
Application Security Specialist
- Hyderabad, Telangana
- Permanent
- Full-time
- Conduct comprehensive assessments of applications to identify potential security risks and vulnerabilities. Utilise industry-standard tools and methodologies to perform security testing, code reviews, and penetration testing.
- Design and implement robust security architectures for applications, considering factors such as authentication, authorisation, encryption, and data protection. Ensure compliance with relevant security standards and regulations.
- Manage and maintain security tools and technologies used for application security testing and monitoring. Configure, deploy, and optimise security tools such as static code analysis (SAST), dynamic application security testing (DAST), and web application firewalls (WAFs) to enhance the security posture of applications.
- Promote a culture of security awareness among development teams and stakeholders. Provide training sessions and resources to educate colleagues on secure coding practices, threat mitigation techniques, and compliance requirements.
- Enforce security policies, standards, and controls for applications in alignment with organisational goals and regulatory requirements. Conduct regular audits and assessments to ensure compliance and mitigate risks.
- Collaborate closely with development teams, Product, IT operations, project managers, and other stakeholders to integrate security into the software development lifecycle. Provide guidance and support to ensure security considerations are addressed throughout the application development process.
- Proactively identify opportunities for improvement and optimization of security controls, processes, and technologies.
- Respond promptly to security breaches, investigate root causes, and implement corrective actions to prevent future occurrences.
- Software Development Background
- At least three years experience in a similar Information Security position
- Customer-oriented person, with the ability to educate and influence a technical audience on Application Security matters
- Fluent in relevant development languages (Java, C/C++, Perl, PHP, .NET, Python …)
- Experience in the following areas:
- Security Test Management
- Application Security Assessments
- Security Assurance
- Requirements Management
- Knowledge of major frameworks and support libraries (SPRING, OSGI, ASP.NET, etc.)
- Agile Development
- Vulnerability management
- Continues Improvements
- Penetration Testing
- Security Evaluation & Functional Testing
- Application Security Testing
- Open source projects
- Online Gaming security experience
- Regulatory and industry standards work: ISO27001, PCI-DSS, etc.
- Experience in Automation
- Safe home pickup and home drop (Hyderabad Office Only)
- Group Mediclaim policy
- Group Critical Illness policy
- Communication & Relocation allowance
- Annual Health check