Base Career helps you apply smarter for this job.
Key skills for this role
· Conduct and manage SAST, DAST, IAST, and SCA scans across applications.
· Perform and support threat modeling for applications and services
· Perform secure design and architecture reviews for applications, APIs, and microservices.
· Embed security checkpoints across requirements, design, build, test, and release phases.
· Provide secure code review support and hands-on remediation guidance.
· Embed application security across the SDLC in collaboration with development and DevOps teams along with proactive remediation.
· Conduct internal and external VAPT for web, mobile, and API applications.
· Perform advanced manual testing using Burp Suite, and custom test cases.
· Validate scanner findings, eliminate false positives, and retest fixes.
· Provide actionable remediation guidance to address identified vulnerabilities.
· Track vulnerabilities and ensure closure within defined SLAs
· Test for business logic, access control, and API security vulnerabilities.
· Integrate security tools into CI/CD pipelines (Jenkins, GitHub, GitLab).
· Implement security quality gates to block critical vulnerabilities.
· Secure pipelines, secrets, artefacts, and third-party dependencies.
· Automate vulnerability tracking via JIRA or Azure Boards.
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
Gurugram, IND
Gurugram, IND
Gurugram, IND
Gurugram, IND
Gurugram, IND
Gurugram, IND
Gurugram, IND
Gurugram, IND
· Own end-to-end vulnerability lifecycle management.
· Define and enforce remediation SLAs based on risk.
· Maintain and track overall application security posture across the application portfolio
· Perform risk-based prioritization considering exploitability and business impact.
· Produce dashboards and reports for management visibility.
· Ensure alignment with OWASP Top 10, OWASP ASVS, NIST, and ISO 27001, CMMI Security and customer security audits.
· Manage and coordinate resolution of application security incidents raised across internal teams and external stakeholders.
· Maintain application security artefacts including risk and scan reports.
· Perform impact analysis, root cause analysis (RCA) for application security incidents and define corrective and preventive actions (CAPA)
· Participate in risk assessments for new features and integrations.
· Work closely with developers, DevOps, and product teams to embed security controls and work on remediation of identified vulnerabilities.
· Develop secure coding guidelines and reusable remediation playbooks.
· Explore automation and AI capabilities to scale application security testing and reporting.
· Leverage AI‐assisted security tools to improve vulnerability triage, prioritisation, and remediation guidance.
· Drive a shift-left security culture within agile teams.
· Bachelor’s degree in Computer Science, Information Security, or related field.
· Total 6+ years and Relevant 4-5 years of hands-on experience in Application Security, VAPT along with SAST/DAST tools.
· CEH, OSCP (Good to have).
Maruti Suzuki India Limited is India's largest automobile manufacturer and a subsidiary of Suzuki Motor Corporation. Founded in 1981 and headquartered in New Delhi, the company manufactures and sells a wide range of passenger vehicles across India and international markets.
Visit company websiteJobs and hiring trendsFull-time
Lead · 4–5 years experience
Apply faster on company sites with our extension.