Bengaluru
32 days ago
Security Analyst

At EY, you’ll have the chance to build a career as unique as you are, with the global scale, support, inclusive culture and technology to become the best version of you. And we’re counting on your unique voice and perspective to help EY become even better, too. Join us and build an exceptional experience for yourself, and a better working world for all. 

 

 

 

 

Application Senior Security Specialist 
Today’s world is fueled by vast amounts of information. Data is more valuable than ever before. Protecting data and information systems is central to doing business, and everyone in EY Information Security has a critical role to play. Join a global team of almost 950 people who collaborate to support the business of EY by protecting EY and client information assets! Our Information Security professionals enable EY to work securely and deliver secure products and services, as well as detect and quickly respond to security events as they happen. Together, the efforts of our dedicated team helps protect the EY brand and build client trust.

 

Within Information Security we blend risk strategy, digital identity, cyber defense, application security and technology solutions as we consider the entire security lifecycle. You will join a team of hardworking, security-focused individuals dedicated to supporting, protecting and enabling the business through innovative, secure solutions that provide speed to market and business value.
 

The opportunity
As application senior security specialist for the Security Certification Team, candidate will be resposible to conduct application vulnerability assessment and penetration testing of EY applications before they move into production and support the team to meet overall security certification goals and client requirements.
 

Your key responsibilities

Capable of conducting application & network penetration testing and vulnerability assessments Preparing detailed security review reports and remediation guidances  Researching new application security vulnerabilities and attack vectors Leading strategic initiatives and mentoring new team members  Support the team in updating their skill and knowledge  Knowledge and Skills Requirements:

 

Skills and attributes for success

Hands on experience of Web, thick client, Mobile, VOIP, Wireless application security testing.   Proficient in automated and manual application testing methodologies. Expert in using manual testing tools such as Burp Professional, Nmap, Wireshark, Nessus, echomirage. Expert in using automated application scan tool Webinspect / Qualys WAS, CheckMarx, WhiteSource etc.. Basic Knowledge of programming language like C/C++, C#, JAVA, ASP.NET and familiar with PERL/Python Scripting. Familiar with OWASP and Secure SDLC standards Knowledge of common security requirements within ASP.NET & Java  application Good Knowledge of TCP/IP, Network Security.   Knowledge / experience on code review Good Technical aptitude, problem solving and ability to quickly learn and master new topics and domains. Excellent communication skills; written and verbal. 

 

To qualify for the role you must have
Education:

Bachelor's degree in a technical discipline such as Engineering or Computer Science or equivalent work experience in IT and Information Security.

 

Experience:

4 - 6 yrs. experience in application security assessment Hands on experience of Web, thick client, Mobile Application security reviews. Exposure and good understanding of the various manual testing methodologies.

 

Certification Requirements:

Desirable:  IT security Certifications (CEH. ECSA, OSCP etc..). 


What we offer
As part of this role, you will work in a highly coordinated, globally diverse team with the opportunity and tools to grow, develop and drive your career forward. Here, you can combine global opportunity with flexible working. The EY benefits package goes above and beyond too, focusing on your physical, emotional, financial and social well-being. Your recruiter can talk to you about the benefits available in your country. Here’s a snapshot of what we offer:

Continuous learning: You will develop the mindset and skills to navigate whatever comes next. Success as defined by you: We will provide the tools and flexibility, so you can make a significant impact, your way. Transformative leadership: We will give you the insights, coaching and confidence to be the leader the world needs. Diverse and inclusive culture: You will be accepted for who you are and empowered to use your voice to help others find theirs.

 


 

 

EY | Building a better working world 


 
EY exists to build a better working world, helping to create long-term value for clients, people and society and build trust in the capital markets.  


 
Enabled by data and technology, diverse EY teams in over 150 countries provide trust through assurance and help clients grow, transform and operate.  


 
Working across assurance, consulting, law, strategy, tax and transactions, EY teams ask better questions to find new answers for the complex issues facing our world today.  

Confirm your E-mail: Send Email