Expert in Application Security Remediation

6 days ago


bangalore, India beBeevulnerability Full time

Security Vulnerability Remediation ExpertThis is a contract position that requires working with Datum Technology Group.The role is located in Chennai, Mumbai, or Gurugram and involves virtual interviews.We are seeking a skilled Security Vulnerability Remediation Analyst to join our team.Vulnerability TriageReview findings from scanning tools (Burp Suite, ZAP, Mend, Snyk, JFrog XRay, Wiz, Qualys).Validate severity and exploitability, prioritising overdue medium vulnerabilities. Confirm whether the finding is a true positive or false positive.False Positive HandlingDocument justification for false positives (e.g., scan logs, GitHub issue link).Submit exception requests via approved workflows:GitHub Exception Templates for Mend, Snyk, Xray email the security team for unresolved cases route Wiz false positives to the Security Platforms team for backend review.Remediation CoordinationFor confirmed vulnerabilities, create a Jira ticket in the correct team backlog.Include vulnerability alert details, scanning source reference, and recommended remediation steps.Link the Jira ticket to the original vulnerability alert for traceability.Following sufficient progress is made triaging vulnerabilities, proceed to fix those that require a development change.Reporting & GovernanceMaintain accurate records of triage decisions and false positive justifications.Provide weekly updates on backlog reduction progress.Ensure compliance with Risk Vulnerability Management Standards.Key Skills & ExperienceStrong understanding of application security principles and vulnerability types.Experience developing web applications, preferably in a PHP / MySQL environment.Hands-on experience with DAST, SAST, SCA, CSPM, and infrastructure scanning tools.Familiarity with Jira and GitHub workflows for issue tracking and exception handling.Ability to analyse scan results and differentiate between true positives and false positives.Excellent communication skills for cross-team collaboration.Performance MetricsReduction of medium vulnerabilitiesTimely triage and accurate classification of findings.Compliance with InfoSec standards and exception approval processes.



  • bangalore, India Datum Technologies Group Full time

    Job Details: Job Title: Security Vulnerability Remediation Analyst Duration: Contract (On the Payroll of Datum Technology Group) Location: Chennai || Mumbai || Gurugram Interview Process: Virtual (2 Rounds) + 1 Technical screening. Job Description: Key Responsibilities Vulnerability Triage: Review findings from scanning tools (Burp Suite, ZAP, Mend, Snyk,...


  • bangalore, India Datum Technologies Group Full time

    Job Details: Job Title: Security Vulnerability Remediation Analyst Duration: Contract (On the Payroll of Datum Technology Group) Location: Chennai || Mumbai || Gurugram Interview Process: Virtual (2 Rounds) + 1 Technical screening. Job Description: Key Responsibilities Vulnerability Triage: Review findings from scanning tools (Burp Suite, ZAP, Mend, Snyk,...


  • bangalore, India beBeeSecurity Full time

    Lead Security Expert OpportunityWe are seeking a seasoned professional with 10+ years of experience to join our team. The successful candidate will possess expertise in discovering new vulnerabilities, developing automatic detection procedures, and providing security guidance for our products.Discovering new vulnerabilities in application source...


  • bangalore, India ARCON Full time

    Job Summary: We are seeking a highly experienced and strategic-minded Senior Manager of Application Security to lead our security initiatives. The ideal candidate will be a seasoned leader with a deep understanding of application security, vulnerability management, and secure software development lifecycle (SDLC) best practices. You will be responsible for...


  • bangalore, India beBeeSecurity Full time

    Job DescriptionOur team is seeking a seasoned security professional to lead the AppScan Product group. This role requires an expert in application security who can develop and implement comprehensive security strategies to protect our software applications throughout their lifecycle.The successful candidate will be responsible for discovering new...


  • bangalore, India beBeeApplication Full time

    At the forefront of application security, we seek an expert to drive our protection strategies.Job DescriptionWe develop cutting-edge SaaS solutions to optimize business outcomes and user engagement. Our commitment to customer trust is unwavering, adhering to stringent standards such as ISO 27001, PCI, and SOC 2, while ensuring global compliance with data...


  • bangalore, India Mobileum Full time

    Role: Senior Security ExpertDepartment: Engineering / Development / R&DReports To: DevSecOps Lead (Techno-Managerial)Experience: 10-12 yearsAbout the Job: We are looking for a Senior Security Expert to drive AppSec practices, secure SDLC processes, and ISO 27001–aligned security controls across Engineering. The role focuses on implementing secure coding...


  • Bangalore Division, India Mobileum Full time

    Role: Senior Security Expert Department: Engineering / Development / R&D Reports To: DevSecOps Lead (Techno-Managerial) Experience : 10-12 years About the Job: We are looking for a Senior Security Expert to drive AppSec practices, secure SDLC processes, and ISO 27001–aligned security controls across Engineering. The role focuses on implementing secure...


  • bangalore, India Capillary Technologies Full time

    Capillary technologies is an enterprise-grade SaaS technology provider. We operate in the loyalty domain where we help our customers to better engage their users to enhance their business outcomes.To provide assurances to our customers, we comply with ISO 27001, PCI & SOC 2 type standards from information security perspective. On privacy front, we comply...


  • bangalore, India Capillary Technologies Full time

    Capillary technologies is an enterprise-grade SaaS technology provider. We operate in the loyalty domain where we help our customers to better engage their users to enhance their business outcomes. To provide assurances to our customers, we comply with ISO 27001, PCI & SOC 2 type standards from information security perspective. On privacy front, we comply...