Gurgaon, Haryana, India
9 days ago
IND IT Manager -Information Security
Job Title - Pentration Tester Location- Noida/Gurugram Description Aon is seeking a driven and experienced offensive security professional to join Aon’s growing internal penetration testing team. The IT Manager-Information Security will work closely with various cross-organizational teams to enumerate various risks throughout Aon’s environment and be a key resource for guiding proper remediation of identified vulnerabilities. Core Responsibilities · Application Penetration Testing (Web-app, API, Thick Client, Mobile, IoT) · Network Penetration Testing (Internal, External) · Threat Modeling · Source-Code Reviews · Manage priorities and tasks to achieve utilization targets · Ensure quality reports and services are delivered efficiently and on time · Collaborate with cross-functional teams to ensure that security best practices are integrated into the development process · Enable remediation of discovered vulnerabilities through the building of relationships with engineering teams · Drive security into SDLC using security tooling (DAST/SAST/SCA) · Continue to develop professional skills with relevant industry specific certifications or training Required Experience · 5+ years of relevant experience working in Penetration Testing and Application Security · Strong understanding of security principles, policies, and industry best practices · Familiarity with Open-Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), Software Assurance Maturity Model (SAMM), National Institute of Standards and Technology (NIST) Special Publications, and PTES (Penetration Testing Execution Standard) · Familiarity with advanced tools and techniques to simulate real-world attacks and identify potential security weaknesses · Excellent verbal and written communication skills, including technical writing of assessment reports, presentations, and operating procedures · Shows an aptitude for leadership both through practice maturation and by mentoring junior teammates · Experienced testing against one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FedRAMP, or HITRUST · Strong working knowledge of at least two programming or scripting languages · Familiarity with best practices for securing the SDLC and DevOps processes · Ability to triage security incidents when needed · Bachelor’s Degree or equivalent certification and experience Preferred Experience · Relevant security certifications strongly preferred (e.g. OSCP, CRTP) · Red/Purple team operations · Cloud Service penetration testing tradecraft and methodologies across multiple service providers (AWS, Azure, GCP) · Mobile platform penetration testing tradecraft and methodologies across both widely used platforms (iOS and Android) · Software development/engineering How we support our colleagues In addition to our comprehensive benefits package, we encourage a diverse workforce. Plus, our agile, inclusive environment allows you to manage your wellbeing and work/life balance, ensuring you can be your best self at Aon. Furthermore, all colleagues enjoy two “Global Wellbeing Days” each year, encouraging you to take time to focus on yourself. We offer a variety of working style solutions, but we also recognise that flexibility goes beyond just the place of work... and we are all for it. We call this Smart Working! Our continuous learning culture inspires and equips you to learn, share and grow, helping you achieve your fullest potential. As a result, at Aon, you are more connected, more relevant, and more valued. Aon values an innovative, diverse workplace where all colleagues feel empowered to be their authentic selves. Aon is proud to be an equal opportunity workplace. Aon provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, creed, sex, sexual orientation, gender identity, national origin, age, disability, veteran, marital, domestic partner status, or other legally protected status. We welcome applications from all and provide individuals with disabilities with reasonable adjustments to participate in the job application, interview process and to perform essential job functions once onboard. If you would like to learn more about the reasonable accommodations we provide, email ReasonableAccommodations@Aon.com #LI-RK2 2552275
Confirm your E-mail: Send Email