Talent.com
This job offer is not available in your country.
Cyber Security Specialist

Cyber Security Specialist

Tech MahindraIndia
7 days ago
Job description

About the Company

We are seeking a highly skilled and self-driven FOSS Sonatype IQ Subject Matter Expert (SME) to join our Secure Development Cybersecurity team. This role is crucial to strengthening our software supply chain security and ensuring open-source compliance across development teams in Global business and functions.

About the Role

The ideal candidate will possess deep expertise in Sonatype IQ Server along with other OSS scanning tools (like Snyk, Black Duck, Dependency-Track, Crowd Strike), a strong grasp of modern DevSecOps practices, and hands-on experience in establishing FOSS usage policies in enterprise environments. In this role, you will be responsible for ensuring the secure code adoption, governance, and compliance of open-source software security across the organization. You will work closely with development, security, and technology teams to mitigate risks, enforce policies, and enhance the security posture of open-source software.

Responsibilities

Serve as the primary advisor and technical expert for Sonatype Nexus IQ Server and open-source dependency vulnerability scanning.

Implement and maintain Sonatype IQ integrations within CI / CD pipelines to automate security and compliance checks.

Analyze and remediate vulnerabilities, license risks, and policy violations in open-source dependencies.

Develop and enforce software composition analysis (SCA) best practices across development teams.

Collaborate with security teams to prioritize and mitigate OSS vulnerabilities based on risk assessments.

Create and maintain custom policy configurations in Sonatype IQ to align with organizational security standards.

Train and mentor engineering teams on secure OSS usage, dependency management, and DevSecOps best practices.

Work to uplift the vulnerability scanning and remediation capabilities to meet enhanced Service Level Agreements (SLAs), ensuring timely and effective resolution of security vulnerabilities.

Monitor and report on FOSS risk metrics, providing actionable insights to leadership.

Stay updated on emerging software supply chain threats and recommend proactive security measures.

Support SBOM interlock and proactively participate in wider SBOM program.

To perform security assessment and identify potential risk with open source LLMs.

Qualifications

4+ years of hands-on experience with Sonatype Nexus IQ Server in an enterprise environment.

Strong understanding of Software Development Life Cycle (SDLC) with a focus on security.

Strong expertise in open-source Software security, vulnerability management, and license compliance.

Proficiency in DevSecOps practices, including CI / CD integration (Jenkins, GitLab, GitHub Actions, etc.)

Experience with software composition analysis (SCA) tools and dependency management (Maven, npm, pip, etc.)

Knowledge of OWASP Top 10, CVE, and MITRE ATT&CK frameworks related to OSS risks.

Familiarity with container security (Docker, Kubernetes) and SBOM (Software Bill of Materials) generation.

Good to have scripting skills (Bash, Python, Groovy) for automation and tool customization.

Excellent communication skills, with the ability to explain complex security concepts to non-technical stakeholders.

Required Skills

7+ years of experience into cybersecurity, Information security or security engineering.

Strong DevSecOps and Software security background.

Desirable to have one or more industry-recognised cybersecurity-related certifications including CISSP, CRISC, CISM, OSCP.

Bachelor or Masters degree in Computer Science, Information Technology, Cybersecurity or equivalent.

Job Title : FOSS Sonatype IQ SME

Location :

India (Bengaluru, Hyderabad, Pune)

CSAT- Cybersecurity

Create a job alert for this search

Cyber Security Specialist • India

Related jobs
  • Promoted
AVP - Cyber Security Specialist [T500-20014]

AVP - Cyber Security Specialist [T500-20014]

MUFGIndia
Japan’s premier bank, with a global network spanning in more than 40 markets.Outside of Japan, the bank offers an extensive scope of commercial and investment banking products and services to busin...Show moreLast updated: 26 days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

V3 StaffingIndia
Cybersecurity Specialist / Engineer Location : .We are looking for a highly skilled.This individual will be responsible for protecting the organization’s digital assets, designing secure systems, mon...Show moreLast updated: 30+ days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

ArcanaNagpur, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Analyst

Cyber Security Analyst

ConfidentialIndia
Functional responsibility : Who ensures all the security parameters of a network are intact at any given point in time.He analyses the security requirements of a new network or a network that requir...Show moreLast updated: 9 days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

