India · Staff/Principal
Applicants who checked fit first are 3.1× more likely to hear back
Your score for this role already exists
ASAI compared this JD against 41 signals - skills, seniority, domain, stack overlap etc. Add a resume and it unlocks in about 30 seconds.
No credit card · 1 tap with Google
LOW
Reserve Bank Information Technology Pvt Ltd is showing limited hiring activity lately. Expect slight delayed response.
First 72 hours
Window passed - posted 221d agoEarly applicants get seen before the pile builds.
Not a repost
The first time we've seen this listing - it hasn't been closed and reopened.
Skill tags are not available for this role yet.
|
Reporting Structure |
Reports to Senior Manager – SSDLC |
|
Education |
University degree in the field of computer science or IT. |
|
Experience/ Qualifications |
· 6+ years of Information Security background is essential. · 4+ years of Software Development Lifecycle, Security reviews in project lifecycle · Experience in evaluating the control environment through Architecture, Software Design reviews and or not limited to Threat Modelling. · Security reviews of design flaws · Hands on experience in Static Application Security Testing and Dynamic Application Security Testing. · Experience in standardizing application security tools and methodology · Should be familiar with the best practices of OWASP, SANS Institute, ISACA, GAO, FISCAM, NSA, NIST, Internet Engineering Task Force (IETF) · Develop a detailed security framework to be followed by developers in every steps of software development lifecycle. · Experience in software/application analysis tools like SAST, DAST, SCA, IAST, RASP, threat modelling, etc. |
|
Industry |
Information technology |
|
Responsibilities |
· Conduct internal / third-party Security (SSDLC) Risk Assessments on business-critical assets and processes. · Coordinate with project teams for ensuring security framework to enforced in all phases of SSDLC · Prepare security effectiveness reports for management. · Testing the applications / systems for SSDLC framework to RBI / ReBIT Information Security practices · Ensure new applications are inducted into Data centre after conducting SSDLC assessments · Follow up on closure of these gaps and escalate when necessary · Define and enhance application security requirements and standards which must be designed for agile development methods leveraging traditional application architectures · Assist DevSecOPs team to create secure predictable CI/CD pipeline processes, and enable application teams to develop new capabilities securely |
|
Certifications (any two) |
|
Free · no signup
Daily job drops, skill trends and free resources - posted straight to the group. Leave any time.
No spam. Just jobs and resources.
Why people use ASAI
Scored, not searched. Every role ranked against your actual profile.
Alerts as often as hourly. Reach new roles while the pile is still small.
Skill gaps, spelled out. See exactly which requirements you don't meet yet.
Verified jobs, only. Say no to ghost jobs. Your time deserves respect.
Keep browsing