Padmi

QA Security Engineer with Black Duck

MumbaiPosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at IIT JOBS INC

Opens the source posting on shine.com

Source description

About the role

View original

You will own application and open-source security quality assurance, focusing on Software Composition Analysis (SCA) and vulnerability management. You integrate SCA tools into CI/CD pipelines and drive remediation tracking for open-source vulnerabilities. ResponsibilitiesPerform vulnerability triage and license compliance analysis for open-source components.Integrate Black Duck or equivalent SCA tools into CI/CD pipelines (GitHub, GitLab, Azure DevOps, Jenkins).Track and coordinate remediation efforts for identified security vulnerabilities.Validate secure SDLC practices and DevSecOps implementations across cloud platforms.Ensure compliance with application security standards through rigorous QA processes.Required Skills58 years of experience in Application Security, Security QA, or Software Security.Hands-on expertise with Black Duck or equivalent SCA tools (CodeDx, JFrog Xray, FOSSA).Proven experience in OSS vulnerability analysis and license compliance.Strong knowledge of CI/CD integration for security tooling.Understanding of Secure SDLC and DevSecOps practices.Familiarity with cloud platforms (AWS, Azure, GCP). You will own application and open-source security quality assurance, focusing on Software Composition Analysis (SCA) and vulnerability management. You integrate SCA tools into CI/CD pipelines and drive remediation tracking for open-source vulnerabilities. ResponsibilitiesPerform vulnerability triage and license compliance analysis for open-source components.Integrate Black Duck or equivalent SCA tools into CI/CD pipelines (GitHub, GitLab, Azure DevOps, Jenkins).Track and coordinate remediation efforts for identified security vulnerabilities.Validate secure SDLC practices and DevSecOps implementations across cloud platforms.Ensure compliance with application security standards through rigorous QA processes.Required Skills58 years of experience in Application Security, Security QA, or Software Security.Hands-on expertise with Black Duck or equivalent SCA tools (CodeDx, JFrog Xray, FOSSA).Proven experience in OSS vulnerability analysis and license compliance.Strong knowledge of CI/CD integration for security tooling.Understanding of Secure SDLC and DevSecOps practices.Familiarity with cloud platforms (AWS, Azure, GCP).

One address, no account. We’ll tell you when matching roles go live.

More at IIT JOBS INC

Related open roles

View all roles