Security Remediation Quality Assurance Analyst
3 weeks ago
Title: Security Remediation Quality Assurance Analyst Experience : 5+yrs Notice Period : Immediate to 15Days Location : Remote Should be flexible for Canada / US time zone Job Description: End-to-End Security Remediation Quality Assurance Analyst We are seeking a highly skilled and meticulous End-to-End Security Remediation Quality Assurance Analyst to own the entire testing and verification lifecycle for security fixes across our client's applications. This role requires comprehensive testing from initial analysis of the vulnerability to final validation and sign-off, ensuring the integrity and security of the remediated code and system configurations. Key Responsibilities and Focus Areas The primary focus of this role is to design, execute, and own the full testing lifecycle of security remediations, ensuring that fixes are complete, effective, and free of regressions. 1. Vulnerability Assessment and Test Planning: Analyze security vulnerability reports (e.g., SAST/DAST findings) to deeply understand the root cause and required fix for issues like OWASP Top 10 vulnerabilities (XSS, SQL Injection, CSRF, etc.). Develop comprehensive end-to-end test plans and test cases that not only confirm the specific vulnerability is fixed but also ensure no new functionality or security issues were introduced (regression testing). 2. Full Lifecycle Test Execution and Verification: Execute functional and security test cases against applications and systems after security fixes have been implemented by developers in technologies including Classic ASP, ASP.NET (C#), Perl, Java/JavaScript, and React. Test Refactored Code: Verify the security and functionality of modified application code, paying special attention to input validation and output encoding mechanisms. Database Fix Verification: Test and validate refactored SQL queries to ensure they effectively prevent SQL injection attacks while maintaining application functionality. Configuration Validation: Perform end-to-end testing of secure configurations implemented in system components, including the verification of security headers, disabled insecure modules, and enforced HTTPS within IIS environments. Sign-off Verification: Work directly with security teams to re-run SAST and DAST tools on the remediated code base, serving as the final sign-off authority for security closure. 3. Documentation and Collaboration: Own the documentation of the entire testing process, including detailed test plans, comprehensive test results, evidence of verified mitigations, and final acceptance of risk where applicable. Collaborate with application teams, security engineers, and release managers to ensure security fixes are properly integrated and deployed through the environments (Dev, QA, Staging, Prod). Required Skills and Experience 5+ years of experience in Quality Assurance or Application Security, with a demonstrated focus on end-to-end security testing and vulnerability lifecycle management. Expertise in common web application vulnerabilities, including practical experience in testing for and verifying fixes for the OWASP Top 10. Experience designing and executing full regression and security testing for applications across various tech stacks: Classic ASP ASP.NET (C#) Perl Java / JavaScript React Strong ability to write and execute SQL queries for validation and testing purposes. Proven ability to verify and test secure configurations for IIS and SQL Server. Proficiency in leveraging and interpreting results from SAST and DAST tools as part of the sign-off process. Desired Skills & Experience Experience in a Quality Assurance or Security role within the Health Care industry. Certifications such as CompTIA Security+, CEH, or CSSLP. If interested, share your resume on
-
Security Remediation Quality Assurance Analyst
2 weeks ago
India Lean IT Inc. Full timeTitle: Security Remediation Quality Assurance Analyst Experience : 5+yrs Notice Period : Immediate to 15Days Location : Remote Should be flexible for Canada / US time zone Job Description: End-to-End Security Remediation Quality Assurance Analyst We are seeking a highly skilled and meticulous End-to-End Security Remediation Quality Assurance Analyst to own...
-
Security Remediation Quality Assurance Analyst
2 weeks ago
India Lean IT Inc. Full timeJob Description Title: Security Remediation Quality Assurance Analyst Experience : 5+yrs Notice Period : Immediate to 15Days Location : Remote Should be flexible for Canada / US time zone Job Description: End-to-End Security Remediation Quality Assurance Analyst We are seeking a highly skilled and meticulous End-to-End Security Remediation Quality Assurance...
-
Security Remediation Quality Assurance Analyst
3 weeks ago
India Lean IT Inc. Full timeTitle: Security Remediation Quality Assurance AnalystExperience : 5+yrsNotice Period : Immediate to 15DaysLocation : RemoteShould be flexible for Canada / US time zone Job Description: End-to-End Security Remediation Quality Assurance AnalystWe are seeking a highly skilled and meticulous End-to-End Security Remediation Quality Assurance Analyst to own the...
-
Security Remediation QA Analyst
5 days ago
India Employ Full timeJob Title: Security Remediation QA Analyst Experience: 5–8 years Employment Type: Contract (3 months with possibility of extension) About the Role: We are seeking a highly detail-oriented Security Remediation QA Analyst to own the end-to-end testing and validation of security fixes across both legacy and modern applications. This role focuses on ensuring...
-
Vulnerability Remediation Analyst
2 weeks ago
Pune, India Barclays Full timeJob Description Join us as a Vulnerability Remediation Analyst at Barclays, responsible for supporting the successful delivery of Location Strategy projects to plan, budget, agreed quality and governance standards. You'll spearhead the evolution of our digital landscape, driving innovation and excellence. You will harness cutting-edge technology to...
-
Quality Assurance Analyst
2 weeks ago
Hyderabad, India PHAARMASIA LIMITED Full timeJob Description Company Description PHAARMASIA LIMITED is a pharmaceuticals company based out of 49 BHEL ENCLAVE AKBAR RD, Secunderabad, Andhra Pradesh, India. Role Description This is a full-time on-site role for a Quality Assurance Analyst located in Hyderabad. The Quality Assurance Analyst will be responsible for conducting manual testing, developing test...
-
Quality Assurance Analyst
2 weeks ago
Jammu & Kashmir, India, India Vj Jindal Cocoa Private Limited Full timeCompany DescriptionVj Jindal Cocoa Private Limited operates in the manufacturing industry situated at EPIP, SIDCO Industrial Complex, Bari Brahmana, Jammu, India and is headquartered in Mumbai, Maharashtra, India. With a focus on excellence, the company is a notable presence in its field of Manufacturing of Cocoa & Chocolate Products. Located in a strategic...
-
Quality Analyst
4 weeks ago
Hyderabad, Telangana, India, Telangana Quadrant IT Services Full timeQuality Analyst SummaryCommercial Payment division is looking for a Quality Analyst to join their team and help with testing products to meet our organization’s quality standards. Quality Analyst responsibilities include performing quality tests and validating test cases before products, software and systems are shipped to consumers.Key...
-
Quality Assurance Analyst
2 weeks ago
India Elite Corporate Solutions Private Limited Full timeJob Description Position Overview: Quality Assurance Analyst ASPIA Infotech is looking for a Tester with a strong background in Quality Assurance (QA) analysis, encompassing both manual and automated testing. As a Tester, you will play a vital role in ensuring the quality and reliability of our cybersecurity products and services. You will work closely with...
-
Information Security Assurance Analyst
2 weeks ago
Pune, India DWF Full timeJob Description Why join us We are seeking a talented and customer-focused Information Security Analyst to join our global IT delivery center at Pune office. This role will be supporting the overall security posture of the organization by assisting in the development and execution of InfoSec governance, oversight of risks, control environment, and compliance...