See more Collapse

[26/05/2024] Application Security Technical Project Manager

1 month ago


Delhi, India YASH Technologies Full time
Job Description

YASH is a Digital services enabler organization delivering vast portfolio of digital services to customers across the globe. Our topline services include Cybersecurity services. We are looking for a candidate with strong security testing skills pertaining to Application Security Testing. This role will be part of vibrant YASH’s Cybersecurity – Application Security services team.

As an Apps Sec Expert, you will be responsible for assessing the security of different types of applications developed in client environment. Work with development teams or vendors to detect, prioritize and remediate security flaws within the applications. Collaborate with IT and the business to identify and implement appropriate software development related security controls.

Location: Pune, Bangalore, Hyderabad, Indore

Total Experience: 12 -15 Years

Key responsibilities

- risk analysis and define prevention and mitigation controls for application vulnerabilities- mitigation strategies for applications from infrastructure, architecture and secure coding perspectives.- application security scanning tools, interpret reports and validate identified vulnerabilities and associated risks- a group of application security team performing security and data privacy assessments on applications.- the execution of application qualification processes (cybersecurity, data privacy, trade controls, network and legal) with associated

Perform risk analysis, classification and prioritization of applications that will go through the required qualification processes.

- with applications stakeholders on qualification processes request, planning, and execution.- qualification processes reports, validate identified non-compliances and associated risks and follow-up on their remediation and mitigation.- onboarding applications on Cybersecurity Operation Center monitoring and Vulnerability Scanning.- awareness to application engineering teams on security by design training, threat modeling, DevSecOps practices, and security scanning automation in the CI/CD pipeline.- as SME on various topics related to integration of software systems, applications and system security qualifications, risk management, compliance, and pen testing. Explain all vulnerabilities and weaknesses in the OWASP Top 10, WASC TCv2, and CWE 25 to application development teams or application vendor, and discuss effective defensive techniques- mitigation strategies for applications from infrastructure, architecture and secure coding perspectives.- application security scanning tools, interpret reports and validate identified vulnerabilities and associated risks

Qualifications:

- Master’s Degree (IT, Computer Science, Cybersecurity, Telecommunications, Engineering, etc.)- 12 years equivalent experience- in project management of cybersecurity projects (planning, coordination, communication, etc.)- of application security assessment, penetration testing, threat modeling, security by design and DevSecOps best practices- understanding of risk management principles and frameworks- of and experience with various software development models like Waterfall, Agile, SBG, etc.- of data privacy and data protection- of common Web Application vulnerabilities like XSS, CSRF, and others.- with security certifications and guidelines like SOC2 Type2, ISO, NIST, etc.- of networks, operating systems, and applications architecture.- with cloud technologies (IaaS, PaaS, SaaS, containers) on Google, Azure, and AWS environment bachelor’s or master’s Degree (IT, Computer Science, Cybersecurity, Telecommunications, Engineering, etc.)- information security certification (CSSLP, CISM, CEH, CISSP, GPEN, GWAPT, OSCP or similar)- with software penetration testing, architectural risk assessment, threat modelling, static code analysis and secure code review- with network penetration testing, firewalls configuration, network architecture and security- in manual penetration testing of websites, APIs and networks using a variety of tools and technologies- in testing network isolation, escalation of privileges, authentication, expanding the attack surface and exploiting vulnerabilities- with mobile application security testing on iOS and Android platforms- securing applications on a myriad of platforms and languages including Java, .Net, Angular, etc.- in OS hardening on Windows and Linux environments- with a variety of testing tools, including HCL AppScan, Burp Pro Suite, Veracode, Qualys Suite, NMAP, Metasploit, Kali Linux, Wireshark and OWASP ZAP.- understanding of networks, operating systems and data-center architecture.- with cloud technologies (IaaS, PaaS, SaaS, containers) on Google, Azure and AWS environments- performing Red Team, Blue Team Operations is a strong plus.

