Job Description
In This Role, Your Responsibilities Will Be:
o Perform Vulnerability Analysis and Penetration testing of Web / Thick client / Mobile applications used in critical infrastructure
o Provide appropriate mitigation actions for the identified vulnerabilities to development team
o Analyze Static and Dynamic Code Analysis tools findings and share the appropriate inputs to the development team.
o Work closely with the development team to validate and strengthen security controls.
o Mentor junior Penetration Test engineers on test execution
Who You Are:
You are a detail-oriented and collaborative professional who thrives in a fast-paced Agile environment. Your ability to communicate effectively and work closely with cross-functional teams makes you a valuable contributor to product success.
For This Role, You Will Need:
Experience in Vulnerability Analysis and Penetration testing of Web / Thick client / API s / Mobile applications
Hands on experience with different security pen test tools like Burp Suite, Kali Linux, DAST like App Scanner or similar other tools widely used for Penetration Test. Understanding of crypto standards, authentication and authorization systems.
Understanding of security protocols (HTTPS, HSTS, TLS, SSH).
Good analytical skills and decision-making capabilities.
Proven verbal and written communications. o Secondary Qualifications:
Knowledge of scripting language (Perl/Python/Shell etc. ) for exploit development.
Familiar with OWASP Top10 and IEC62443 standard.
Collaborative approach and experience of working with internal/external partners.
Preferred Qualifications That Set You Apart:
o B. Tech- Computer Engineering / MCA with 4-7 years relevant experience.
o Cybersecurity Certification will have added advantages.
.
.
Job Classification
Industry: Industrial Equipment / Machinery
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Application Security Engineer
Employement Type: Full time
Contact Details:
Company: Emerson
Location(s): Pune
Keyskills:
Linux
Test execution
OWASP
Agile
SSH
Perl
Vulnerability
Medical insurance
Python
Penetration testing