The security testing architect would be responsible to create and drive best practices for security testing while ensuring that the team is operating efficiently by keeping the team current in terms of test practices, process and too
Responsibilities
Direct Responsibilities
Champion lead adoption of security testing practices, techniques, tools for multiple applications
Serve as an expert to guide review security testing requirements
Benchmark applications against OWASP best practices
Provide assurance of adherence to best practices in security
Understand Security Test Requirements, Prepare SOP, Security Test Scenarios supervise Test execution
Review and publish Test Reports
Perform tool evaluation for security testing tools and make appropriate recommendations. Introduce tools to improve time to market and alignment for CI- CD implementation
Prepare Security Test Strategy, Test Plan and Test Specifications for services
Contribute to all aspects of the delivery lifecycle to provide guidance that ensures security of applications
Help creation and implementation of a secure development lifecycle
Expertise in performing security code review using tools like Fortify SCA
Prepare security testing guidelines, standards and develop robust processes to ensure quality
Provide technical expertise in security testing to project teams
Mentor team members
Participate in recruitment activities
Contributing Responsibilities
Assist in project planning, roadmap management, scheduling, budgeting and tracking activities.
Technical Behavioral Competencies
Good knowledge of OWASP, OSSTMM, SANS and other application security standards and best practices
Must have good experience in HP Fortify / Checkmarx, BurpSuite Pro / Acunetix and other Security testing tools.
Expert level understanding of application security practices
Keen desire to be at the leading edge of technology and process practices
Extensive hands on experience in active development, test automation related practices
Ability to work under minimal supervision
Strong analytical, interpersonal skills
Must have the ability to interact professionally with a diverse group of developers, tester engineers, and managers. Ability to work well with culturally diverse global teams
Excellent written and oral communication skills
Specific Qualifications (if required)
Minimum 7 years of experience and proven accomplishments in application security testing for enterprise applications in Web/ Thick client / Mobile technologies
Skills Referential
Behavioural Skills : (Please select up to 4 skills)
Ability to deliver / Results driven
Attention to detail / rigor
Adaptability
Ability to share / pass on knowledge
Transversal Skills: (Please select up to 5 skills)
Analytical Ability
Ability to anticipate business / strategic evolution
Ability to manage a project
Ability to manage / facilitate a meeting, seminar, committee, training
Ability to inspire others generate people's commitment
Education Level:
Bachelor Degree or equivalent
Experience Level
At least 7 years
Other/Specific Qualifications (if required)
Relevant industry recognized security testing industry certifications like CISSP / CISM / OSCP / ECSA , etc
NA
Keyskills: Assurance Enterprise applications Analytical Project planning Scheduling Budgeting Asset management Information technology Financial services Recruitment
BNP Paribas has had a presence in India for over 150 years having established its first branch in Kolkata, in 1860. With this unparalleled experience of the Indian market, it is among the leading corporate banks in the country. Through its branches in eight key cities Mumbai, Delhi, Kolkata, Chenna...