Cyber Security Risk Assessment and Advisory Services(CSRA)
Mumbai, Maharashtra, India
ā ļø We'll shut down after Aug 1st - try fooš¦ for all jobs in tech ā ļø
Weekday
At Weekday, we help companies hire engineers who are vouched by other software engineers. We are enabling engineers to earn passive income by leveraging & monetizing the unused information in their head about the best people they have worked...This role is for one of the Weekday's clients
Min Experience: 6 years
Location: Mumbai
JobType: full-time
Qualifications:
- Bachelorās or Masterās degree in Computer Science, Information Technology, Engineering, or a related field
- Relevant certifications preferred: CISSP, OSCP, CRISC, CSSLP
Experience:
- 10ā12 years in cyber security, including 8+ years of hands-on experience in:
- Security assessments for web, mobile, APIs, network, infrastructure, and platforms
- Risk evaluation for AI-driven products
Requirements
Technical Expertise:
- In-depth understanding of security frameworks and standards such as OWASP, SANS, MITRE ATT&CK
- Strong knowledge of threat vectors, exploitation techniques, and mitigation strategies
- Proficiency in threat modeling and gap analysis of security controls
- Familiarity with containerization technologies (Docker, OpenShift, Kubernetes) is a plus
- Experience in coding (1ā2 years) is advantageous
Key Responsibilities:
- Perform architecture and data-flow reviews, threat modeling, and risk analysis
- Evaluate design documents (SRS, HLD/LLD, BCP) for potential security weaknesses
- Develop and maintain control checklists aligned with global security standards
- Conduct security risk assessments across applications, APIs, mobile platforms, microservices, infrastructure, and AI solutions
- Prepare comprehensive risk reports, classify risks based on severity, and monitor project adherence to security controls
- Recommend mitigation strategies and compensating controls to development and operations teams
- Collaborate effectively with internal teams, project managers, and customers
- Escalate high-impact risks that affect the overall security posture
- Keep up-to-date with evolving cyber threats and actively contribute to team knowledge sharing
- Train and mentor team members on security best practices and methodologies
Personal Attributes:
- Strong communication skillsāboth written and verbal
- High attention to detail and critical thinking ability
- Capable of explaining complex risk concepts in a clear, simple manner
- Skilled at managing multiple priorities in a fast-paced environment
- Self-motivated, adaptable, and able to work independently or as part of a team
Key Skills:
- Cybersecurity
- Risk Assessment & Advisory
- OWASP, MITRE, SANS
- CISSP, OSCP, CRISC (preferred)
- Threat Modeling
- Application & Infrastructure Security
- AI Product Risk Evaluation
- Container Security
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index š°
Tags: APIs CISSP Computer Science CRISC CSSLP Docker Kubernetes Microservices MITRE ATT&CK OSCP OWASP Risk analysis Risk assessment SANS Security assessment
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.