Job Description & Requirements
Roles & Responsibilities:
Triage and perform root-cause analysis of vulnerabilities identified through SAST, DAST and penetration testing.
Implement and/or guide remediation for OWASP Top 10, API, authentication, access control and dependency vulnerabilities.
Work with Java, Angular/React application teams to deliver secure code fixes and dependency upgrades.
Validate false positives, coordinate security retesting/rescans and provide remediation evidence.
Track vulnerability backlog, SLA, aging and closure status using JIRA.
Prepare remediation reports, dashboards, exception registers and governance updates.
Provide secure coding recommendations and drive reduction of recurring security findings.
Skills Required
Strong hands-on experience in Application Security and vulnerability remediation.
Good knowledge of OWASP Top 10, secure SDLC, SAST, DAST and penetration testing findings.
Strong Java and modern web application experience, preferably Angular/React.
Experience with REST APIs, API security, authentication, authorization and secure coding.
Knowledge of cloud security practices, dependency management and secrets protection.
Experience with JIRA and vulnerability tracking/reporting processes.
Strong analytical, communication, stakeholder-management and problem-solving skills.
EA License No. R1877766| EA Reg. No 25C2690
Tangspac Search is a fully owned subsidiary of Tangspac consulting which is one of Asia’s leading professional staffing firms. For over twenty years, we have been passionate about providing the best recruitment services for our clients, with a deep focus on the financial services and technology sectors.
EA registeration number - 25C2690 | *************