Cyber Security Analyst - Application Security

Lincoln Motor Company

Chennai District

On-site

INR 1,200,000 - 1,800,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Lincoln Motor Company is seeking a Cyber Security Analyst – Threat Modeling to perform security assessments across applications and infrastructure. You will guide product teams in secure design, leveraging STRIDE, VAST, and Attack Tree methods.

The role requires strong knowledge of OWASP Top-10, risk assessment, and information security policies. You will collaborate with cross-functional teams and promote security awareness while adapting to emerging technologies.

Qualifications

  • Bachelor's degree in computer science, cyber security, or related field.
  • 3+ years of experience in cyber security or related IT fields.
  • Knowledge of security frameworks such as NIST CSF, ISO27001, OWASP Top-10.
  • Cyber security certifications like CISSP, OSCP, CEH, Pentest+ are highly desirable.

Responsibilities

  • Perform threat modeling for Enterprise and SaaS IT assets.
  • Understand business processes and IT architecture to assess security.
  • Use STRIDE, VAST, Attack Tree to perform in-depth threats.
  • Assess threats and evaluate security controls to mitigate risks.
  • Evaluate likelihood and impact of threats; determine countermeasures.
  • Apply information security policies and industry standards (OWASP, NIST, CIS).
  • Follow security governance for issue tracking and closure; implement improvements.
  • Provide feedback to improve threat modeling tools and processes.
  • Promote security awareness through training and outreach.
  • Stay updated on emerging tech (AI/ML, Zero Trust, LCNC).

Skills

Threat modeling
OWASP Top-10
STRIDE
VAST
Attack Tree
Risk assessment
Cybersecurity fundamentals
IAM concepts
Cloud security
API security
Microservices security
SDLC & Agile
Communication skills
Training and awareness

Education

Bachelor's degree in CS/Cyber Security
Cyber security certifications: CISSP OSCP CEH Pentest+

Job description

Job Description:

Cyber Security Analyst – Threat Modeling is responsible for performing security assessments for applications, infrastructure and emerging technologies and guiding product / service teams in secure design of IT systems.

Position Responsibilities Include
  • Perform threat modeling for Enterprise and SaaS IT assets.
  • Gain understanding of the business process, application architecture, IT infrastructure and interaction with external entities.
  • Work with business, application, and supplier teams to perform in-depth threat assessments by leveraging methods such as STRIDE, VAST, Attack Tree etc.
  • Provide subject matter expertise in assessing potential security threats in the application architecture and evaluate security controls to mitigate threats.
  • Assess the risk of identified threats by evaluating likelihood and impact, determine countermeasures and remediation.
  • Apply Information Security Policy and industry security standards (E.g.: OWASP, NIST, CIS etc.,) and guide application teams to help build secure products.
  • Follow security governance process for issue tracking and closure. Ensure that security improvement actions are evaluated, validated, and implemented as required.
  • Provide feedback for improving Threat Modeling tools and processes.
  • Leverage industry best practices to continually improve process maturity.
  • Promote awareness of security issues among application teams and business teams through training and awareness programs.
  • Stay updated through continuous learning of emerging technologies like LLM, ZTNA, LCNC etc.
Skillset Required
  • Experience in handling web application security risks - OWASP Top-10 E.g.: Injection attacks, buffer overflow, cross-site scripting etc.
  • Skill to provide security controls guidance related to data usage, processing, storage, and transmission.
  • Knowledge of different Threat Modeling methodologies (E.g.: STRIDE, VAST, Attack Tree etc.).
  • Knowledge of security assessment, risk management processes, cyber security threats, vulnerabilities, attack methods and techniques.
  • Knowledge of organization's information security policies, standards, and procedures.
  • Ability to apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation).
  • Knowledge of network access, cryptography, cryptographic key management concepts, identity and access management (e.g.: OAuth, OpenID, SAML).
  • Knowledge of cloud security and API security.
  • Knowledge of security assessment for Microservices architecture, Databases (SQL/NoSQL), Google Cloud Platform resources like cloud storage, Redis Pub/Sub and Cloud Run.
  • Knowledge of computer networking and network security architecture concepts including topology, protocols, components, and principles.
  • Knowledge of laws, regulations, policies, and ethics related to cybersecurity and privacy.
  • Ability to evaluate information for reliability, validity, and relevance.
  • Excellent analytical, communication, documentation, and presentation skills.
  • Knowledge of emerging technologies like AI/ML, Zero Trust, LCNC etc. and willingness to learn new technologies and concepts.
  • Knowledge of Agile practices and SDLC
  • Self‑Starter who can work in ambiguous situations and drive to a solution.
  • Strong interpersonal skills, including ability to educate and influence.
Qualifications Required
  • Bachelor’s degree in computer science, Cyber Security, or related field of study
  • 3+ years of experience in Cyber Security or related fields of IT.
  • Knowledge on Security Framework such as NIST CSF, ISO27001, OWASP Top-10 etc.
  • Cyber security certifications like CISSP, OSCP, CEH, Pentest+ are highly desirable.

Requirements:

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Product Security Architect (Threat Modeling)
Product Security Architect (Threat Modeling)

JUARA IT SOLUTIONS • Chennai District

On-site
INR 3,000,000 - 5,000,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Nagpur District

On-site
INR 1,200,000 - 1,800,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Greater Noida

On-site
INR 1,200,000 - 2,400,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Indore District

On-site
INR 1,800,000 - 3,200,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Khordha

On-site
INR 1,200,000 - 1,800,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Mumbai

On-site
INR 1,200,000 - 1,800,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Bengaluru

On-site
INR 1,500,000 - 2,600,000
Product Security Architect
Product Security Architect

Juara IT Solutions • Chennai District

Remote
INR 150,000 - 210,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Delhi

On-site
INR 1,500,000 - 2,500,000
Application Security Consultant (Threat Modeling )
Application Security Consultant (Threat Modeling )

Consult Asia • Chennai District

On-site
INR 1,500,000 - 2,300,000