We have other current jobs related to this field that you can find below


  • Delhi, India tsworks Full time

    Job Descriptiontsworks Technologies India Private Limited is a technology products and services company based out of Bangalore, India. We are a subsidiary of The Software Works, Inc, USA. Our mission is to adopt, challenge and set the best practices in Information Technology. At tsworks Technologies India Private Limited, we value our employees, take pride...


  • Delhi, Delhi, India YASH Technologies Full time

    Job DescriptionYASH is a Digital services enabler organization delivering vast portfolio of digital services to customers across the globe. Our topline services include Cybersecurity services. We are looking for a candidate with strong security testing skills pertaining to Application Security Testing. This role will be part of vibrant YASH's Cybersecurity...


  • delhi, India YASH Technologies Full time

    Job DescriptionYASH is a Digital services enabler organization delivering vast portfolio of digital services to customers across the globe. Our topline services include Cybersecurity services. We are looking for a candidate with strong security testing skills pertaining to Application Security Testing. This role will be part of vibrant YASH’s Cybersecurity...


  • Delhi, Delhi, India YASH Technologies Full time

    Job DescriptionYASH is a Digital services enabler organization delivering vast portfolio of digital services to customers across the globe. Our topline services include Cybersecurity services. We are looking for a candidate with strong security testing skills pertaining to Application Security Testing. This role will be part of vibrant YASH's Cybersecurity...


  • delhi, India Security Lit Full time

    Job Description:Join the forefront of cybersecurity innovation at Security Lit! We're on the hunt for a dynamic Application Security (AppSec) Manager Lead to steer our Information Security Team. This pivotal role focuses on Vulnerability Assessment and Penetration Testing within the BFSI sector. You’ll be leading a spirited team spread across the UK,...

  • Project Supervisor

    2 weeks ago


    Delhi, Delhi, India Apee Eskay Enterprises Pvt Ltd Full time

    **Job Summary** *STRUCTURED CABLING/TELECOM PROJECT Engineer - Immediate need - FOREPERSON - SECURITY SYSTEMS ESTIMATOR Our focus is Voice-Data-Wireless (with an emphasis on Data Centers). Our Business is the Structured Cabling Division of AVI-SPL, and we take advantage of the migration of IP into everything that touches a, Server, Switch, PC, or phone. STP,...

  • Accounts Receivable

    2 weeks ago


    Delhi, India ManpowerGroup Full time

    Description: Good exposure in AR & AP. Good exposure in invoice processing, generating bills & bank deposit. Reconcilliation. General ledger QA Engineer Posted on 23-02-2024 07 :12:26 - Noida, Uttar Pradesh, India - WFO Job Details Project Manager Posted on 23-02-2024 07 :12:17 - Surat, Gujarat, India - WFO Job Details Digital Marketing...


  • Delhi, Delhi, India ZION DIGITAL TECHNOLOGIES.PVT. LTD. Full time

    **Job Description Example/ Customer Service Executive** - Handling with team of Engineers & resolve technical / other issues related to field. - Regular calling to existing Customers For generate the sale - Closing the calls by attaching service reports - AMC report renewal and creation - Invoicing for service, contract and project module - Closure of...


  • Delhi, India Assystem Full time

    Assystemis an independent engineering group based in Paris. It provides services in design, construction, supervision, commissioning and operation of complex projects and industrial infrastructure, mostly in the nuclear industryJob Description- ASSYSTEM Job: Project Management- Position -Full-time- Type of contract ASSYSTEM: Permanent- ASSYSTEM Sector:...


  • Delhi, Delhi, India Delhivery Full time

    We are in search of a highly skilled Technical Lead to join our dynamic and expanding team. As a Technical Lead, your main role will involve leading a team of developers in crafting software solutions that cater to our clients' requirements. You'll collaborate closely with project managers, designers, and stakeholders to ensure projects are delivered...

