Array ( [0] => application-security-testing [1] => bangalore ) Application Security Testing Jobs in Bangalore,Application Security Testing Job Vacancies in Bangalore Karnataka
5

Application Security Testing Job Vacancies in Bangalore

filter
  • Location
  • Role
  • Functional Area
  • Qualification
  • Experience
  • Employer Type

Devsecops Engineer

Resourcetree Global Services

  • 3 - 6 yrs
  • 25.0 Lac/Yr
  • Bangalore
Cyber Security Engineer Cyber Security Application Security Testing Network Security Information Security Manual Testing Manual Tester Automation Testing
ESSENTIAL DUTIES AND RESPONSIBILITIES:1. Perform Application, API and Microservices Pentest2. Perform Network Pentest (Internal and External)3. Perform Mobile App Pentest, Mobile Assessments,4. Threat Modelling, Legal Reviews,5. Reporting and the PoCs of the vulnerabilities, and Documentation,6. Coordinate with various stakeholders,7. Perform R&Ds8. Other Security AnalysisMandatory Requirements:1. Relevant Experience in Security Domain: 3+ Years.2. Proven expertise & track record in Web Application Penetration testing (Web, Mobile.3. API/Web Services on JAVA & .Net) through DAST Manual approach.4. Proven expertise & track record in Mobile Application Penetration testing (Web, Mobile. API/Web Services on JAVA & .Net) through DAST Manual approach.5. Hands-on experience in DAST tools, API (SOAPUI, PostMan).6. Experience in DAST Manual Assessments, Threat Model and Penetration Testing.7. Good Network Pentest skills-sets for external and internal networks.8. Excellent written and verbal communication skills.Preferred Skillsets:1. Hands-on experience of DevSecOps.2. Good Knowledge of Java, .NET, SQL queries (Oracle, PostgreSQL etc).3. Experience in Automating Security tasks using Python or Java Frameworks and System/Network Exploitation is a bonus.4. Experience in Red Teaming.5. Handson experience, knowledge and understanding of Security Frameworks.6. Handson experience on MS Tools.
View all details
Application Security Testing Dast MPT Application Testing
Company Name: QuesscorpJob Title: Application Security Testing + DAST + MPTExperience Required: 3-10 YearsNotice Period: Immediate / 15 Days (Max)Location: Hyderabad, Pune, Mumbai, Bangalore, Chennai, Kolkata, GurgaonDescription:Qualifications Required: Bachelor's degree or higher in Computer Science, or equivalent. 3-10 years of experience working in the application security, vulnerability assessment, penetration testing, mobile application security, Thick Client and Web API security assessments. Strong understanding of OWASP Top 10 vulnerabilities but not limited to. Proficiency in industry standard vulnerability testing tools like Appscan, Web Inspect, Burp Suite, ZAP proxy, Fiddler, Olly debugger, IDA Pro, EchoMirage etc. Ability to perform manual penetration testing and security assessments using automated tools. Knowledge of web application components like frontend, backend, databases and application servers. Understanding in web development technologies like HTML, CSS, JavaScript, PHP, JAVA, .Net and backend databases Understand on the basic concepts of reverse engineering, memory analysis etc. Understanding of basic networking protocols such as TCP/IP, DNS, HTTP Understanding of vulnerability classification using National Vulnerability Database nomenclature such as CVE/CVSS Certified Information Systems Security Professional (CISSP), Offensive Security Certified Professionals (OSCP), Offensive Security Web Expert (OSWE), Web Application Penetration Tester (GWAPT), Certified Ethical Hacker (CEH), or equivalentPreferred: Experience in Web and Mobile application security assessments and penetration testing. Experience with vulnerability analysis tools such as Appscan, Web Inspect, Burp Suite. Outstanding English written and oral communication skills and the ability to prioritize work Strong understanding of web and mobile vulnerabilities.
View all details

