Web Application Security Expert

Found in: Whatjobs IN C2 - 2 weeks ago


Bengaluru, India NETSACH GLOBAL Full time
Greetings from Netsach.

We are looking for Web Application Security Expert for Dubai location as listed below. Must have minimum 3 years of experience in an information security function with good background in information technology, stakeholder management and people management

Job Title - Web Application Security ExpertExp- 4-5yrsJob Type- Full-timeNo of Openings - 1Location - Dubai (Onsite)

Interested candidates can share their resume at

Requirements:

Web Application Security Expert on platforms

Android, iOS, tablet devices etc. with good knowledge about microservice architecture, security code review and pipeline driven security (Kubernetes, openshift and PaaS environment).

Key Skills

Web & Mobile Application Security, Security Code review and API security.

Knowledge Technical & Functional:

Expert at the Web application Security testing, in depth testing skillset and ability to bypass weak implementation for attacks, ability to bypass WAF for attack scenarios such as XSS, SQL Injection etc.Good understanding of Microservice based architecture (Technical)Good hands-on experience solutioning technology architectures that involve perimeter protection, core protection and end-point protection/detection & API /Micro services SecurityExperience working in a DevOps environment with knowledge of Continuous Integration, Containers, DAST/SAST tools and building Evil Stories (Technical)The Analyst / Engineer has the skill to follow design principles and applies design patterns to enforce maintainable and reusable patterns, in the form of code or otherwiseThe Analyst / Engineer can understand and interpret potential issues found in source or compiled codeThe Analyst / Engineer has automation skills/capability in the form of scripting or similar.

Primary/General Job Purpose:Encourage Shift Left Mindset - Proactively embed security requirements, by influencing implementation of security & privacy patterns from the start of the development cycle by reviewing user stories and create evil patterns. The candidate should also have an experience in working in an Agile environment.Implement via Influence - Influence stakeholders such as Product Owners, Solution Architects, Developers, Testers, Engineers & others to include security patterns into features, epics and stories in order to build secure, innovative & superior digital products for customers and employees.

EducationBachelors degree in a computer-related field such as computer science, engineering, cyber/information security discipline, physics, mathematics or similar.

Professional Certificates.General Information Security: OSCP, CEH, CISM/CISA, CISSP or similarGeneral Cloud Security: CCSK /CCSP or similarSpecific Cloud Security: Azure Security or similarNetwork Security: CCNA, CCNP, CCIE, Certified Kubernetes Security Specialist

Domain Knowledge

Technical SkillsetsThin Client Application Security (Web based)Should have in depth exploitation knowledge and hands on OWASP top 10 and SANS 25Knowledge of CVSS scoringsCVEs and evaluation of CVE and exploitation of CVE vulnerabilitiesBusiness logic bypasses, payment gateway tampering.Able to test Thick Client version of the web application.Mobile Application Security (Android, iOS)Should have in depth exploitation knowledge and hands on OWASP top 10 and SANS 25Should be able to Bypass complex SSL Pinning on Mobile applicationsHands on expertise on complex Root detection bypass techniquesHands on expertise in Jailbreaking and Rooting of N-1 devices.Tampering - decompiling and recompiling apk and ipa files.Review of manifest and plist filesBypasses of MAM / MDM controls and other business Logic scenarios.Secure Code Review (+ review of open-source packages)Should have in depth knowledge and review the code manually as well as through automated code review for most tech stacks

java, reactjs, node, asp, C#, python, ruby etc. wrt OWASP top 10 and SANS 25 secure coding standards.Find critical vulnerabilities with web application and mobile applications by reviewing source code.Should be aware about providing Code level mitigations for vulnerabilities.Sound knowledge on reviews for open-source packages and third-party libraries used in codeTo understand and prepare root cause analysis for vulnerabilities andexploit.Network component, Server & other devices (VA Compliance & Config review)Vulnerability assessment and Penetration testing using nmap, tenable , kali linux, msf etc.Strong knowledge on cryptographic algorithms, Digital signatures and PKI.Config reviews as per NIST / CIS benchmarks.Server hardening reviews.

Additional Platform Knowledge(Optional but has Additional Advantage)Devsecops, Container / K8s Security API SecurityElastic Search, ELK Cloud - Azure, AWSAnalytics / Machine Learning - PythonData platform knowledge of Hadoop / Hive / SAP Hana

Dr. Emily
  • Web Application Security Expert

    Found in: Talent IN C2 - 3 weeks ago


    Bengaluru, India NETSACH GLOBAL Full time

    Greetings from Netsach.We are looking for Web Application Security Expert for Dubai location as listed below. Must have minimum 3 years of experience in an information security function with good background in information technology, stakeholder management and people managementJob Title - Web Application Security ExpertExp- 4-5yrsJob Type- Full-timeNo of...