Unified InfotechIndia
About Unified Embark on a transformative journey with Unified Infotech, a beacon of innovation and excellence in the tech consulting and software development landscape for over 14 years.We are dedi...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer with Splunk

Cyber Security Engineer with Splunk

IntraEdgeNagpur, Maharashtra, India
Position : Cyber Security Engineer (L3) Location : Remote Experience Level : 5+ Years Job Type : Full-time Job Summary : This role will lead the development and implementation of intelligent securi...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

YASH Technologiesnagpur, maharashtra, in
The AppSec Engineer is a specialized cybersecurity role focused on DevOps engineering principles.While the expectation of their sibling role – SAE – is to have practical working security knowledge,...Show moreLast updated: 23 days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

Obrimo TechnologiesIndia
Position : ServiceNow Specialist.We are looking for an experienced ServiceNow Specialist who can design, configure, and deliver robust ServiceNow solutions. This role involves working closely with cl...Show moreLast updated: 5 days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

Vista Applied Solutions Group IncNagpur, IN
Hiring Sr Cyber Security Engineer | Long Term Contract | Remote.Job Title : Sr Cyber Security Engineer – Product Security. Location : Mostly Indian business hours, some cross over with US and EU teams...Show moreLast updated: 7 days ago
  • Promoted
DigiHelic Solutions - Cyber Security Specialist

DigiHelic Solutions - Cyber Security Specialist

Digihelic Solutions Private LimitedIndia
Your role : Do you have the analytical skills and technical knowledge to ensure robust encryption and security practices in a global banking environment? Are you read...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

FlipkartIndia
Hi, We are hiring Cyber Security Engineers at Flipkart.Location - Bangalore Mode of work - Hybrid.JD : • Investigate, document, and report on information security issues and emerging threats.Provid...Show moreLast updated: 25 days ago
  • Promoted
Network Security Engineer

Network Security Engineer

RSECNagpur, IN
RSEC is a cybersecurity research and development company known for its advanced solutions and expert consultation services. We specialize in offering cutting-edge cybersecurity technologies to prote...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

SecNinjaz Technologies LLPIndia
Job Description for CISSP Profile with SecNinjaz Technologies LLP.Profile : Certified Information Systems Security Professional (CISSP) Number of Requirements : 01 Location of Deputation : New Delh...Show moreLast updated: 26 days ago
  • Promoted
  • New!
▷ (30 / 09 / 2025) Cyber Security Specialist

▷ (30 / 09 / 2025) Cyber Security Specialist

Obrimo TechnologiesIndia
Position : ServiceNow Specialist.We are looking for an experienced ServiceNow Specialist who can design, configure, and deliver robust ServiceNow solutions. This role involves working closely with cl...Show moreLast updated: less than 1 hour ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

Kalyani TechnologiesIndia
Overview : We are seeking an experienced and highly technical Cybersecurity Specialist to strengthen our security posture. The ideal candidate will have in-depth expertise in cybersecurity domains, h...Show moreLast updated: 7 days ago
  • Promoted
Cyber Security Specialist

Cyber Security Specialist

Zensar TechnologiesIndia
Primary skills - Cybersecurity, SOC, SIEM tool, EDR, IDS / IPS Exp - 6 to 12 years Location - Pune (Hybrid) NP - immediate joiners. Cybersecurity Operations and Incident response is a technical leader...Show moreLast updated: 17 days ago
  • Promoted
Cyber Security Analyst

Cyber Security Analyst

Madre Integrated EngineeringIndia
Job Role : As a Cyber Security Analyst, they will be responsible for safeguarding the digital infrastructure of our clients. Following the protocols and services put forward by global cybersecurity l...Show moreLast updated: 17 days ago
  • Promoted
Cyber Security Manager

Cyber Security Manager

CorroHealthIndia
Role Overview : The Manager will lead and manage 24x7 cybersecurity and SOC operations, ensuring round-the-clock protection of the organization's critical infrastructure. This role demands deep exper...Show moreLast updated: 30+ days ago