  • Team Coordinator

    2 weeks ago


    Delhi, India ManpowerGroup Full time

    Description: Managing Appointments and meetings for leaders and teams Preparing basic Reports/PPTs as per Business and leader's needs. Support in business travel documentation for HODs Visitor Registration (visitor card, etc.) Support visitors in arrangement of TFT, Sim, Phone, Wi-fi etc. Managing Conference Rooms booking Updating notice boards Lunch...

  • Treasury

    2 weeks ago


    Delhi, India ManpowerGroup Full time

    Description: - Assist the Treasury Managerin the following tasks of the Treasury function - o Cash management - Liquidityp1anning and control - Management of Investments in Mutual funds and Fixed deposits - Contacts with banks and rating agencies - Corporate finance - Banking relationship - Imp1ement best practices - Assist in preparing data...

  • Process Coordinator

    7 days ago


    Azadpur, Delhi, Delhi, India IC COSMO INDIA PVT LTD Full time

    Assist in creating new and revised policies and procedures - Create, maintain and enhance Excel reports/audits to ensure compliance with federal laws and company guidelines in order to minimize losses and legal concerns - Manage and update visual management in support of the company’s well-managed imperativeAdvocate for high quality execution and process...


  • Delhi, Delhi, India Tech Archie Full time

    We are looking for a Content Writers (English) to join our team and enrich our websites. - **Responsibilities**_ - Write clear marketing copy to promote our products/services - Prepare well-structured drafts using Content Management Systems - Proofread blog posts before publication - Coordinate with marketing and design teams to illustrate articles - Use SEO...

  • Project Coordinator

    2 months ago


    Delhi, India Project Banao Full time

    Project Banao is the leading service provider in the Art & Design industry. It helps students and professionals in completing their assignments. Major services include CBSE/ICSE Projects, Thesis Writing, Internship Reports, Dissertations, Programming, Fine Arts, Graphic Design, and whatnot. **We are looking for a 'Project Coordinator or Project Head' in our...

  • Travel Executive

    6 days ago


    Delhi, Delhi, India PNM TRAVELLING.COM Full time

    **1)** **Air ticketing (Domestic & Foreign)** **2)** **Hotel package** **3)** **Customer co-ordination** Pay: ₹10,000.00 - ₹15,000.00 per month **Experience**: - total work: 1 year (preferred) Expected Start Date: 26/05/2024


  • Delhi, India Project Management Institute Full time

    Project Management Certification Developer, IndiaIndia ● Virtual Req #516 Tuesday, May 14, 2024Are you a dreamer, innovator, thinker and a do-er who believes in contributing to something that makes difference?Pursue your passion. Join PMI.How You’ll Make a DifferenceThe Project Management Certification Developer is a critical role that combines Subject...


  • Delhi, Delhi, India TAC Security Full time

    Job Title: Senior Security Engineer - VAPTLocation: Pune, IndiaCompany DescriptionTAC Security is a global leader in vulnerability management that specializes in protecting Fortune 500 companies, leading enterprises, and governments worldwide. With its AI-based Vulnerability Management Platform ESOF (Enterprise Security in One Framework), TAC Security...


  • Delhi, Delhi, India 3M Consultancy Full time

    Job DescriptionJob Title: Technical Project ManagerLocation:Santa Barbara County, CADuration:Full-Time.Secret Clearance required.Our client is looking for a Senior Program Manager for an exceptional opportunity to join in establishing and growing a new services practice within a technology leader. Our client's team is expanding an already successful...


  • Delhi, Delhi, India RAFA International Pvt Ltd Full time

    Face 2 Face client interviews are ongoing for Aramco Project. **#SaudiAramco** | **#Hiring** | Contact: +91 9560594466 Job Title: Vibration Technician **Salary**: Negotiable Interview Type: Face-to-Face Client Interview (Ongoing) Location: Aloft Hotel, Aero City, New Delhi. Role Summary: The Vibration Technician will be responsible for the analysis...