Applications Security Lead

1 week ago


Gurgaon, Haryana, India Egon Zehnder Full time
The Company

Egon Zehnder ( is trusted advisor to many of the world's most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa.

Our clients range from the largest corporations to emerging growth companies, government and regulatory bodies, and major educational and cultural institutions.

The firm is a private partnership which allows us to operate independent of any outside interests.

As a result of this unique culture, Egon Zehnder has the highest professional staff retention rate for a global firm in our profession.

We have a blue-chip client base across all industries and operate at the Board and senior management level.

Knowledge Centre India (KCI) :

  • Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder.

There are 5 teams that make up KCI:
Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT.

Your Journey at Egon Zehnder Starts Here :

At EZ, you have the opportunity to deliver digital transformation initiatives across the globe for the organization.

Our focus on emerging technology solutions along with our commitment to internal career growth and exceptional client value has resulted in a firm that is routinely recognized as a "Best Place to Work.

"

Who we are :


We are part of Digital-IT team established 14 years ago in Gurgaon, India to provide technology support and rollout digital initiatives to 60 plus global offices.

Digital IT has six key pillars - Collaboration Technology; Functional Technology; Digital Technology; Security & Architecture; Infrastructure & Services, Digital Success to support business and to take lead on digital transformation initiatives with the total strength of 150+ team members across the globe.


Job Description :


Be a part of the application security team as a team lead and work closely with the Application Development team to ensure that any software developed or acquired meets the stringent- standards while enabling rapid innovation to meet our firm and clients' everchanging needs.


Successful candidates will be security evangelists who can translate security concepts into language that is meaningful to many audiences, including business and technical leaders and individual contributors.


Candidates must be able to approach application security from the perspective of risk management and avoid purely academic thinking about software security.

Demonstrable ability to influence decision- making processes at all levels of a large organization will be critical to success.

Responsibilities :


As an application security team lead, your role revolves around ensuring the security of software applications developed within your organization.

Here's a breakdown of the key responsibilities typically associated with this role:

Team Management :

  • Lead a team of application security professionals, including security engineers and analysts.
  • Provide guidance, mentorship, and support to team members, fostering their professional development and growth.
  • Coordinate team activities, prioritize tasks, and allocate resources effectively to meet security objectives.

Security Strategy and Roadmap :

  • Develop and implement a comprehensive application security strategy aligned with organizational goals and industry best practices.
  • Define security standards, policies, and procedures specific to application development and deployment.
  • Establish a roadmap for enhancing the security posture of applications over time, considering emerging threats and technologies.

Security Assessment and Testing :

  • Oversee the assessment and testing of applications for security vulnerabilities throughout the software development lifecycle (SDLC).
  • Conduct or coordinate security reviews, code reviews, and penetration testing to identify and remediate security weaknesses.
  • Collaborate with development teams to integrate security testing tools and processes into their workflows.

Security Awareness and Training :

  • Promote awareness of application security risks and best practices among development teams, stakeholders, and other relevant parties.
  • Deliver or facilitate training sessions and workshops on secure coding practices, vulnerability management, and related topics.
  • Foster a culture of security consciousness and accountability across the organization.

Compliance and Regulatory Compliance :

  • Ensure that applications comply with relevant security standards, regulations, and industry certifications (e.g., OWASP, PCI DSS, GDPR).
  • Collaborate with compliance teams to assess and address security requirements imposed by regulatory bodies or contractual obligations.
Vendor and Third-Party Risk Management :

  • Assess the security posture of thirdparty applications, libraries, and services used within the organization's environment.
  • Establish and maintain processes for evaluating and managing the security risks associated with thirdparty software components.

Continuous Improvement and Innovation :

  • Monitor industry trends, emerging threats, and evolving security technologies to continuously improve the effectiveness of application security practices.
  • Identify opportunities for innovation and automation to streamline security processes and enhance the efficiency of security operations.

