Application Security Specialist - AVP
Date: Mar 15, 2025
Location: NAVI MUMBAI, IN
Company: icicisecur
- Hands on experience with popular security tools – Nmap, Nessus, Kali, Metasploit, BurpSuite, Netsparker, Fortify/Checkmarks, SonarQube, Threat modelling tools
- Mobile application Vulnerability Assessment and Penetration testing (IOS and Android), Application Security controls for mobile applications as per SANS and OWASP top 10.
- Knowledge of web Application security testing (Black, white and grey box).
- Knowledge and hands on of API security testing.
- Thorough understanding of vulnerability assessment and sharing the mitigation / recommendation for the identified security weakness.
- Experience with OWASP Top 10, SANS 25, static/ dynamic analysis, and common security tools
- Experience in AWS, Docker, EKS/Kubernetes security
- Hands on Knowledge of DevsecOps and related tools and methodology
- Good in reporting and tracking of closure of open application related findings
- Good knowledge of threat modelling and understanding the different attacks as per various models such as STRIDE, etc.
- Co-ordination with stakeholders, build and maintain positive working relationships with them