Source description
About the role
Leverage current and emerging AI capabilities to establish a world-class Application Security function, including key responsibilities outlined below.
Lead and conduct highly advanced, in-depth white-box penetration testing of web application and APIs.
Perform comprehensive security assessments and penetration testing on Cloud Infrastructure (AWS and Azure), including configuration, deployment models, and integrated services.
Advise on shift-left controls and influence Engineering to adopt key controls.
Deep-dive into Kubernetes clusters (EKS and AKS) and containerized applications, exploiting misconfigurations and security flaws in containerized workloads.
Define the offensive security roadmap and lead the adoption of cutting-edge testing techniques and tools.
Serve as an advisor to Architecture, Engineering, and DevOps teams, providing expert guidance on secure design patterns and critical remediation strategies across all technology domains (App, API, Cloud, K8s).
Design and execute complex, multi-stage attack paths targeting LLMs and AI-integrated systems, covering LLM top 10 vulnerabilities.
Act as primary point person in customer facing discussions, and assume responsibility to address Application Security issues to address customer needs.
Lead advanced threat modelling exercises for major initiatives, focusing on identifying sophisticated, high-impact risks specific to our unique environment.
Analyse, prioritize, and articulate complex security findings based on holistic risk, exploitability, and business context, focusing on vulnerabilities that pose a significant threat to organizational goals.
Drive the selection, customization, and deployment of best-in-class security tools and develop proprietary tools or frameworks to address unique testing challenges.
Develop and present executive-level reports and technical findings, ensuring clear and impactful communication to both senior non-technical leadership and deep-technical teams.
Mentor and formally guide senior and principal-level penetration testers, fostering a culture of excellence, continuous learning, and security research
More at Saviynt
Related open roles
Vice President - Security Operations Center and Cyber Defense
Bangalore · Hybrid
IAM Technical Architect, Professional Services
Remote · Atlanta
Associate Principal (IGA Architect), Professional Services
Bangalore · Hybrid
IAM/IGA Consultant, Professional Services
Remote · United States
Principal Threat Researcher/ Associate Principal Threat Researcher
Bangalore · Hybrid
Staff Product Manager, Identity Threat Detection & Response
San Francisco Bay Area · Hybrid