Skills :

  • Prior work experience in application security is mandatory.
  • Should have solid experience in Penetration testing.
  • Candidates must have strong leadership skills.
  • Candidates must have excellent verbal and written communication skills.
  • Candidates should be familiar with waterfall and agile development processes and have experience integrating secure development practices into both models.
  • Familiarity with a variety of development and testing tools
  • Candidates must be able to explain all vulnerabilities and weaknesses in the OWASP Top 10, WASC TCv2, and CWE 25 to any audience and discuss effective defensive techniques.
  • Familiarity with industry standards and regulations including PCI, FFIEC, SOX, and ISO27001 is desired.
  • Experienced in tools like Snyk, Tenable WAS, Invicti, Burp suite, Postman, kali linux
  • Experience in conducting Threat Modelling using STRIDE, PASTA etc

Experience :
At least 6 years of relevant experience

  • Should be willing to support and be available during nonworking hours in case of emergency situations.

Benefits which make us unique :
At EZ, we know that great people are what makes a great firm. We value our people and offer employees a comprehensive benefits package. Learn more about what working at Egon Zehnder can mean for you

Benefits Highlights :

  • 5 Days working in a Fastpaced work environment.
  • Work directly with the senior management team
  • Reward and Recognition
  • Employee friendly policies
  • Personal development and training
  • Health Benefits, Accident Insurance
Potential Growth for you

We will nurture your talent in an inclusive culture that values diversity.

You will be doing regular catchups with your manager who will act as your career coach and guide you in your career goals and aspirations.


Location :
The position is based at Egon Zehnder's KCI office in Gurgaon, Plot no. 29, Institutional Area Sector 32

EZ Commitment to Diversity & Inclusion :
Egon Zehnder aims for a diverse workplace and strives to continuously lead with our firm values.

We respect personal values of every individual irrespective of race, national or social origin, gender, religion, political or other opinion, disability, age and sexual orientation as warranted by basic rights enshrined in the UN Declaration of Human Rights.

We believe diversity of our firm is central to the success and enables us to deliver better solutions for our clients.

We are committed to creating an inclusive environment and supportive work environment, where everyone feels comfortable to be themselves and treated with dignity and respect and there is no unlawful discrimination related to employment, recruitment, training, promotion, or remuneration.


Egon Zehnder is an Equal Opportunity Employer :
Egon Zehnder provides equal employment opportunities to all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, disability, or any other legally protected status and to affirmatively seek to advance

)

  • Gurgaon, Haryana, India Egon Zehnder Full time

    The Company Egon Zehnder ) is trusted advisor to many of the world's most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies, government...


  • Gurgaon, Haryana, India Ciena Corporation Full time

    Join Ciena, a company that prioritizes its people-first philosophy. Be part of a team that values a personalized and flexible work environment, empowering individual growth, wellbeing, and a sense of belonging. Ciena is a technology company that intertwines business priorities with meaningful social impact.Discover More About Ciena:We strongly advocate for...


  • Gurgaon, Haryana, India Partech Full time

    Hi there We're PAR and our purpose is: To deliver solutions that connect people to the restaurants, meals and moments they love. We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we're calling all rebels, instigators, idealists and builders to join our constantly growing team PAR...


  • Gurgaon, Haryana, India Airtel India Full time

    Someone who is familiar with OWASP/SANS standardsExperience in using automated and manual testing tools (Burp Suite Pro, Appscan, NMAP, Acuentix etc.)Good hands-on experience with Application Security Assessment tools both static and dynamic like Veracode, Fortify, WebInspect, CodeSecure, AppScan, Burp, CoverityPerforming security testing over APIsAbility to...


  • Gurgaon, Haryana, India SHL Full time

    Job Description SHL is seeking a Cyber & Application Security Manager with experience in cloud security, application security, network security, security operations and overall cyber security programs. Reporting to the Chief Information Security Officer & SVP of IT, this individual will be responsible for driving the cyber, cloud, and network security...


  • Gurgaon, Haryana, India Cvent Full time

    Overview: Cvent's Information Security team seeks Application Security Engineer II to support delivery of secure cloud-based software platforms and applications. As an Application Security Engineer II, you will closely partner with Cvent product, engineering, and the application security team.You will be responsible for applying your cloud and web...


