Come work at a place where innovation and teamwork come together to support the most exciting missions in the world!.
Appsec team in Qualys looking for web application security to be part of Application Security team which provides state-of-art automated web app security scanning for customers.
You will test vulnerable web applications, API, develop, deploy vulnerable web applications, analyze vulnerability reports to verify false positives and false negatives.
The position is a Pune based position and will require working with a team of engineers in Pune and the US.
Responsibilities :
- Solid working knowledge of DAST tools.
- Understanding of UNIX environment, and UNIX command line.
- Analyze web application security scanner reports and validate false positives and false negatives
- Understanding of OWASP top 10 vulnerabilities.
- Develop scripts to automate manual tasks in python, shell as required.
- Analyze server logs
- Analyze requests and responses in TCP / UDP protocols.
- Strong network layer understanding.
- Use of Burp, Kali or other security tools.
- Understanding of working with APIs and experience with Postman tool.
- Installation, configuration of web servers, Kubernetes and Docker systems.
- Knowledge of PCI DSS preferred.
Required skills :
3+ years of experience in web applications securityHands on experience with web applications security scanning tools like Burp / Zap, SQLMap, curl / wget, HTTP ProxyKnowledge of HTTP protocol (Requests, responses, Cookies etc)Experience with network analysis tools, analysis of packet captureUnderstanding and crafting of regular expressionsExposure and understanding around selenium scriptsUnderstanding of web application vulnerabilities, OWASP topStrong analytical and problem-solving skills.Understanding of HTML / DOM, XML, CSS, Javascript and Javascript frameworks like JQuery, AjaxDatabase / SQL knowledge.Strong attention to detailsPassion for web securityStrong communication and team-work skillsAbility to work independently and self-learner.(ref : hirist.tech)