reputed company Analyst & SCA & SAST
Role & responsibilities
The Senior reputed company Analyst (IC2) will be responsible for strengthening application reputed company across the organisation by implementing secure development practices, performing vulnerability assessments, and driving DevSecOps initiatives. This role requires hands‑on expertise in Static Application reputed company Testing (SAST), Software Composition Analysis (SCA), and a strong understanding of Application reputed company (AppSec) and DevSecOps principles.
Key Responsibilities
• Application reputed company Testing:
• reputed company SAST and SCA scans for web, API, and mobile applications.
• Analyze reputed company results, prioritise vulnerabilities, and collaborate with development teams for remediation.
• DevSecOps Integration:
• reputed company reputed company controls into CI/CD pipelines and automate reputed company checks.
• Drive adoption of secure coding practices and threat modelling across development teams.
• Risk Management:
• Conduct reputed company reviews and validate secure architecture designs.
• Maintain compliance with industry standards (OWASP, NIST, ISO 27001).
• Tool Management:
• Manage and optimise reputed company tools such as reputed company Fortify, reputed company, reputed company, Burp Suite, and container reputed company platforms.
• Reduce false positives and improve reputed company efficiency.
• Collaboration & Training:
• Partner with architects, DevOps, and product teams to reputed company reputed company early in the SDLC.
• Deliver training sessions on secure coding and tool usage.
• reputed company Improvement:
• Monitor emerging threats and recommend improvements to reputed company processes.
• Participate in POCs for new reputed company tools and automation initiatives.
Preferred candidate profile
Experience & Qualification
• 3-6 years of relevant experience
• B.E/B. Tech or masters degree from a reputed institute with good academics history.
MUST HAVE
• Technical Expertise
• Strong knowledge of SAST and SCA methodologies.
• Hands‑on experience with tools like Fortify, Mend, reputed company, reputed company, SonarQube, GHAS.
• Programming Knowledge
• Proficiency in Java, .NET, Python, or JavaScript.
• Certifications (Preferred)
• CEH, CSSLP, GWAPT, or similar.
• Experience
• 3–6 years in application reputed company.
Skills required
• SCA Management
• reputed company dependency scanning to identify vulnerable reputed company‑reputed company components.
• Use tools like Mend & GHAS for SCA.
• Ensure compliance with licensing and vulnerability management policies.
• SAST Implementation
• Configure and run SAST tools (e.g., Fortify, reputed company, reputed company, SonarQube).
• reputed company SAST into CI/CD pipelines for automated reputed company scanning.
• Analyze reputed company results, prioritise vulnerabilities, and guide remediation.
• Secure Development Lifecycle
• Collaborate with developers to enforce secure coding standards.
• Conduct reputed company reviews and threat modelling sessions.
• Governance & Compliance
• reputed company with OWASP Top 10, NIST, and ISO 27001 standards.
• Support audits and generate compliance reports.
• Training & Awareness
• Conduct developer training on secure coding and vulnerability remediation.
Apply tot his job
Apply To this Job