Appscan product _lead security expert _remote location

2 weeks ago


Palakkad, India HCLSoftware Full time

Greetings from “HCL Software” Is a Product Development Division of HCL Tech "HCL Software”: - Is a Product Development Division of HCL Tech: That operates its primary Software Business. At HCL Software we Develop, Market, Sell and Support over 20 Product families in the areas of Customer Experience, Digital Solutions, Secure Dev Ops, Security & Automation. About App Scan Product: -"HCL App Scan" is a comprehensive suite of Application Security Solutions for developers, Dev Ops, security teams and CISOs, with on-premises, on cloud, and hybrid deployment options. The suite includes various security tools that offer features such as vulnerability scanning, code analysis, and real-time threat detection, providing significant benefits in protecting software applications throughout their lifecycle. Office Location: HCL Software, Bangalore. Work Preference: Hybrid Or Remote. Job Summary : - We are looking for a Lead Security Expert with 10+ Yrs experience in our App Scan Product team who possess the following skills: Key responsibilities include: - - Discovering new vulnerabilities in application source code. - Developing automatic vulnerability detection procedures. - Demonstrating familiarity with at least one programming language (e.g., Java, C/C++,. NET) and multiple operating systems/RDBMS. - Providing security guidance for our products across new programming languages and frameworks. - Innovating and improving the security logic of App Scan products. - Collaborating with App Scan Research Lab teams. - Analysing App Sec results and identifying false positives. - Prioritizing high-priority issues based on severity and likelihood of exploit. - Understanding remediation techniques for various languages and frameworks. - Executing Source Code Analysis, Reverse Engineering, and Threat Modelling. Desired skills and experience: - Experience with Static Analysis (SAST) tools and triaging application security results. - Proficiency in security remediation techniques and secure coding best practices. - Expertise with security standards like OWASP Top 10 and CWE/SANS Top 25. - Ability to articulate security threats to developers or auditors. - Ability to identify and provide examples of false positives and negatives in source code. - Experience with multiple operating systems and software attack/exploitation techniques. - Familiarity with defensive programming concepts. Advantageous skills: - Experience with scripting or query languages (e.g., Java Script, Python). - Experience creating Data and Process Flow diagrams. - Knowledge of Taint Analysis. - Experience with Architectural Risk Analysis, Threat Modelling, and Traceability Matrix. - Experience with reverse engineering and source-level analysis. - An academic degree in Computer Science. - Relevant certifications (e.g., OSWP, OSCP). Other beneficial skills: - Security analysis of popular APIs/frameworks. - OO design skills, API/Framework analysis, Data Structure Algorithms/Graph Theory/Cryptography. - Experience with Opensource/Software Composition tools, Threat Modelling, or network security. - Membership in security-focused groups. - Professional or academic experience with Machine Learning or AI. - Knowledge of Networking, Telecommunications technologies, and protocols. - Strong reporting, presentation, and communication skills. - Experience working with distributed cross-functional teams and identifying/escalating risks. - A bachelor’s degree in computer science or equivalent.



  • palakkad, India beBeeSecurity Full time

    We are seeking a highly skilled Lead Security Expert to join our AppScan Product team. The successful candidate will have 10+ years of experience in application security and possess excellent skills in vulnerability discovery, automatic detection procedures, programming languages, and operating systems.Key ResponsibilitiesDiscover new vulnerabilities in...


  • palakkad, India beBeeSecurity Full time

    We are seeking a seasoned Quality Assurance (QA) professional to lead our AppScan SAST and security testing tools efforts. As a Product Lead SDET, you will be responsible for managing QA efforts, communicating testing status and progress, designing test strategies, and executing automated and manual tests in enterprise-level environments.


  • palakkad, India beBeeSecurity Full time

    Senior Quality Assurance Engineer (SAST)We seek a seasoned Senior QA Engineer to spearhead the execution of Application Security Testing (SAST) and related security testing tools. The ideal candidate will have an in-depth understanding of SAST, particularly with HCL AppScan, and be able to design and implement comprehensive test strategies across...


  • palakkad, India beBeecyberforensicanalyst Full time

    Cyber Security Specialist Role OverviewWe are seeking skilled and meticulous experts for the position of Cyber Forensic Analyst. The selected candidates will assist in cybercrime investigations by collecting, analyzing digital evidence, identifying electronic devices, and conducting forensic data analysis.This role involves collaboration with law enforcement...


  • palakkad, India beBeeSecurity Full time

    SAP Security SpecialistWe are seeking an experienced SAP S/4 Security expert to design, build and manage finance-related security roles.Key Responsibilities:Design, develop and maintain SAP S/4HANA security roles.Focus on finance module security, ensuring appropriate access for FICO and COPA processes.Test, troubleshoot and refine security roles to support...


  • palakkad, India beBeeSecurity Full time

    Job Description:About this RoleThis position plays a vital part in shaping the security strategies across product design, development, and deployment.You will work closely with engineering teams to identify and mitigate potential security threats through thorough analysis and reviews.Conduct security design reviews and threat modeling sessions to ensure...


  • palakkad, India beBeeApplicationSecurity Full time

    This role involves identifying new vulnerabilities in application source code and developing automatic detection procedures. You will need to demonstrate proficiency in at least one programming language (e.g., Java, C/C++, .NET) and multiple operating systems/RDBMS. Additionally, you should provide security guidance for our products across various...


  • palakkad, India beBeeNetwork Full time

    Job OpportunityWe are seeking a highly skilled and experienced professional to join our team as a Professional Services Consultant. In this role, you will work closely with customers to deliver on-site and remote consulting services, including design, implementation, optimization, audit, pre-sales, training, and technical writing.As a key member of our team,...


  • palakkad, India beBeeSecurity Full time

    AI Security Strategist Job DescriptionWe are seeking a seasoned AI security expert to establish and govern security best practices across our AI, Data, and Digital portfolios. This role involves building the AI security foundation for the organization, defining frameworks, ensuring compliance, and guiding the secure design and deployment of AI...


  • palakkad, India beBeeWordPress Full time

    Senior WordPress DeveloperWe are seeking a highly experienced Senior WordPress expert with strong expertise in custom coding, AI integrations and Elementor.Develop, customize and maintain advanced WordPress solutions.Integrate AI and automation tools to enhance productivity.Work with Elementor to build complex and scalable designs.Write clean, efficient and...