Web Application Security Expert

2 weeks ago


Bengaluru, India AXA Group Full time

Web Application Security Expert

Bangalore, Karnataka, India

Your role is to ensure that AXA XLs web applications are protected via the necessary security controls. This involves understanding our applications, their vulnerabilities (if any) and identifying the best methods to protect those applications. This could involve helping the developers securely code applications, development of WAF rules or the disablement of particular WAF rules from the application.

DISCOVER your opportunity

What will your essential responsibilities include?

·Assess applications for WAF applicability.

·Ensure web application firewalls are correctly configured and deployed.

·Build, maintain and operate current AXA XL processes for WAF deployment and operation.

·Educate the organization on web application protection strategies and implementations.

·Work with various stakeholders to build knowledge and ensure our applications are protected.

·Act as an intermediary between AXA teams to ensure security is appropriate for the risks we face, and the business can move forward in an agile way.

You will report to Global Head of Transversal Application Services.

SHARE your talent

We’re looking for someone who has these abilities and skills:

Required Skills and Abilities:

·Application Vulnerabilities: An understanding of vulnerabilities which can affect web applications.

·Web Application Firewall knowledge: Understanding of web application firewalls, deployment and usage strategies, mitigation strategies in order to aid.

·Web Application Firewall rules knowledge: Knowledge and experience in using rules within web application firewalls including knowledge of regular expressions and their usage in rules.

·Application Protection Strategies: Understanding of methods for protecting web applications without the need for a web application. ( secure password hashing, secure coding practices).

Desired Skills and Abilities:

·Negotiation Skills: The ability to negotiate with various parties to agree an approach that is successful for all parties.

·IT Service Management/ServiceNow Knowledge: Understanding of the processes of Service Management and Service Now to aid in developing tickets to support processes and procedures for WAF management.

·Penetration testing experience: Experience of the penetration testing practices particularly focused on web application testing and being able to understand the standard practices used for testing applications.

·Training & Awareness: The ability to educate and train parts of the organization about WAF’s and secure coding practices.

FIND your future

AXA XL, the P&C and specialty risk division of AXA, is known for solving complex risks. For mid-sized companies, multinationals and even some inspirational individuals we don’t just provide re/insurance, we reinvent it.

How? By combining a comprehensive and efficient capital platform, data-driven insights, leading technology, and the best talent in an agile and inclusive workspace, empowered to deliver top client service across all our lines of business − property, casualty, professional, financial lines and specialty.

With an innovative and flexible approach to risk solutions, we partner with those who move the world forward.

Inclusion & Diversity



  • Bengaluru, India AXA Group Full time

    Web Application Security Expert Bangalore, Karnataka, India Your role is to ensure that AXA XLs web applications are protected via the necessary security controls. This involves understanding our applications, their vulnerabilities (if any) and identifying the best methods to protect those applications. This could involve helping the developers...


  • Bengaluru, India RSA Security Full time

    Product Overview Outseer Fraud Manager is an advanced, omnichannel fraud detection hub that provides risk-based, multi-factor authentication for organizations seeking to protect their consumers from fraud across digital channels. Powered by the AI/ML based Risk Engine, Outseer Fraud Manager is designed to measure the risk associated with a user’s login...


  • Bengaluru, India RSA Security Full time

    Product Overview Outseer Fraud Manager is an advanced, omnichannel fraud detection hub that provides risk-based, multi-factor authentication for organizations seeking to protect their consumers from fraud across digital channels. Powered by the AI/ML based Risk Engine, Outseer Fraud Manager is designed to measure the risk associated with a user’s login...


  • Bengaluru, India YASH Technologies Full time

    Role: Application Security Architect This role is responsible for architecting, designing security controls for applications. The successful candidate will lead efforts to establish and improve secure Software development lifecycle (SDLC) activities and identify tools to integrate into the development process to assess the security of applications. When...


  • Greater Bengaluru Area, India YASH Technologies Full time

    Role: Application Security Architect This role is responsible for architecting, designing security controls for applications. The successful candidate will lead efforts to establish and improve secure Software development lifecycle (SDLC) activities and identify tools to integrate into the development process to assess the security of applications. When...

  • VAPT Pentester

    2 weeks ago


    Bengaluru, India NETSACH GLOBAL Full time

    Greetings from Netsach - A Cyber Security Company. We are looking for Web Application Security with 3 yrs of relevant experience and mandatory skills set are Web Application Security, Security Code review, API security, Underlying infrastructure security, Integration Security, Database Security, Secure Configuration Review. Job Title: Web Application...

  • VAPT Pentester

    2 weeks ago


    Bengaluru, India NETSACH GLOBAL Full time

    Greetings from Netsach - A Cyber Security Company. We are looking for Web Application Security with 3 yrs of relevant experience and mandatory skills set are Web Application Security, Security Code review, API security, Underlying infrastructure security, Integration Security, Database Security, Secure Configuration Review. Job Title: Web Application...


  • Greater Bengaluru Area, IN YASH Technologies Full time

    Role: Application Security Architect This role is responsible for architecting, designing security controls for applications. The successful candidate will lead efforts to establish and improve secure Software development lifecycle (SDLC) activities and identify tools to integrate into the development process to assess the security of applications. When...


  • Greater Bengaluru Area, India YASH Technologies Full time

    Role: Application Security Architect This role is responsible for architecting, designing security controls for applications. The successful candidate will lead efforts to establish and improve secure Software development lifecycle (SDLC) activities and identify tools to integrate into the development process to assess the security of applications. When...

  • Application Security

    2 weeks ago


    Bengaluru, Karnataka, India Dezerv Full time ₹ 10,00,000 - ₹ 25,00,000 per year

    About Dezerv :Dezerv is a house of investing solutions for high-net-worth and affluent Indians. Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth management businesses and managed over USD 7 billion in assets. The Dezerv team brings together decades of investing expertise from leading global...