Talent.com
Information Security Engineer - Penetration Testing

Information Security Engineer - Penetration Testing

hashone CareersBangalore
1 day ago
Job description

Description : Security Specialists are instrumental in fortifying the security framework that underpins the software delivery processes of our clients. These experts thrive in collaborative settings, engaging with diverse teams across various disciplines to pinpoint and mitigate vulnerabilities in code, systems architecture, and infrastructure. With a profound technical acumen rooted in security practices and a keen understanding of agile methodologies, they advocate for security integration as a fundamental aspect of software development.

Their work transcends mere compliance; it is about embedding a culture of security that aligns with agile and DevOps philosophies, ensuring that security measures enhance, rather than hinder, organisational objectives. By guiding teams and clients through the nuances of security Automation and best practices, Application Security Specialists not only safeguard digital assets but also champion a mindset where security and development go hand in hand towards achieving superior :

  • As an Application Security Specialist, you will play a crucial role in enhancing our software delivery process's security posture.
  • Embed security throughout the software delivery lifecycle, ensuring secure application development from start to finish.
  • Build and define comprehensive security practices tailored to our delivery methodologies.
  • Automate and optimise security measures in line with the application lifecycle, ensuring efficient and effective security protocols.
  • Serve as a consultant and advisor to both the delivery team and clients, providing expert guidance on security best practices and risk mitigation strategies.
  • Work closely with delivery, DevOps and Cloud teams to identify and reduce risks associated with code development, system architecture, and :
  • Preferred to have BFSI experience.
  • Experience as a security engineer with direct involvement in working with delivery teams to identify vulnerabilities in code and systems architecture.
  • Demonstrated experience with implementing security automation and familiarity with agile development methodologies.
  • Ability to collaborate effectively with software product delivery teams, speaking their language and working towards common goals.
  • In-depth knowledge and experience with OWASP and SANS standards.
  • Proficiency in manual and automated penetration testing tools and techniques.
  • Experience with SAST, DAST, Dependency checking, and container vulnerability assessment tools such as Checkmarx, Burp, ZAP, Fortify, Trivy, etc.
  • Knowledge and experience in password / secret management tools and techniques.
  • Understanding of DevSecOps and experience in security automation.
  • Comprehensive understanding of web technologies, common web frameworks, their vulnerabilities, and mitigations.
  • Basic understanding of firewall, virtualisation, containers, networking, and OS security.
  • Knowledge of cloud security best practices and basic knowledge of cloud providers like AWS, Azure and GCP.
  • Excellent communication and interpersonal skills, with the ability to manage relationships at senior levels of leadership.
  • Strong consulting skills, including the ability to promote security awareness and influence decision-making.
  • Ability to anticipate problems and understand the long-term implications of decisions and actions.
  • Experience in developing security testing plans and integrating them into the software development lifecycle.
  • Experience with manual and automated security code review.
  • Basic knowledge of security policies and standards such as PCI-DSS, ISO 27001 (ISMS), and GDPR.

(ref : hirist.tech)

Create a job alert for this search

Information Security Engineer • Bangalore

Related jobs
  • Promoted
  • New!
Information Security Engineer

Information Security Engineer

MindsprintBengaluru, Karnataka, India
The Factory (ICS / OT) Security Lead Engineer will be responsible for the Security Risk assessment and implementation of Factory Security Program and Practices for Mindsprint Customers.This position...Show moreLast updated: 21 hours ago
  • Promoted
Security (DevSecOps)and QA (Automation)

Security (DevSecOps)and QA (Automation)

PioVation GmbHhosur, tamil nadu, in
If you care about European-grade safety, quality, and compliance, read on.Senior Security Engineer (DevSecOps).Application & cloud security (threat modeling, secure SDLC).Kubernetes security (netwo...Show moreLast updated: 18 days ago
  • Promoted
Senior Engineer - Information Security

Senior Engineer - Information Security

IBS SoftwareBengaluru, Karnataka, India
Bangalore / Trivandrum / Cochin / Chennai.We are seeking a highly skilled and motivated Lead Offensive Security Engineer with 4–6 years of hands-on experience in offensive security and red / purple team en...Show moreLast updated: 5 days ago
  • Promoted
Cyber Security Engineer-I (Mandatory 2-4 years experience with Sailpoint and AWS IAM)

Cyber Security Engineer-I (Mandatory 2-4 years experience with Sailpoint and AWS IAM)

