Roles & Responsibilities:
Triage and perform root-cause analysis of vulnerabilities identified through SAST, DAST and penetration testing.
Implement and/or guide remediation for OWASP Top 10, API, authentication, access control and dependency vulnerabilities.
Work with Java, Angular/React application teams to deliver secure code fixes and dependency upgrades.
Validate false positives, coordinate security retesting/rescans and provide remediation evidence.
Track vulnerability backlog, SLA, aging and closure status using JIRA.
Prepare remediation reports, dashboards, exception registers and governance updates.
Provide secure coding recommendations and drive reduction of recurring security findings.
Skills Required
Strong hands-on experience in Application Security and vulnerability remediation.
Good knowledge of OWASP Top 10, secure SDLC, SAST, DAST and penetration testing findings.
Strong Java and modern web application experience, preferably Angular/React.
Experience with REST APIs, API security, authentication, authorization and secure coding.
Knowledge of cloud security practices, dependency management and secrets protection.
Experience with JIRA and vulnerability tracking/reporting processes.
Strong analytical, communication, stakeholder-management and problem-solving skills.
ICON OUTSOURCING