Job Description
Job Description: - Minimum 10+ years of experience in cyber security testing - Experience on defining Security Testing Strategy, identifying tools and technologies and implementing it - Experience working on Cloud environment and validating cloud security architecture (OCI/AWS/ Azure/ GCP) – OCI is mandatory - Experience in managing penetration testing projects on web, mobile and APIs - Experience in conducting security audits covering application security, cloud security and network security - Experience in setting up SAST (Static Application Security Testing), SCA (Software Composition Analysis) and DAST (Dynamic Application Security Testing) solutions as part of DevSecOps - Experience in conducting false positive and false negative analysis as part of SAST, DAST and SCA - Good knowledge in Cloud Security testing tools like Prisma Cloud and security risk intelligence tools like Nexpose - Experience in ISO 27001, GDPR, PCI DSS compliance testing - Experience in working closely with development team and the InfoSec team for implementing cyber security solution - Experience in conducting internal and external network penetration testing - Strong knowledge on one of the programming languages (Java/C#/Python) - Experience in identifying cyber security requirements by working closely with the InfoSec team - Experience in security testing mobile applications (Android and iOS) and other thick client applications - The Cloud certifications like OCI Security Professional, AWS Certified Security – Specialty/Azure AZ-500 or other security certifications like OSCP, OSCE, CREST, CISSP is good to have - Strong knowledge on containerization and orchestration tools like Docker, Kubernetes, Rancher - String knowledge on one of the infrastructure-as-code tools - Terraform, Chef, Ansible 3 Must Have: 1) Experience in Oracle Cloud Infrastructure Security 4/5 2) Experience in Application Security Testing 4/5 3) Experience in Automated Security Testing covering DevSecOps 3/5
Any Graduate