, SANS top 25, WASC security Standards and detailed knowledge of common web application attack vectors such as SQL injection, CSRF, XSS, Session Management issues, Insecure Direct Object reference, Click jacking, buffer overflows, etc.

Strong knowledge of security vulnerability, risk, threat, exploitation, technical & business impact

Experience in automation of vulnerability work to reduce manual efforts and simplify the process

Should have knowledge to implement a risk-based approach to Vulnerability Management. Good to know TVM products like Kenna Security, Risk Sense etc.

Should have knowledge on Risk Rating Standards like DREAD, CVSS etc.

Should have prepared audit reports and findings tracker sheets for applications.

Should be used to researching the latest security best practices, reading up on new threats and vulnerabilities and disseminate this information within the team as well as the organization.

Should have knowledge in preparing policy, procedure, standard and guidelines for application security

Coaching / mentoring team members on technical / functional / operational / aspects and expertise relevant to security testing

Stakeholder management – Need to interact and communicate with IT, Application, Development, Business teams for VAPT work

Should have relevant experience in a mid- large size organisation and should be leading the VM practice.

Skills required / Expertise :

8-9 years of proven experience in vulnerability assessment and penetration testing of Web, Mobile (Android & iOS is must) & API.

Tools –IBM AppScan, Web inspect, Acunetix, Burp suite Professional, Checkmarx, Fortify, Metasploit Professional

Proficient in written and oral English communication skills.

Strong organizational, teamwork, multi-tasking and time-management skills.

Manage a team during project execution as needed for the smooth execution of the project.

Experience in banking domain will be added advantage.

Skills Required

Acunetix, Metasploit, Fortify, Nessus, Burp Suite, Ibm Appscan, Appscan, Checkmarx, Qualys

Create a job alert for this search

Manager Information Security • Mumbai, India

Related jobs
  • Promoted
Senior Security Consultant

Senior Security Consultant

Claranet IndiaMumbai, IN
Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 30+ days ago
  • Promoted
Senior Cloud Security Specialist

Senior Cloud Security Specialist

ACL Digitalthane, maharashtra, in
We are a leading organization in the field of information security, dedicated to protecting our clients' data and ensuring their digital safety. Our mission is to provide innovative security solutio...Show moreLast updated: 14 days ago
  • Promoted
Senior Application Security Manager

Senior Application Security Manager

ARCONMumbai, Maharashtra, India
We are seeking a highly experienced and strategic-minded Senior Manager of Application Security to lead our security initiatives. The ideal candidate will be a seasoned leader with a deep understand...Show moreLast updated: 30+ days ago
  • Promoted
Senior Information Security Engineer (ISO27001)

Senior Information Security Engineer (ISO27001)

IDfyMumbai, Maharashtra, India
IDfy is Asia’s leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we’re solving trust challenges, making compliance easy, fraud detection smarter, and onboard...Show moreLast updated: 9 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

ArcanaThane, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Manager Enterprise Security (Security Operations Tooling)

Manager Enterprise Security (Security Operations Tooling)

M&GMumbai, Maharashtra, India
Manager Enterprise Security (Security Operations Tooling).Enterprise Security and Technology.AVP Security Tooling Enterprise Security & Technology. The purpose of this role is to monitor and maintai...Show moreLast updated: 15 days ago
  • Promoted
Security Testing Lead - VAPT

Security Testing Lead - VAPT

Impeccable HR ConsultingMumbai
Job Description : Information Security - SOC and Security Testing Lead Role and Responsibilities : - Participate in information Securi...Show moreLast updated: 30+ days ago
  • Promoted
Manager - Information Security

Manager - Information Security

Hipos Consulting Services LLPThane
About : - Master's or bachelor's degree in information technology / Information Security / Computer Science, or a related field. Information Security, specifically in ...Show moreLast updated: 30+ days ago
  • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

SpheraThane, IN
Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show moreLast updated: 5 days ago
  • Promoted
Senior Manager - Information Security

Senior Manager - Information Security

NMS ConsultantMumbai
Description : The Senior Manager Information Security will spearhead the development and execution of a comprehensive information security strateg...Show moreLast updated: 30+ days ago
  • Promoted
Enterprise Sales Manager (Cyber Security)

Enterprise Sales Manager (Cyber Security)

WhizHack Technologiesmumbai, maharashtra, in
The Cybersecurity Enterprise Sales Representative is responsible for identifying, prospecting, and closing sales opportunities within the enterprise sector. This role involves understanding clients'...Show moreLast updated: 26 days ago
  • Promoted
HDB Financial Services - Senior Manager - Information Security & Governance

HDB Financial Services - Senior Manager - Information Security & Governance

HDB Financial Services LtdMumbai
HDB Financial Services Ltd is looking for an experienced Red Team Assessment expert to join our Cyber Security Team.This role is responsible for simulating real-world attacks to test the effectiven...Show moreLast updated: 30+ days ago
  • Promoted
Lead - Information Security Audit

Lead - Information Security Audit

Alpha OrionMumbai, India
Lead IS Audit Job description The primary objective of Technology audits includes : - Ensure IT systems and...Show moreLast updated: 30+ days ago
  • Promoted
VAYUZ Technologies - IT Security Manager

VAYUZ Technologies - IT Security Manager

VAYUZ TechnologiesMumbai
Description : About the Role : We are seeking an exp...Show moreLast updated: 30+ days ago
  • Promoted
Information Security Manager

Information Security Manager

Ajanta Pharma LtdMumbai, Maharashtra, India
Senior Manager – Information Security.The Senior Manager – Information Security will spearhead the development and execution of a comprehensive information security strategy that supports the organ...Show moreLast updated: 15 days ago
  • Promoted
Information Security / ITGC Audit

Information Security / ITGC Audit

Digihelic Solutions Private LimitedMumbai, India
Conduct IT General Controls (ITGC) and Information Security audits.Review compliance with ISO 27001, SOC, and IT security standards. Evaluate access controls, change management, and incident respons...Show moreLast updated: 21 days ago
  • Promoted
Application Security Engineer

Application Security Engineer

FoodsmartMumbai, IN
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Security Engineer

Senior Security Engineer

First American (India)Kalyan-Dombivli, IN
The Senior Security Engineer will be responsible for designing and implementing the Database Activity Monitoring (DAM) function to ensure the security, integrity, and compliance of enterprise data ...Show moreLast updated: 4 hours ago