Research, develop, and apply integration on various security tool.
Review and create the standards of security platforms such as DevSecOps, SCA, etc.
Define standard security controls on technology, which are used in business applications.
Understand existing process, identify the gaps, and define the controls and integrations around it.
Build, maintain, and continually improve technical infrastructure to support operations
Implement new projects in order to improve the effectiveness of bank security.
Provide and discuss the controls and Mitigation with the different stakeholders for the process enhancement.
Job Requirement:
Information security 4+ years\' experience in one or more of the following areas: Automation, Scripting languages, application security, or network security, Incident response.
Hands on experience with security testing tools and open source technologies such as checkmarx, DevOps, WebInspect, Burp Suite, Nessus, etc
Able to communicate effectively up, down and across the organization, both verbally and in writing. Including the ability to explain complex technical findings to technical teams and stakeholders.
Proven ability to manage technical staff and projects, perform effective long term planning and implement continuous process improvement practices.
Should have an understanding of networking concepts, Windows, Linux and Mac operating systems, cloud and web application vulnerabilities and exploitation.
Bachelor\'s Degree in computer science/Cyber security
Experience in offensive security tool development, customization or expansion.
Ability to customize code comfortably in one or more interpreted languages (eg. Python, Bash, PowerShell, etc.)
One or more of the following certifications (CEH, OSCP, OSCE, GPEN, GXPN, CRTO, CRTP)