Job Description:
Perform application security scans (e.g., DAST and SCA) on applications and APIs to identify vulnerabilities and weaknesses.
Triage security findings, collaborate with development teams, and prioritize remediation of identified vulnerabilities.
Drive threat modeling as part of the SDLC and maintain threat models for critical applications, identifying risks and proposing mitigations.
Lead the Security Champions program, promote secure coding practices, and provide guidance on security requirements for new projects.
Proven experience in application security, specifically in application security testing and vulnerability management.
Hands-on experience with Application Security tools and knowledge of common application vulnerabilities (e.g., OWASP Top 10).
Experience with threat modeling methodologies and proficiency in at least one programming language (e.g., Java, Python, JavaScript). Expertise in C# and C++ would be highly preferred.
Exposure to thread modeling is very advantageous
Any Graduate