Skip to main content
Close Search

Specialist Cybersecurity - Vulnerability scanner - SAST/SCA/DAST

Bengaluru, India

Apply Now

defend

Be a part of our elite cybersecurity team that provides strategy,
consulting, and threat detection to a wide range of customers.

"If you want to be continually challenged, always learning and able to shift careers, AT&T is the right place for you! I started at AT&T 18 years ago and never envisioned having an opportunity to transition into a Cybersecurity role."

Connie Bragg — Professional Cybersecurity

Technology

Connect communities with the power of technology.

Innovation is the power to Think Big

We live our values without question or compromise.

A Look at Our Design Team

A day in our UX/UI team.

Revolutionize Business in our Digital Team

Transform how employees and customers connect

Job Description:

About the Company:

At AT&T, we’re connecting the world through the latest tech, top-of-the-line communications and the best in entertainment. Our groundbreaking digital solutions provide intuitive and integrated experiences for millions of customers across online, retail and care channels. Join our mission to deliver compelling communication and entertainment experiences to customers around the world as we continue to evolve as a technology-powered, human-centered organization. As part of our team, you’ll transform the way we deliver a seamless customer experience with digital at the center of all you do. In our world, digital is much larger than just an eCommerce channel, we are transforming all channels to digitally perform as one team to create a better customer experience. As we move into 2024, the digital transformation will revolutionize the digital space and you can build a career that will propel your future.

About the Job:

This position is a Specialist Cyber Security for performing Application Security Testing in Cyber Security Organization. This profile will be passionate in preventing risk by identifying vulnerabilities in the applications of the enterprise by configuring scan settings for effective vulnerability enumeration, Identify and document findings, approve false positives and define/document approved mitigations used by AppSec Testers.

Experience Level: 5+ years

Location: Hyderabad or Bengaluru

Roles and Responsibilities:

  • Perform SAST/SCA/DAST scans using industry vulnerability scanner

    • SAST/SCA – Veracode, using supplied compiled binary, configure scan platform to correct scan for both static code CWE’s as well as SCA derived CVEs.   Work will include coordination with app owner to ensure all branches of code are included in compiled binary file.

    • DAST – Work begins with crawling the target application to identify existing directory and file structure.  Once identified, execute DAST scan using HCL product to identify dynamic issue only visible during code execution.

  • During testing process, tester MUST ensure application is not degraded and/or taken out of service due to scanning activities

  • Tester must ensure results from scanner are present in VM reporting platforms and visible to approved app users

  • Perform manual validation and false-positive analysis on the automated scan results.   

  • Provide remediation support will analyze the top-rated vulnerabilities along with provide support to application teams on remediation strategies from identified risks. 

  • Execute scan retest by performing revalidation tests of previously identified critical and high severity vulnerabilities as requested by the client application teams. 

Primary / Mandatory skills:

Overall – 5+ years of IT experience

  • 4+ years of application security Experience

  • 3+ years of Application Security testing Experience

  • Bachelor's degree required.

  • Deep familiarity with the OWASP Top 10 and other security concerns for web applications

  • Deep Understanding of OWASP Application Security Verification Standards (ASVS)

  • Deep understanding of SAST, DAST, SCA Scanning practices

  • Experience in scanning leveraging Veracode, Ashcan or other enterprise tools.

  • Understand how to interpret and assess CVEs (Common Vulnerability and Exposures) and CWEs (Common Weakness Enumeration) as found by scanning tools

  • Understanding of SAST, DAST tools and dependency scanning tools

  • Experience working/integrating with secret management systems

  • Advanced knowledge of front-end and back-end web application development in at least one technology stack (.NET, Java, PHP, Ruby/Rails, Angular, Node.js, etc.)

  • Track record of staying current with trends, techniques, tools, and processes that drive improvement of security posture of applications

  • Strong documentation skills

  • Excellent verbal and written communication skills, with proven technical writing abilities (English language proficiency required)

  • Team-oriented thinking with demonstrated ability to produce high-quality work as part of a fast-paced, dynamic team

  • Proven ability to communicate, collaborate, and present effectively with teams and individuals in different disciplines or areas 

Technical Skills: SAST, DAST, SCA, expertise in identifying vulnerabilities and Recommending Mitigations.

Additional information (if any): Flexible to provide coverage in US morning hours upon need.

Certification: CSSLP or equivalent is desirable.

Weekly Hours:

40

Time Type:

Regular

Location:

Bangalore, Karnataka, India

It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities.



Job ID R-29008 Date posted 07/02/2024
Apply Now

Benefits

Invested in your satisfaction and continued success.

We take care of our own here (hint: that could be you). Our benefits and rewards mean we cover some of your biggest needs with some of the coolest offerings. We already think we’re a pretty great place to work. We’re just trying to rack up some bonus points.

Let’s start with the big one: Your work gets rewarded with competitive compensation and benefits. It really does pay to be on our team.

Compensation

When it comes to priorities, we know family tops the list. For the moments that matter the most, you'll be there for them, and we'll be here for you.

Family Leave

Paid Time Off

Our people have class. Literally. We can help you out on approved education costs with our tuition assistance plan.

Tuition
Assistance

Here’s another reason to breathe easy: You and your family get access to excellent medical, dental and vision insurance options.

Insurance Options

Wanna make your friends really jealous? You’ll get discounted access to the latest and greatest AT&T products and services — plus other awesome items, like tickets to live events.

Discounts

You strike us as an over-achiever (don’t worry, it’s a compliment). Our training and development programs are your ticket to expert status in your job.

Training & Development

When the day comes that you get some much needed R&R (not that you’d ever want to leave #LifeAtATT) you’ll know your future is set with the AT&T Retirement Savings Plan (ARSP).

Savings

Give back to your community and connect with colleagues through social and team-building events, and annual paid time off for volunteer efforts of your choice.

Community & Team Events

Wellness resources and incentives to help you prioritize your health and wellbeing and be your best self inside and outside of work.

Total Wellbeing

The Hiring Process

Step 1

Complete a quick application online and check your status often.

Step 2

Virtual or in-person
Interviews

Dress professionally and ensure good WiFi interviewing virtually.

Step 3

Conditional
Job Offer

After a background check, you're part of the team.

Step 4

Welcome! Onboarding
and Training Begins

Our training and certification programs set you up for success.

Here are similar jobs, or

New Search

Discover more at AT&T

Sign up for job alerts, updates and more.

Interested InSelect a job category from the list of options. Search for a location and select one from the list of suggestions. Finally, click “Add” to create your job alert.

  • Technology, Bengaluru, Karnataka, IndiaRemove
  • Cybersecurity, Bengaluru, Karnataka, IndiaRemove

Back to top