Home

Required TRM Offensive Application Security Consultant - USC GC ONLY at Tampa, Florida, USA
Email: [email protected]
http://bit.ly/4ey8w48
https://jobs.nvoids.com/job_details.jsp?id=382923&uid=

From:

Gaurav Bhagat,

kpg99 inc

[email protected]

Reply to:   [email protected]

Hi,

Please find the job description below and let me know your interest:

Position: TRM Offensive Application Security Consultant

Location: Hybrid - Tampa, FL or Jersey city , NJ ( 2-3 Days a week)

Duration: 6+ Months

USC & GC Only

Job Description :

Candidate photo ID or passport size picture and D.O.B is compulsory for submission.

Business Unit Description

Our Risk Management teams work to protect the safety and soundness of our systems and are responsible for identifying, managing, measuring and mitigating a spectrum of key risk types including credit, market, liquidity, systemic, operational and technology in all existing and new products, activities, processes and systems.

The Technology Risk Management department is responsible for setting strategic direction in the areas of IT Risk and Information Security. They are accountable for maintaining DTCC's corporate security policies and control standards and acting as an operational arm for monitoring threat intelligence.

Why you'll love this job: Being a member of the Application Security team, you will be part of the Technology Risk initiative to support offensive security assessments on applications and provide SME guidance to key projects.

The Application Offensive Security Consultant is responsible for managing, providing technical direction and performing security assessment on applications. The person in this role should possess good understanding of application security testing, red team / adversarial engagements, and penetration testing and related development expertise to guide project initiatives to ensure security best practices are being used.

Your Primary Responsibilities:

Perform Offensive Application Testing against applications and APIs.

Perform application threat hunting to evaluate risk to applications.

Coordinate with application development teams to collect the application details.

Provide the vulnerability information in the predefined report format after performing the testing using manual methodology and tools

Provide assistance to the developers and business teams in detailing the vulnerabilities reported along with the recommendations for remediation

Align risk and control processes into day-to-day responsibilities to monitor and mitigate risk; escalates appropriately

Generate reports on assessment findings and summarizes to facilitate remediation, document technical issues identified during security assessments

Perform threat modeling, design, and code views to assess security implications and requirements

Be a subject matter expert and respond to any security engineering questions/ requests related to Application Defense enhancements

Research and implement tools and techniques to secure and continuously monitor the applications

Collaborate with Security Architects, Product Manager, Risk Managers, and other teams to deliver high quality product.

Cultivate and maintain relationships with key partners at varying organizational levels

Talents needed for Success:

A broad and deep understanding of security threats, vulnerabilities, risks associated with nature of applications and APIs

Experience testing Docker, Kubernetes and other container orchestration solutions.

Ability to explain vulnerabilities and weaknesses in OWASP Top 10 and SANS Top 25 to any audience and discuss effective defensive techniques

Understanding of Authentication, Authorization mechanism programmatically across different web technologies and protocols (SSL/TLS, REST, OAuth, SAML etc.)

Experience in facilitating technical conversations between engineering and operations

Ability to work under pressure, multitask and be flexible

Bachelor's degree is desirable

Minimum of 3 years of experience in App Pentest tools such as Burp Suite or Net Web Inspect

Certified in OSCP or GWAPT

Keywords: information technology green card Florida Idaho New Jersey
http://bit.ly/4ey8w48
https://jobs.nvoids.com/job_details.jsp?id=382923&uid=
[email protected]
View All
07:42 PM 27-Feb-23


To remove this job post send "job_kill 382923" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]


Time Taken: 32

Location: Tampa, Florida