Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Consultant-QA Pen Testing @ Genpact India

Home > Software / General IT

 Consultant-QA Pen Testing

Job Description

role of Consultant-QA

When building software, we will be going through many stages from initial requirements to go live, it s important to ensure that everything works according to specification. Were looking for a quality assurance engineer to help us maintain our high level of quality. QA tester will seek bugs, identify issues, report them, and see that they re dealt with.

In this role, you would be responsible for

  • Strong experience in Source Code review, Pen Tester and SAST experience.
  • Should experience in Pen testing, web application security testing using automated tools.
  • Good indepth hands on experience in cloud security.
  • Should have strong knowledge on OWASP TOP 10, SANS 25 vulnerabilities identification and remediation.
  • Vulnerability Analysis (manual & automated) experience of web applications, Mobile and Network.
  • Perform manual and automated dynamic, grey-box & Black-box security testing and remediation planning on a wide range of web applications.
  • Identifying security vulnerabilities within web applications and Infrastructure.
  • Analysis of application source code for potential security flaws.
  • Execute and provide analysis and remediation recommendations for automatic SAST ( using tools like Checkmarx, Veracode, Coverity, ) and DAST ( using tools like Qualys, WebInspect/Fortify ) scans.
  • Provided training sessions to internal teams to have an exposure of security and real time attacks.
  • Performed manual and auto dynamic application security assessment on Intranet and external facing web applications.
  • High exposure on OWASP Industry standards for web application pen testing.
  • Analyzed and validated application security testing identified vulnerabilities and presented them to the application development teams and application owners.
  • Performed risk analyses to identify appropriate security countermeasures.
  • Responsible for performing security assessments, informing the client about inherent security risks, and providing meaningful hardening and mitigation strategies.
  • Identify security issues such as XSS, SQL Injection, XXE, Cookie Manipulation, parameter tampering and Buffer Overflow.
  • Giving security reviews for New products at Design levels & implementing Secure SDLC procedures using Threat Modelling.

Qualifications
Minimum qualifications

  • B.E./B.Tech/MCA/M.Tech
  • Excellent written and verbal communication skills
Preferred qualifications
  • Experience in SAST and Pen Testing.
  • Ability to work under minimal supervision and be proactive.
  • Ability to work with distributed team members including time zone flexibility
  • Should have Excellent communications skills, both written and verbal
  • Willingness to work in a meaningful and multifaceted environment
  • Must have worked on any of the standard bug reporting tool
  • Must have excellent analytical skill to find root cause and reproduce the issue.
  • Understand work youre doing/jobs, their functional requirements.
  • Clear Understanding of Software Testing Life Cycle.
  • Are you experienced in Agile Methodology.
,

Employement Category:

Employement Type: Full time
Industry: IT - Software
Role Category: General / Other Software
Functional Area: Not Applicable
Role/Responsibilies: Consultant-QA Pen Testing

Contact Details:

Company: Genpact India
Location(s): Hyderabad

+ View Contactajax loader


 Job seems aged, it may have been expired!
 Fraud Alert to job seekers!

₹ Not Specified

Similar positions

Openings for Software Engineer

  • Pes Hr Services
  • 3 Positions
  • Mumbai
  • 28 days ago
₹ 5 to 7 Yr

Genpact India

Genpact (NYSE: G) is a global professional services firm focused on delivering digital transformation for our clients, putting digital and data to work to create competitive advantage. We do this by integrating lean principles, design thinking, analytics and digital technologies with our domain and ...