Senior Information Security Specialist

17 hours ago


Bengaluru, Karnataka, India WELLS FARGO BANK Full time
About this role:

Wells Fargo is seeking a highly skilled Senior Information Security Engineer to join our team. In this role, you will be responsible for leading or participating in computer security incident response activities for moderately complex events.

Key Responsibilities:

  • Conduct technical investigation of security-related incidents and post-incident digital forensics to identify causes and recommend future mitigation strategies.
  • Provide security consulting on medium projects for internal clients to ensure conformity with corporate information security policy and standards.
  • Design, document, test, maintain, and provide issue resolution recommendations for moderately complex security solutions related to networking, cryptography, cloud, authentication, and directory services.
  • Review and correlate security logs.
  • Utilize subject matter knowledge in industry-leading security solutions and best practices to implement one or more components of information security.
  • Identify security vulnerabilities and issues, perform risk assessments, and evaluate remediation alternatives.
  • Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals.

Requirements:

  • 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of work experience, training, military experience, or education.

Preferred Qualifications:

  • 8+ years of overall Information/Cyber security experience with a bachelor's degree or higher in Engineering or Computer or Information technology.
  • 6+ years of Penetration testing, offensive security, or Red teaming experience.
  • Good understanding of OWASP top 10, SANS top 25, and application security testing, threats, vulnerabilities, and attacks.
  • 3+ years of experience in at least one of the following practices: Security requirements, Threat Modeling, static Analysis/Code Review, Application Security Risk Assessments, Security Design Requirements.
  • 2+ years of experience in initiating scans using scanners like HCL AppScan or Invicti or WebInspect and troubleshooting any scanner-related issues.
  • Understanding of one or more programming languages and ability to analyze vulnerabilities and perform false positive analysis as part of DAST.
  • Comfortable in scripting in Python or PowerShell.
  • Ability to perform cloud security assessments.
  • Ability to work on Git hub.
  • Ability to manage multiple priorities in a fast-paced dynamic environment.
  • Advanced problem-solving skills, ability to develop effective long-term solutions to problems.
  • Excellent verbal and written communications skills.
  • Excellent inter-personal skills contributing to a cordial team environment.
  • Certified in Industry-recognized certifications such as CEH, SANS GIAC - GWAPT or GPEN or GMOB, Cloud Certification: AZ-900.
  • Industry-recognized certifications like Offensive Security Certified Professional (OSCP) or Certified Penetration Tester (CPT) or CISSP.
  • Good understanding of networking concepts like ICMP, DNS, TCP/IP, DHCP.
  • Knowledge and understanding of secure SDLC (System Development Life Cycle) methodologies.
  • Application security experience with banking/financial services applications.
  • Ability to manage highly complex issues and negotiate solutions.
  • High-quality engagements delivered within expected timelines.
  • Demonstrate advancements in Penetration testing capabilities of self and team.

Job Expectations:

  • Perform application security assessments/penetration testing engagements on web, mobile, thick client applications, and API/web services covering multiple techniques and procedures.
  • Scan the applications using automated scanners like HCL AppScan, Invicti, or WebInspect and perform false positive analysis.
  • Identify and exploit vulnerabilities on web, mobile, thick client applications, and API/web services using manual testing tools like Burp Suite.
  • On a regular basis, provide subject matter expertise to the team on technical issues (Automated test & Manual test), reporting, and conduct peer review.
  • Writing security test cases to check for vulnerabilities or broken/missing security controls.
  • Develop tools and exploits to support application security automation and penetration testing.
  • Stay current with the latest cybersecurity threats, attack vectors, and penetration testing techniques.
  • Lead DAST projects and initiatives and participate in computer security incident response activities for moderately complex events. Assist with stakeholder's requests for net-new and enhancements to existing solutions.
  • Contribute to Newsletter/blogs, articles, and presentation for internal or other audiences.
  • Collaborate and consult with peers, colleagues, and managers to resolve issues and achieve goals.
  • Maintain seamless communication with stateside and India stakeholders to ensure smooth delivery of goals.


  • Bengaluru, Karnataka, India Nasdaq Full time

    Job Title: Information Security Senior SpecialistAt Nasdaq, we are seeking a highly skilled Information Security Senior Specialist to join our team. As a key member of our security team, you will be responsible for designing, developing, and implementing short- and long-term solutions to information technology (IT) needs.Key Responsibilities:Design, develop,...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: Application Security SpecialistRSA Security is seeking an experienced Application Security Specialist to join our team. As an Application Security Specialist, you will be responsible for assessing the security of our web applications and services, identifying vulnerabilities, and implementing security measures to protect our systems.Key...


  • Bengaluru, Karnataka, India State Street Full time

    Job Title: Information Security Assurance SpecialistJob Overview:The Information Security Assurance Specialist will play a critical role in supporting the overall corporate information security compliance to State Street internal policies, external regulatory, and client requirements. As a member of the Policy & Governance team, the individual will maintain...


  • Bengaluru, Karnataka, India SAP Full time

    About the RoleSAP is seeking a highly skilled Senior Information Security Compliance Specialist to join our team. As a key member of our Security Compliance and Trust Office, you will play a critical role in ensuring the security and compliance of our customers' data.Key ResponsibilitiesCoordinate with internal teams and external auditors to support customer...


