01Key Responsibilities
Conduct regular security assessments, penetration testing, and vulnerability scans of applications and services.
Perform static and agile analysis on web applications, mobile applications, and APIs to identify and resolve security vulnerabilities.
Collaborate with engineering teams to implement secure development practices, reviewing code for security flaws and recommending improvements.
Conduct threat modeling and risk assessments to identify potential security threats and implement appropriate mitigation strategies.
Assist in the development and execution of security tools, procedures, and frameworks to automate security testing processes.
Keep up-to-date with the latest security vulnerabilities, exploits, and security best practices.
Provide technical leadership and mentorship to junior security engineers and developers on security issues.
Advise on the secure architecture and design of systems, identifying potential security gaps early in the design phase.
Create and maintain documentation related to security testing, security incidents, and remediation activities.
Support the incident response team in handling security incidents and provide post-incident analysis.
Required Skills & Experience:
6-12 years of experience in application security or related field.
Strong knowledge of web and mobile application security vulnerabilities (OWASP Top 10, OWASP Mobile, etc.).
Experience with penetration testing tools (Burp Suite, OWASP ZAP, etc.) and techniques.
Familiarity wi .