Technical Security - Vulnerability Assessment

1 Month ago • 5-7 Years • Cyber Security • Undisclosed

About the job

Job Description

This role requires a highly skilled Technical Security Professional with expertise in Vulnerability Assessment and Penetration Testing (VAPT), Source Code Review, API Security, and Web Application Security. Responsibilities include conducting comprehensive VAPT on various systems, performing thorough source code reviews, assessing and enhancing API security, evaluating web application security, developing security testing methodologies, providing technical guidance, collaborating with cross-functional teams, and staying updated on the latest security trends. The ideal candidate will have 5-7 years of VAPT experience, 4-7 years of source code review experience, proficiency in security testing tools (Nessus, Metasploit, Burp Suite), strong understanding of web application security principles, experience in API security assessment, knowledge of secure coding practices and cloud security, and excellent analytical and communication skills. Relevant security certifications (CISSP, CEH, OSCP) are preferred.
Must have:
  • VAPT experience (5-7 years)
  • Source code review (4-7 years)
  • Proficiency in security tools (Nessus, Metasploit, Burp Suite)
  • Web application security knowledge
  • API security assessment experience
  • Secure coding practices & Cloud Security knowledge
Good to have:
  • CISSP, CEH, OSCP certifications
Job Description
We are seeking a highly skilled and motivated Technical Security Professional specializing in
Vulnerability Assessment and Penetration Testing (VAPT), Source Code Review, API Security, and
Web Application Security. As a member of our team, you will be responsible for ensuring the
security and integrity of our systems, applications, and networks.

Responsibilities
 Conduct comprehensive Vulnerability Assessments and Penetration Tests (VAPT) on various systems, networks, and applications to identify security weaknesses and potential vulnerabilities.
 Perform thorough Source Code Reviews to identify security flaws, coding errors, and vulnerabilities in web applications and software products.
 Assess and enhance API security by evaluating API designs, configurations, and
implementations for potential security risks and vulnerabilities.
 Evaluate and enhance the security posture of web applications by conducting thorough security assessments and implementing appropriate security controls.
 Develop and implement security testing methodologies, tools, and procedures to improve the efficiency and effectiveness of security testing activities.
 Provide technical expertise and guidance to development teams, system administrators, and other stakeholders on security best practices and mitigation strategies.
 Collaborate with cross-functional teams to remediate identified security vulnerabilities and implement security controls to mitigate risks.
 Stay updated on the latest security trends, vulnerabilities, and best practices to continuously improve the security posture of our systems and applications.

Requirements:
 Bachelor's degree in Computer Science, Information Security, or a related field. (Master'sdegree preferred)
 5 to 7 years of experience in conducting Vulnerability Assessments and Penetration Tests (VAPT) on enterprise systems, networks, and applications.
 4 to 7 years of experience in performing Source Code Reviews for web applications and software products.
 Proficiency in using industry-standard security testing tools such as Nessus, Metasploit, Burp Suite, etc.
 Strong understanding of web application security principles, common vulnerabilities (e.g.,OWASP Top 10), and mitigation techniques.
 Experience in assessing and enhancing API security, including authentication, authorization, encryption, and access control mechanisms.
 Knowledge of secure coding practices and common programming languages (e.g., Java, Python, C/C++, etc.).
 Knowledge of cloud security and devsecops processes.
 Excellent analytical and problem-solving skills with the ability to identify and mitigate
complex security risks and vulnerabilities.
 Strong communication and interpersonal skills with the ability to effectively collaborate with
cross-functional teams and stakeholders.
 Relevant security certifications such as CISSP, CEH, OSCP, etc., are preferred.
undefinedundefinedundefined
View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Noida, Uttar Pradesh, India (Remote)

Noida, Uttar Pradesh, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Noida, Uttar Pradesh, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Chandigarh, Punjab, India (On-Site)

Kerala, India (On-Site)

View All Jobs

Get notified when new jobs are added by Paytm

Similar Jobs

Playrix - Lead SDET

Playrix, Cyprus (Remote)

Netflix - Software Engineer (L5), Content Engineering

Netflix, United States (On-Site)

AGS - American Gaming Systems - Platform Manager

AGS - American Gaming Systems, Georgia (Hybrid)

Arkose Labs - Senior Machine Learning Researcher

Arkose Labs, India (Hybrid)

Barracuda Networks  Inc  - Senior Security Engineer

Barracuda Networks Inc , India (On-Site)

Palo Alto Networks - Solutions Consultant - SLED

Palo Alto Networks, United States (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Luxoft - Data Modeller

Luxoft, India (On-Site)

PlayStation Global - Staff Service Reliability Engineer

PlayStation Global, Germany (On-Site)

Luxoft - Murex Techno Functional Tester

Luxoft, India (On-Site)

Nasdaq - Senior Ruby on Rails Developer

Nasdaq, Canada (On-Site)

PwC - Senior Associate | Devops SRE

PwC, India (On-Site)

Litmus - QA Tester

Litmus, India (On-Site)

Bigpoint - Lead Game Developer

Bigpoint, Germany (Remote)

Get notifed when new similar jobs are uploaded

Jobs in Noida, Uttar Pradesh, India

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Scopely - Principal Security Engineer

Scopely, Spain (Hybrid)

PwC - Security Cloud Architect

PwC, Czechia (On-Site)

PwC - Guidewire Developer

PwC, South Africa (On-Site)

Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation, United States (On-Site)

Ubisoft - Physical Security Analyst

Ubisoft, Canada (On-Site)

Varonis  - Strategic Evangelist

Varonis , United States (On-Site)

CD PROJEKT RED - Pentester (Cybersecurity team)

CD PROJEKT RED, Poland (On-Site)

Get notifed when new similar jobs are uploaded