Application Security Architect

5 days ago


Bengaluru Karnataka, India Blue Yonder Full time

Overview:

- We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor’s “Best Places To Work”.


Scope:

- The role of the Application Security Senior Engineer is to work closely with information technology and development staff to help implement secure systems, tools, and processes.
- Being an expert and mentor on all technologies used by the security staff, researching new security trends and improvements, getting new staff members up to speed on internal projects and new development, and providing direction and management of assigned projects.

What you’ll do:

- Implement Secure SDLC (Analyze and design Secure architecture, Design Application based on that, prepare secure coding guidelines across projects, and also reviewed support project architecture and code on security aspects)
- Understand how to identify, exploit, and remediate the OWASP Top 10, SANS 25 software flaws, and other vulnerabilities through use of tools and code review and propose solutions for advanced development situations.
- Ability to write tool specific custom queries to improve the scan results and eliminate false positives.
- Work with development teams to ensure false positives are verified and documented.
- Knowledge on Threat modelling methodology and tools like Microsoft threat modeler
- Experience in DevSecOps and CI/CD tools such as Github, GitLab, Jenkins, Nexus, Artifactory including how to secure them
- Good knowledge on cloud (Azure, AWS, GCP) and basic knowledge on cloud security posture management (CSPM)
- Good knowledge on FOSS/SCA, Software Supply Chain security analysis & basic knowledge on container security
- Knowledge on container scanning tools like Checkov, Trivy, etc
- Working with Teams to secure their Services (i.e., API security)
- Maintain a professional working relationship with other departments through clear communication and project level collaborations.
- Threat modeling

What we are looking for:

- 10+ years of secure development, penetration testing, and/or architecture experience
- Expert knowledge of SDLC
- Familiar with dynamic and static testing tools and techniques
- Comfortable with scripting and automation.
- Ability to work as part of a larger team to find solutions.
- Excellent communication skills
- CSSLP, CISSP, GWAPT, OSCP, or similar certifications preferred.

Our Values

If you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success - and the success of our customers. Does your heart beat like ours? Find out here:
Core Values
- Diversity, Inclusion, Value & Equality (DIVE)

is our strategy for fostering an inclusive environment we can be proud of. Check out Blue Yonder's inaugural

Diversity Report

which outlines our commitment to change, and our

video

celebrating the differences in all of us in the words of some of our associates from around the world.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.



  • Bengaluru, India Infosys Full time

    About the Role:We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role: We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role:We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role: We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role:We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role:We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role:We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role:We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India Infosys Full time

    About the Role:We are seeking an experienced and hands-on Application Architect to lead the design and implementation of security automation workflows. This role will focus on architecting scalable systems that seamlessly integrate with security scanning and management tools. The ideal candidate will possess deep expertise in application architecture and...


  • Bengaluru, India YASH Technologies Full time

    Role: Application Security Architect This role is responsible for architecting, designing security controls for applications. The successful candidate will lead efforts to establish and improve secure Software development lifecycle (SDLC) activities and identify tools to integrate into the development process to assess the security of applications. When...