C

QA Analyst 3-ProdDev

CLBPTS
On-site
India
QA Analyst
Description
Responsible for developing, applying and maintaining quality standards for company products with adherence to both internal and external standards. Develops and executes software test plans. Analyzes and writes test standards and procedures. Maintains documentation of test results. Analyzes test results and recommends corrective actions.

As a member of the technical/process QA division, you will develop quality standards, control methods and theories to be utilized during manufacturing, testing and inspection to access product quality. Develop standards and procedures to provide quality guidance methods.

Duties and tasks are varied and complex needing independent judgment. Fully competent in own area of expertise. May have project lead role and or supervise lower level personnel. BS or MS degree or equivalent experience relevant to functional area. 4 years of software engineering or related experience.



Responsibilities

The role is for Cloud Security Engineer and the candidate is responsible to perform end to end security scans on CEGBU products and ensure that they are security complaint.

Minimum 6 to 8 years of hands on experience on end to end Security engineering process is desired

Hands on experience with across versatile tools Burp Suite Pro, IBM App Scan, Fortify, Qualys, HTTP Watch, Open SSL.
Experience on OWASP Pen testing methodology, attack vectors in web applications, risk assessment and vulnerability reporting, Create threat model for applications, Preparation of comprehensive security report detailing findings and provide remediation suggestions for Vulnerabilities.
Knowledge of cloud security, security certifications i.e. CISSP, ECSA, OSCP
Deep knowledge of encryption and cryptographic algorithms including current industry standards for encryption, hashing, certificates etc


Experience in Mobile Application Penetration Testing - iOS & Android
Knowledge of Java programming is a huge plus
Experience in shell/ perl/ python / java / DevOps tools etc
Expertise in one or multiple areas such as operating systems, web services, programming languages, network devices, application vulnerabilities and attack vectors