  • Mobile Application Security Expert

    Found in: Whatjobs IN C2 - 2 weeks ago


    Bengaluru, India NETSACH GLOBAL Full time

    Greetings from Netsach.We are looking for Mobile Application Security Expert for Dubai location as listed below.Job Title - Mobile Application Security ExpertExp- 4-5yrsJob Type- Full-timeNo of Openings - 2Location - DubaiInterested candidates can share their resume at Requirements:Mobile Application Security Expert on platformsAndroid, iOS, tablet devices...

  • Mobile Application Security Expert

    Found in: Talent IN C2 - 3 weeks ago


    Bengaluru, India NETSACH GLOBAL Full time

    Greetings from Netsach.We are looking for Mobile Application Security Expert for Dubai location as listed below. Job Title - Mobile Application Security ExpertExp- 4-5yrsJob Type- Full-timeNo of Openings - 2Location - DubaiInterested candidates can share their resume at emily@netsach.co.in.Requirements: Mobile Application Security Expert on platforms ...

  • Application and Mobile Security Audit Expert

    Found in: Whatjobs IN C2 - 3 weeks ago


    Bengaluru, India BCITS PVT LTD Full time

    Position: Application and Mobile Security Audit Expert Experience: 1-4 years Location: Bangalore Skills Sets:   Should have 1-4 years of experience in Application and Mobile Security Audit proven experience in conducting security audits and penetration testing for web applications, mobile applications, and backend systems. Strong understanding of web...

  • Application and Mobile Security Audit Expert

    Found in: Appcast Linkedin IN C2 - 3 weeks ago


    Bengaluru, India BCITS PVT LTD Full time

    Position: Application and Mobile Security Audit ExpertExperience: 1-4 yearsLocation: BangaloreSkills Sets: Should have 1-4 years of experience in Application and Mobile Security Auditproven experience in conducting security audits and penetration testing for web applications, mobile applications, and backend systems.Strong understanding of web application...

  • Application and Mobile Security Audit Expert

    Found in: Talent IN 2A C2 - 3 weeks ago


    Bengaluru, India BCITS PVT LTD Full time

    Position: Application and Mobile Security Audit ExpertExperience: 1-4 yearsLocation: BangaloreSkills Sets: Should have 1-4 years of experience in Application and Mobile Security Auditproven experience in conducting security audits and penetration testing for web applications, mobile applications, and backend systems.Strong understanding of web application...


  • Bengaluru, India Power IT Services Pvt Ltd Full time

    ABOUT US We are providing Recruitment Services and IT Consulting Services for our Tier-1 Multinational Clients covering following major domains, but not limited to Banking, Financial Services and Insurance, Retail, Airline, Automotive, Energy and Consumer Sector ABOUT CLIENT Our client is one of the leading Information, Communications and Technology (ICT)...

  • Senior Application Security Engineer

    Found in: Talent IN 2A C2 - 3 weeks ago


    Bengaluru, India IQMATRIX INFOWAYS SOLUTIONS PRIVATE LIMITED Full time

    Principal Accountabilities :- Lead by example and independently perform all functions and services of the GIS AppSec team.- Conduct advanced web application, micro-services, API, cloud penetration tests of proprietary and 3rd party on-prem/cloud systems and applications.- Perform targeted manual security reviews at key points in the software development life...

  • Senior Application Security Engineer

    Found in: Talent IN 2A C2 - 3 days ago


    Bengaluru, India IQMATRIX INFOWAYS SOLUTIONS PRIVATE LIMITED Full time

    Principal Accountabilities :- Lead by example and independently perform all functions and services of the GIS AppSec team.- Conduct advanced web application, micro-services, API, cloud penetration tests of proprietary and 3rd party on-prem/cloud systems and applications.- Perform targeted manual security reviews at key points in the software development life...

  • Application Security

    2 weeks ago


    Bengaluru, Karnataka, India iXceed Solutions Full time

    **Job title**: Java security Lead **Job Location**: Bangalore **Role Type**: Permanent **Work Mode**: Hybrid (2-3 days onsite in a week) - Java, Spring, Maven, REST, SOAP Web Services - OWASP Top 10, Secure Development - Knowledge of about Snyk tools - CI/CD tools and processes like Jenkins - Basics of cloud platforms and dockerization. - Good in Core...

