MO

Software Security Analyst

Mobile Programming
Pune5-8 LPA Posted 13 May 2025
FULL TIME
secure coding
Penetration Testing
Owasp
Application Security
Java

Job Description

  • A bachelor's degree and 5 years experience in a development or software security / penetration testing role
  • Identify web application security vulnerabilities (e.g., OWASP Top 10) and offer resolution advice
  • Integrate security touch points into existing SDLC processes
  • Conduct risk assessments, threat modeling and information security reviews on Morningstar systems, applications and platforms
  • Work directly with internal business units to communicate risk and help resolve open vulnerabilities
  • Understand and help execute information security program goals
  • Assist in maintaining and updating information security policies and standards
  • Provide security remediation advice and training to technical personnel and security champions
  • Develop and enhance internal security processes, programs and procedures
  • Document secure coding guidelines and run training programs to assist internal development personnel
  • Collect application vulnerability metrics and introduce automated security checks into application build process
  • We're looking for someone who enjoys breaking code, solving puzzles, and diagnosing problems
  • Excellent communication skills and a strong understanding of software development and application security fundamentals
  • Candidates should be interested in keeping up with the latest security trends, as well as enjoy performing code / architecture reviews and penetration test activities
  • Experience with common static and dynamic analysis tools (Fortify, Web Inspect, AppScan, Burp, etc.)
  • A strong understanding of security best practices in Java, JavaScript, .NET, PHP and Ruby programming language
Join WhatsApp Channel