Application Security Analyst | Rancho Cucamonga, CA (Onsite) | 12+ Months Contract and Full-Time at Rancho Cucamonga, California, USA |
Email: [email protected] |
http://bit.ly/4ey8w48 https://jobs.nvoids.com/job_details.jsp?id=326872&uid= From: SAGAR TOMAR, IT TRAILBLAZERS LLC [email protected] Reply to: [email protected] Application Security Analyst Location: Rancho Cucamonga, CA (Onsite) Duration: 12+ Months Contract / Full-Time Who are we looking for Looking for application and security analyst with minimum of total 3+ years of experience in conducting application and security tests against variety of technologies including web application, cloud, mobile and infrastructure as part of a team. Should be able to serve as a trusted advisor in helping customers with relevant decisions based on the findings of the reports and dashboards. Technical Skills: Conduct application and security assessment and penetration tests against variety of technologies including web application, mobile, cloud, as part of a team 3+ years of working experience of Static and Dynamic Application Security Testing of web applications, web services, APIs and microservices including on cloud Working experience and good understanding of application development, SDLC process and Descopes Good knowledge of Static & Dynamic Application Security Testing tools Good information security threat & risk-based prioritization abilities Analyze vulnerability reports, segregate & prioritize the vulnerabilities, and do impact analysis, risk assessment, and identify false positives Good foundation of common software vulnerabilities and their remediation/ mitigation techniques Assist with determining and defining appropriate testing scope Work collaboratively with a variety of internal stakeholders to deliver high quality penetrations tests Provide reports which highlight and clearly articulate vulnerabilities and weakness to clients in terms they understand Work within virtual teams of security and technical specialists to ensure quality delivery of leading security assurance services to our internal clients Maintain a relevant skill with which to conduct penetration testing in the following domains: Infrastructure Application Mobile (iOS, Android) Code review Work independently or as part of a team on penetration tests Work with global team and external entities to deliver Security Assurance services Analyze and review security issues identified Supplement automated assessment techniques with manual security assessment approaches Communicate security issues identified and mitigation/remediation options Should be able to articulate technical concepts in plain words to non-technical community Provide regular assessment progress updates that include sufficient detail to convey work completed and upcoming activities Research new and emerging threats, counter controls, and technologies on various platforms Pen testing skills and experience in application/infrastructure/mobile Understanding of the security mechanisms associated with applications, Operating systems, Networks, Databases, Virtualization, and cloud technologies Should be well versed with the following: TLS transparency log analysis Scheduled web application penetration testing Application Manual & automated testing External penetration testing Multi-factor authentication (MFA) assessment Vulnerability management program enhancements Programming /scripting skills Experience working with NIST, OWASP, MITRECWE, MITRE ATT&CK etc. CREST/OSCP/SANS or equivalent pentesting certification Tools experience in security assessment tools (e.g. NESSUS, NMAP, BurpSuite,ZAP,OWASP tools, Kali Linux tools) Experience in Automating Security tests using scripting languages (e.g., Python, Perl, Ruby) Good Written & Verbal Communication Skills Presentation Skills Define and assist in the creation of operational and executive security reports and dashboards Sagar Tomar IT Technical Recruiter M: +1(848)-271-1272 ( Call or Text) O: +1(732)-227-1772* 226 [email protected] 510 Thornall St, Suite #306 Edison, NJ 08837 Over 22 years of driving innovation and partnering with businesses for growth Disclaimer: You have received this message because either you have contacted our company to express interest in employment, or you have posted your resume in an area accessible to recruiters or HR professionals, which implies an interest in being contacted regarding employment opportunities. If it's not a right fit or you're not interested, please disregard Keywords: information technology California New Jersey http://bit.ly/4ey8w48 https://jobs.nvoids.com/job_details.jsp?id=326872&uid= |
[email protected] View All |
02:27 PM 05-Feb-23 |