  • Gurgaon, Haryana, India GEMINI Full time

    Department : Information Security In the emerging industry of digital assets, there is nothing more important than trust. The Gemini security team forms the backbone of trust. In fact, Gemini's very first hires were security specialists and we continue to tackle unique challenges in the crypto space. Our team ensures that our customers, clients, and...


  • Gurgaon, Haryana, India Kyndryl Full time

    Who We AreAt Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.The Role...


  • Gurgaon, Haryana, India Kyndryl Full time

    Who We AreAt Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.The Role...


  • Gurgaon, Haryana, India 5100 Kyndryl Solutions Private Limited Full time

    Who We Are At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The...


  • Gurgaon, Haryana, India Cvent Full time

    Overview:Cvent is a leading meetings, events, and hospitality technology provider with more than 4,800 employees and ~22,000 customers worldwide, including 53% of the Fortune 500. Founded in 1999, Cvent delivers a comprehensive event marketing and management platform for marketers and event professionals and offers software solutions to hotels, special event...


  • Gurgaon, Haryana, India Cvent Full time

    Overview:Cvent is a prominent player in the meetings, events, and hospitality technology industry, boasting a global team of over 4,800 professionals and servicing around 22,000 clients worldwide, a significant portion of which are Fortune 500 companies. Established in 1999, Cvent provides a robust event marketing and management platform for marketers and...


  • Gurgaon, Haryana, India Cvent Full time

    Overview: Cvent is a leading meetings, events, and hospitality technology provider with more than 4,800 employees and ~22,000 customers worldwide, including 53% of the Fortune 500.Founded in 1999, Cvent delivers a comprehensive event marketing and management platform for marketers and event professionals and offers software solutions to hotels, special event...


  • Gurgaon, Haryana, India Egon Zehnder Full time

    Egon Zehnder ​Egon Zehnder ( is trusted partner to many of the world's most respected organizations and is a leading leadership advisory firm, with more than 560+ consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies,...


  • Gurgaon, Haryana, India Egon Zehnder Full time

    Egon Zehnder​Egon Zehnder ) is trusted partner to many of the world's most respected organizations and is a leading leadership advisory firm, with more than 560+ consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies,...


  • Gurgaon, Haryana, India Skillventory Full time

    Information Security with a leading NBFC:From 4 to 8 year(s) of experience- ₹ Not Disclosed by Recruiter Gurgaon/GurugramorRoles and ResponsibilitiesKey Responsibilities: Learns about business initiatives, products, and attack surfaces to drive relevant security- detections Architect, and deploy security solutions, and tools for Application and Public...


  • Gurgaon, Haryana, India S&P Global Full time

    About the Role:Grade Level (for internal use): 05Role Overview: This is an Apprentice role for college graduates for an 11-month fixed programKey Responsibilities:Participate in the deployment, configuration, and maintenance of security tools and technologies to enhance the organization's security posture.Conduct vulnerability assessments and penetration...


  • Gurgaon, Haryana, India Antal International Full time

    Job Title- Lead Safety and Security (Heritage Grade) Location- Mumbai or Gurugram Purpose: The purpose of this role is to lead and ensure the effective implementation of Environmental Health & Safety Standards (EHSS) across India, fostering a culture of safety, security, and environmental sustainability. Role and responsibilities: Lead and actively engage...


  • Gurgaon, Haryana, India Experis IT Private Limited Full time

    Roles & responsibilities : Should have complete understanding and handson experience on IT security maintenance and monitoring, patching, desktop/laptop, onpremises networking, Firewalls, VPN, IT and compliance policies etc. Should be able to manage and develop endtoend IT security policies, rules and regulations, related training and awareness programmes in...


  • Gurgaon, Haryana, India Colt Technology Services Full time

    Colt provides network, voice and data centre services to thousands of businesses around the world, allowing them to focus on delivering their business goals instead of the underlying infrastructure. Short Description Job ID Job Title - Technical Lead, Security Operations Location- Gurgaon/ Bangalore Reports To - Customer Security Operations...