Senior Security Consultant

Varutra Consulting Pvt Ltd

Penetration Testing VAPT Application Security Cloud Security Network Security Mobile Application Penetration Vulnerability OWASP BurpSuite Cyber Security Ethical Hacking Red Teaming Thick Client Security Consultant IT Security
The major focus will be on Application Penetration testing followed by Network Penetration Testing and Mobile Security assessments, Red Team Assessment, Phishing, IoT, Cloud Pen testing (Azure and AWS, Google Cloud), Cloud Configuration Audit, Architecture Review. The work involves Test Case Creation, Penetration Testing, Source code reviews, Report Creation & presentation to stakeholders along with operation and construction of tools to assist in these tasks. Well versed with OWASP Top Ten and WASC Threat Classifications Expertise in Vulnerability Assessment and Penetration Testing of Web Applications BusinessLogic based application testing Penetration testing of Mobile applications and websites. Exploitation of the issues found and presenting the impact occurred Source Code Reviews Well versed in Java Secure Code Review Well versed in OWASP Code Review concepts & identifiers Familiar with popular tools: Application Proxy: Burp suite, Paros, OWASP ZAP, WireShark, Vulnerability Scanners: IBM AppScan, HP WebInspect, Nessus, NTO Spider. Exploit Toolkits: Metasploit, Exploit DB etc Understanding of the nature and sources of security vulnerabilities, how to identify and exploit Sound Knowledge of TCP/IP protocol Stack, HTTP protocol, encoding standards, encryption technologies and development frameworks. Skills Mandatory: Application Security Testing/Penetration Testing (Web-based, Thick client, web services, Mobile) Network Security Testing/Penetration Testing (Network, OS, Databases etc) Static Code Analysis/ Secure Code Review
View all details
  • 10 - 15 yrs
  • 25.0 Lac/Yr
  • Bangalore
Application Security Testing Security Testing Application Testing Application Development
Security Test Specialist Skills: Web Application Security Testing Mobile Application Security Testing Thick Client Application Security Testing API Security Testing Infrastructure& Network Security TestingJob Requirements:Key Responsibilities: Role is performing Static & Dynamic web application security assessments using hands on techniques for identifying SQL injections, XSS, CSRF, authentication/authorization, penetration testing, OWASP top 10 issues, SANS top 25 issues. Will be working on security technologies for secure software such as cryptography, techniques Will be working in reviewing code developed in JAVA, Net and other leading modern programming languages and technologies Will be able to monitor Infrastructure and Network security Able to estimate efforts, plan, able to identify the right tools, right security testing techniques and strategize security testing activities (Optional for test analyst) This is mandatory for Security Test Lead/ Architect and Security Test ManagerTechnical Experience: Vast experience in removing false positives, analyzing static scan CheckMarx, Appscan Source reports. Experience on automated scanning tools ie Fortify, Asppscan Source, Sonar Cub Hands on application security testing tools like Burp, Fiddler, Postman, Wireshark etc.. Understanding of OWASP top 10/SANS top 25 and mitigation techniques Provide expert advice and recommendation to application development team as well as vendo
View all details

Get Personalized Job Matches

Based on your experience, skills, interests, and career goals to help you find the most relevant opportunities faster. Register Now!
SAST DAST Java Testing Coding OWASP SDLC SQL Security Architect
Project Role : Security Architect Project Role Description : Define the security architecture, ensuring that it meets the business requirements and performance goals. Must have Skills : Static Application Security Testing (SAST) Job Requirements : Key Responsibilities : Running SAST Scans, Analyzing tool results, perform SAST, Manual code review, remediation support, review open source components Technical Experience : a Reviewing application code against the secure coding baseline and practices b Experience in performing static web application security assessments using hands on techniques for identifying SQL injections, XSS, CSRF, authentication/authorization, OWASP top 10 issues c Reviewing code developed in JAVA, Net and other leading modern programming languages d Removing false positives, analyzing static scan CheckMarx,d Good to have skills in SCA Professional Attributes : Expect to have good verbal and written communication and a good team player Educational Qualification : BE/B Tech Additional Information : Expect to have good verbal and written communication and a good team player
View all details