FICOBengaluru, Karnataka, India
Hybrid mode (Mandatory 3days WFO).The Security Engineer is a highly visible and critical role, collaborating on complex cloud and corporate service edge protection technologies and oversight.With y...Show moreLast updated: 8 days ago
  • Promoted
Information Security Engineer III

Information Security Engineer III

ConfidentialBengaluru / Bangalore, India
SurveyMonkey is the world's most popular platform for surveys and forms, built for business—loved by users.We combine powerful capabilities with intuitive design, effectively serving every use case...Show moreLast updated: 22 days ago
  • Promoted
Lead Information Security Engineer

Lead Information Security Engineer

ConfidentialBengaluru / Bangalore
Security Architecture and Strategy : .Design, implement, and maintain enterprise security architecture; develop and enforce security policies, standards, and best practices; evaluate and implement se...Show moreLast updated: 13 days ago
  • Promoted
  • New!
Zscaler

Zscaler

Tata Consultancy ServicesGreater Bengaluru Area, India
Role : Level 3 Zscaler Technical Specialist.Required Technical Skill Set : Zscaler- ZIA, ZPA, ZDX and ZTE.Provide L3 security infrastructure operations support including Firewall Filtering, SSL inspe...Show moreLast updated: 11 hours ago
  • Promoted
Security Compliance Engineer

Security Compliance Engineer

ImageKit.iohosur, tamil nadu, in
As long as you have a stable internet connection, you can work from anywhere in the world.We do meet up if you are in Delhi NCR or on our company trips. Have you ever ordered with Swiggy or BigBaske...Show moreLast updated: 2 days ago
  • Promoted
Security Engineer

Security Engineer

InfogainBengaluru, Karnataka, India
Title : Security Engineer (6+ Years).Use CrowdStrike reports to evaluate all security vulnerabilities on both Windows and Linux systems. Analyze the requirements to remediate the security vulnerabili...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Product Security Tester

Product Security Tester

Festo IndiaGreater Bengaluru Area, India
Festo is establishing a Product Security Testing team in India, and we are looking for highly motivated Product Security Engineers with experience in security testing, particularly in the domain of...Show moreLast updated: 11 hours ago
  • Promoted
  • New!
Proofpoint Email security Engineer

Proofpoint Email security Engineer

Tata Consultancy ServicesGreater Bengaluru Area, India
Proofpoint Email security Engineer (L3).Bachelor’s degree in computer science.Information Technology, Cybersecurity, or a related field. Proofpoint Email Security solutions.Strong understanding of e...Show moreLast updated: 11 hours ago
  • Promoted
Product Security Engineer II

Product Security Engineer II

FICOBengaluru, Karnataka, India
Join our world-class team today and fulfill your career potential!.As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of customer-facing ...Show moreLast updated: 30+ days ago
  • Promoted
Security Engineer III

Security Engineer III

CME GroupBengaluru, Karnataka, India
The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application securi...Show moreLast updated: 2 days ago
  • Promoted
Senior Cloud Security Specialist

Senior Cloud Security Specialist

ACL Digitalhosur, tamil nadu, in
We are a leading organization in the field of information security, dedicated to protecting our clients' data and ensuring their digital safety. Our mission is to provide innovative security solutio...Show moreLast updated: 17 days ago
  • Promoted
Information Security Engineer 1

Information Security Engineer 1

ConfidentialBengaluru / Bangalore
PowerSchool is hiring a Security Operations Center Associate Analyst.This position is reporting to the Security Operation Center Manager and is part of the 24x7 Security Operations Center team.This...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
C&S Infrastructure Security Engineer

C&S Infrastructure Security Engineer

Tata Consultancy ServicesGreater Bengaluru Area, India
C&S Infrastructure Security Engineer – Windows server OS and Mac OS.Windows OS, Mac Os Developer, server.Windows Server OS and Mac OS environment. Hands-on experience in analyzing, testing and imple...Show moreLast updated: 11 hours ago
  • Promoted
AI Security Lead

AI Security Lead

Delphi Consulting Middle Easthosur, tamil nadu, in
Join Delphi - Where Innovation meets transformation.At Delphi, we believe in creating an environment where our people thrive. We are committed to supporting your personal goals, family, and overall ...Show moreLast updated: 2 days ago
  • Promoted
  • New!
Security Operations Engineer

Security Operations Engineer

ITPeopleNetworkhosur, tamil nadu, in
We are looking for a junior to mid-level.Saviynt Identity Access Management (IAM / IGA).CyberArk Endpoint Privilege Manager (EPM). The ideal candidate will assist in user access governance, email thre...Show moreLast updated: 22 hours ago