  • Bengaluru, Karnataka, India RSA Security Full time

    Job Title: Application Security SpecialistRSA Security is seeking an experienced Application Security Specialist to join our team. As an Application Security Specialist, you will be responsible for ensuring the security of our applications and services.Key Responsibilities:Perform security assessments on web applications and servicesHelp application teams...


  • Bengaluru, Karnataka, India ACL Digital Full time

    Job Description:The Information Security Specialist will be responsible for implementing and monitoring the effectiveness of IT controls, conducting IT audits, and supporting Governance, Risk, and Compliance (GRC) initiatives. The ideal candidate will have hands-on experience with the ISO 27001 framework and a strong technical expertise in IT security...


  • Bengaluru, Karnataka, India Whatfix Full time

    Job Title: Security Compliance SpecialistWhatfix is seeking a highly skilled Security Compliance Specialist to join our team. As a key member of our security team, you will be responsible for managing all compliance-related activities within the Whatfix platform and supporting other global compliance initiatives.Key Responsibilities:Lead and manage the...


  • Bengaluru, Karnataka, India Flexera Software India LLP Full time

    At Flexera, we're transforming the software industry, and we're looking for a talented Senior Information Security Engineer to join our team. With over 50,000 customers worldwide, we're achieving our goal, but we can't do it without our team. We're consistently recognized by Gartner, Forrester, and IDC as a category leader in the marketplace.The IT Security...


  • Bengaluru, Karnataka, India ThoughtFocus Full time

    Job DescriptionThoughtFocus is seeking a highly skilled Information Security Specialist to join our team.Key Responsibilities:Coordinate across teams and develop internal and external communications.Stay up-to-date with current revisions of NIST and ISO security frameworks and procedures.Work with auditors and regulators to ensure compliance.Build successful...


  • Bengaluru, Karnataka, India State Street Full time

    Job Title: Information Security Assurance SpecialistJob Overview:The successful candidate will play a key role in supporting the overall corporate information security compliance to State Street internal policies, external regulatory, and client requirements. As a member of the Policy & Governance team, the individual will maintain the enterprise information...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this RoleWe are seeking a highly skilled Senior Information Security Analyst to join our team at Wells Fargo Bank. As a key member of our Information Security team, you will play a critical role in ensuring the security and integrity of our systems and data.Key ResponsibilitiesProvide expert-level information security consultation to improve awareness...


  • Bengaluru, Karnataka, India SAP Full time

    About the Role:SAP is seeking a highly skilled Information Security Compliance Senior Specialist to join our team. As a key member of our Security Compliance team, you will play a critical role in ensuring the protection of our corporate infrastructure and applications.Key Responsibilities:Develop and implement risk identification processes related to...


  • Bengaluru, Karnataka, India F337 Deutsche India Private Limited, Pune Branch Full time

    About the RoleF337 Deutsche India Private Limited, Pune Branch is seeking a highly skilled Information Security Governance Specialist to join our team. As an Information Security Governance Specialist, you will be responsible for governing different ID admin operations teams within SLA and desired quality aspects.Key ResponsibilitiesImprove and manage...


  • Bengaluru, Karnataka, India Talent Toppers Full time

    At Talent Toppers, we're seeking a seasoned Information Security Specialist to join our team. The ideal candidate will have a strong background in security, networking, and technology, with a minimum of 7 years of experience in Identity and Access Management (IAM). Key responsibilities include:Providing production support for IAM systems, including...


  • Bengaluru, Karnataka, India Altisource Full time

    Job DescriptionWe are seeking a highly skilled Information Security Risk Specialist to join our team at Altisource.Key ResponsibilitiesMonitor and review compliance to technology and information security KPIs across lines of business.Respond to client questionnaires and RFPs in a timely manner.Perform IT controls review and testing across IT platforms.Work...


  • Bengaluru, Karnataka, India Zeta Services Inc. Full time

    About Zeta Services Inc.Zeta Services Inc. is a leading provider of innovative banking technology solutions. Our mission is to empower banks and fintechs to launch banking products for the future.Job Title: Specialist Process & ComplianceThis role is part of the Information Security Process and Compliance Team of Zeta Services Inc. The Specialist Process &...


  • Bengaluru, Karnataka, India Capillary Technologies Full time

    Job SummaryCapillary Technologies is seeking a highly skilled Information Security Governance Specialist to join our team. As a key member of our security team, you will be responsible for implementing and managing our organization's information security policies, standards, and procedures.Key ResponsibilitiesDevelop and maintain a comprehensive information...


  • Bengaluru, Karnataka, India Whatfix Full time

    **Job Summary:**The Security Compliance Specialist will be responsible for managing all compliance-related activities within the Whatfix platform and supporting other global compliance initiatives. This role will involve coordinating internal and external assessments/audits, contributing to policy and standards updates, developing a compliance framework, and...


  • Bengaluru, Karnataka, India WELLS FARGO BANK Full time

    About this role:Wells Fargo is seeking a highly skilled Senior Information Security Engineer to join our team. In this role, you will be responsible for leading or participating in computer security incident response activities for moderately complex events. You will also conduct technical investigations of security-related incidents and post-incident...


  • Bengaluru, Karnataka, India Altisource Full time

    Job DescriptionWe are seeking a highly skilled Information Security Governance Specialist to join our team at Altisource.Key ResponsibilitiesMonitor and review compliance to technology and information security KPIs across lines of business.Actively engage with clients and respond to questionnaires and RFPs in a timely manner.Perform IT controls review and...