Web Application Security Expert
Bangalore, Karnataka, India
Your role is to ensure that AXA XLs web applications are protected via the necessary security controls. This involves understanding our applications, their vulnerabilities (if any) and identifying the best methods to protect those applications. This could involve helping the developers securely code applications, development of WAF rules or the disablement of particular WAF rules from the application.
DISCOVER your opportunity
What will your essential responsibilities include?
- Assess applications for WAF applicability.
- Ensure web application firewalls are correctly configured and deployed.
- Build, maintain and operate current AXA XL processes for WAF deployment and operation.
- Educate the organization on web application protection strategies and implementations.
- Work with various stakeholders to build knowledge and ensure our applications are protected.
- Act as an intermediary between AXA teams to ensure security is appropriate for the risks we face, and the business can move forward in an agile way.
You will report to Global Head of Transversal Application Services.
SHARE your talent
We’re looking for someone who has these abilities and skills :
Required Skills and Abilities :
Application Vulnerabilities : An understanding of vulnerabilities which can affect web applications.Web Application Firewall knowledge : Understanding of web application firewalls, deployment and usage strategies, mitigation strategies in order to aid.Web Application Firewall rules knowledge : Knowledge and experience in using rules within web application firewalls including knowledge of regular expressions and their usage in rules.Application Protection Strategies : Understanding of methods for protecting web applications without the need for a web application. ( secure password hashing, secure coding practices).Desired Skills and Abilities :
Negotiation Skills : The ability to negotiate with various parties to agree an approach that is successful for all parties.IT Service Management / ServiceNow Knowledge : Understanding of the processes of Service Management and Service Now to aid in developing tickets to support processes and procedures for WAF management.Penetration testing experience : Experience of the penetration testing practices particularly focused on web application testing and being able to understand the standard practices used for testing applications.Training & Awareness : The ability to educate and train parts of the organization about WAF’s and secure coding practices.FIND your future
AXA XL, the P&C and specialty risk division of AXA, is known for solving complex risks. For mid-sized companies, multinationals and even some inspirational individuals we don’t just provide re / insurance, we reinvent it.
How? By combining a comprehensive and efficient capital platform, data-driven insights, leading technology, and the best talent in an agile and inclusive workspace, empowered to deliver top client service across all our lines of business − property, casualty, professional, financial lines and specialty.
With an innovative and flexible approach to risk solutions, we partner with those who move the world forward.
Inclusion & Diversity