Security Expert (Application / Web Security)
India
Role Overview
We are seeking a skilled Security Expert with strong expertise in application and web security to identify vulnerabilities, ensure secure coding practices, and safeguard enterprise applications. The ideal candidate should have hands‑on experience working closely with development teams and implementing modern security standards and frameworks.
Key Responsibilities
- Perform application security assessments including vulnerability analysis and remediation.
- Ensure adherence to security best practices including OWASP guidelines.
- Design and implement secure authentication and authorization mechanisms.
- Apply cryptographic principles to protect sensitive data.
- Identify and mitigate security vulnerabilities across applications and systems.
- Collaborate with development teams to integrate security into the SDLC.
- Conduct security testing using various tools and techniques.
- Provide recommendations for improving application and infrastructure security.
- Participate in code reviews with a focus on security.
Technical Skills & Requirements
- Core Security Skills: Strong understanding of OWASP Top 10 vulnerabilities, Authentication & Authorization mechanisms, Applied Cryptography, Security vulnerabilities & remediation techniques.
- Web & Network Knowledge: Good understanding of Web Applications, Web Services, and SOA (Service‑Oriented Architecture), Network and web‑related protocols (HTTP, HTTPS, TCP/IP, etc.).
- Security Tools: Experience with open‑source network security testing tools, Familiarity with tools such as Network Monitoring (NetMon), MITM (Man‑in‑the‑Middle) tools.
Mandatory Requirements
- Experience working as part of development teams in at least 5 projects.
- Certification in Application Security / Web Security from a reputed organization.
Educational Qualification
- B.E / B.Tech in Computer Science / IT OR Postgraduate (CS/IT) OR equivalent qualification.
- Strong analytical and problem‑solving skills.
- Deep attention to detail with a security‑first mindset.
- Ability to identify risks and provide practical remediation solutions.
- Effective communication and collaboration with technical teams.
Work Environment & Expectations
- Work closely with developers, architects, and DevOps teams.
- Ensure security is embedded across the development lifecycle.
- Stay updated with the latest security threats, tools, and best practices.