  • Security Expert

    5 days ago


    Bengaluru, India TECHRAYS ENGINEERING Full time

    **Security Expert - One (1)** **Requirements**: a) At least 8 years’ experience in design and review of ICT infrastructure and Security configurations b) Bachelor’s in information technology, Telecommunication or computer science. c) Must hold relevant certification in Infrastructure security and design.

  • AWS Security Expert

    Found in: Whatjobs IN C2 - 3 weeks ago


    Bengaluru, India Tavant Full time

    With 24+ years of experience building innovative digital products and solutions, Tavant provides impactful results to its customers. It has been the frontrunner in driving digital innovation and tech-enabled transformation across a wide range of industries such as Fintech, Manufacturing, Agtech, Media & Entertainment, and Retail in North America, Europe, and...

  • AWS Security Expert

    Found in: Appcast Linkedin IN C2 - 3 weeks ago


    Bengaluru, India Tavant Full time

    With 24+ years of experience building innovative digital products and solutions, Tavant provides impactful results to its customers. It has been the frontrunner in driving digital innovation and tech-enabled transformation across a wide range of industries such as Fintech, Manufacturing, Agtech, Media & Entertainment, and Retail in North America, Europe, and...

  • AWS Security Expert

    Found in: Talent IN 2A C2 - 3 weeks ago


    Bengaluru, India Tavant Full time

    With 24+ years of experience building innovative digital products and solutions, Tavant provides impactful results to its customers. It has been the frontrunner in driving digital innovation and tech-enabled transformation across a wide range of industries such as Fintech, Manufacturing, Agtech, Media & Entertainment, and Retail in North America, Europe, and...

  • Application Security

    Found in: Whatjobs IN C2 - 2 weeks ago


    Bengaluru, India Nityo Infotech Full time

    Integration , Microsoft Office , Testing , A , Achieve , Activities , Aid , Android , Application , Application Infrastructure , Application Security , Authentication , Automation , Bangalore , Burp Suite , CEH , Certifications , Code , Command , Common , Communications , Communications Writing , Company , Construction , Continuous Delivery , Continuous...

  • Application Security Architect

    Found in: Whatjobs IN C2 - 3 weeks ago


    Bengaluru, India athmâ Full time

    About Narayana Health:Narayana Health is headquartered in Bengaluru, India, and operates a network of hospitals in India and Overseas. Our mission is to deliver high-quality, affordable healthcare services to the broader population. Narayana Health Group is India’s leading healthcare provider and one of the largest hospital groups in the country with a...

  • Application Security Architect

    Found in: Whatjobs IN C2 - 3 weeks ago


    Bengaluru, India athmâ Full time

    About Narayana Health:Narayana Health is headquartered in Bengaluru, India, and operates a network of hospitals in India and Overseas. Our mission is to deliver high-quality, affordable healthcare services to the broader population. Narayana Health Group is India’s leading healthcare provider and one of the largest hospital groups in the country with a...

  • Application Security

    Found in: Talent IN C2 - 3 weeks ago


    Bengaluru, India Nityo Infotech Full time

    Integration , Microsoft Office , Testing , A , Achieve , Activities , Aid , Android , Application , Application Infrastructure , Application Security , Authentication , Automation , Bangalore , Burp Suite , CEH , Certifications , Code , Command , Common , Communications , Communications Writing , Company , Construction , Continuous Delivery , Continuous...

  • Manager - Application Security

    Found in: Whatjobs IN C2 - 3 weeks ago


    Bengaluru, India Kenvue Full time

    Job Location: Kenvue GCC, Bangalore Responsibilities: Conduct comprehensive security assessments of applications to identify vulnerabilities and weaknesses. Perform penetration testing, code reviews, and vulnerability scanning to ensure the security of web and mobile applications. Collaborate with development teams to provide guidance on secure coding...

  • Manager - Application Security

    Found in: Talent IN A C2 - 3 weeks ago


    Bengaluru, India Kenvue Full time

    Job Location: Kenvue GCC, BangaloreResponsibilities:Conduct comprehensive security assessments of applications to identify vulnerabilities and weaknesses.Perform penetration testing, code reviews, and vulnerability scanning to ensure the security of web and mobile applications.Collaborate with development teams to provide guidance on secure coding practices...