
Application Security Assurance Associate
- Chennai, Tamil Nadu
- Permanent
- Full-time
- Competitive compensation, including base pay and annual incentive
- Comprehensive health and life insurance and well-being benefits, based on location
- Pension / Retirement benefits
- Paid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.
- DTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).
- Set up, customize, and maintain SAST tools (e.g., SonarQube, Fortify, Checkmarx, Veracode) to align with project-specific requirements.
- Perform manual and automated code reviews to identify and advise on secure coding issues.
- Integrate SAST tools into CI/CD pipelines (Jenkins, GitHub Actions, GitLab CI, etc.) to support shift-left security.
- Work with development teams to fine-tune SAST rules, reduce false positives, and ensure meaningful results.
- Assist developers in understanding and fixing security issues by providing actionable feedback.
- Implement basic security checks for Infrastructure as Code (IaC) and secrets detection in repositories.
- Collaborate with DevOps teams to ensure security tooling is seamlessly embedded into build and deployment workflows.
- Minimum of 4 years of related experience
- Bachelor's degree preferred or equivalent experience
- Fosters a culture where honesty and transparency are expected.
- Stays current on changes in his/her own specialist area and seeks out learning opportunities to ensure knowledge is up-to-date.
- Collaborates well within and across teams.
- Communicates openly with team members and others.
- Resolves disagreements between colleagues effectively, minimizing the impact on the wider team.