Job Summary
Application Security
Educational Qualification: BE/BTech/MCA Experience: 4+ years
Certifications such as CISSP, CISA, CISM, or ISO 27001 Lead Auditor preferred.
Key Responsibilities:
Prior experience in a regulatory compliance in BFSI is preferable.
Develop and manage the GRC framework to ensure regulatory compliance.
Ensure adherence to standards like ISO 27001, PCI DSS, SOC 2, and NIST.
Establish and enforce security policies for data protection and secure development.
Collaborate with development teams to integrate security into the SDLC.
Conduct application security assessments, code reviews, and vulnerability scans.
Manage audits for application security controls and vulnerability management.
Conduct risk assessments, maintain a risk register, and track remediation efforts.
Rapid decision making to prevent delayed releases due to security issues.
To coordinate with various stakeholders for completion of Audit points observed by internal and external auditor.
Make sure all CERTS in, RBI and various security advisories are checked and recommended action taken on the respective platforms in the application.
Working knowledge of web and mobile application security.
Extensive experience in Vulnerability Assessment and Penetration testing, Web Application security
Knowledge on conducting Security Audits. • Good knowledge on Threat modeling, cryptography, and common application