Back to Job Portal
I

Application Security and Vulnerability Management Experts

Infosys · BANGALORE
Posted June 25, 2026 via Infosys

SAST, DAST, Infra VM, Qualys, Nessus,Tenable, Red teaming, Purple teaming, vulnerability Management, Penetration testing

Application Security

Perform secure code reviews (manual & automated) for applications written in languages like Java, Python, JavaScript, etc.

Integrate security into CI/CD pipelines (DevSecOps practices).

Conduct risk assessments, threat modeling, and security design reviews.

Identify, analyze, and report vulnerabilities such as OWASP Top 10 issues.

Work closely with development teams to remediate security flaws.

Penetration Testing

Conduct black-box, gray-box, and white-box penetration testing on:

Web applications

Mobile applications (Android/iOS)

APIs and microservices

Perform network and infrastructure security assessments when required.

Use automated tools and manual techniques to discover vulnerabilities.

Develop detailed penetration testing reports with risk ratings and remediation recommendations.

Security Tools & Technologies

Utilize tools such as:

Burp Suite, OWASP ZAP

Nmap, Metasploit

Nessus, Qualys

SAST/DAST tools (e.g., Checkmarx, Veracode, Fortify)

Create custom scripts for automation and testing (Python, Bash, etc.).
Applying to this role?

Book a mock interview matched to your skills and get a written scorecard before the real thing.

Book interview prep