Senior Member Technical - Application Security - Devsecops

Bengaluru-EPIP Industrial Area

Broadridge

Broadridge, a global Fintech leader helping clients capitalize on what’s next with communications, technology, data and intelligence solutions.

View all jobs at Broadridge

Apply now Apply later

At Broadridge, we've built a culture where the highest goal is to empower others to accomplish more. If you’re passionate about developing your career, while helping others along the way, come join the Broadridge team.

Role and responsibilities include:

  • Conduct regular security assessments (SAST/SCA/DAST) utilizing both automated and manual methods to identify security vulnerabilities
  • Responsible for assessing the risk of the found vulnerabilities as per Broadridge Security Standards and documenting them with proper proof of concepts, as necessary
  • Perform security design and architectural reviews for new and existing applications to ensure they meet security standards and best practices.
  • Collaborate with technical teams and business stakeholders to provide expert advice on vulnerability remediation strategies and best practices.
  • Assess risks reported in the vulnerability assessment results and other security related data, and prioritize remediation actions
  • Integrate security practices into the CI/CD pipeline to identify and address vulnerabilities early in the development cycle and maintain the tooling in the CICD pipeline
  • Conduct regular security group reviews.
  • Identify and implement automation opportunities within security testing and review processes to enhance efficiency and effectiveness.
  • Awareness of working and adapting to Agile environment

Skill Requirements:

  • A bachelor’s or higher degree in Computer Science, Computer Engineering, or similar discipline.
  • Minimum 6 years of hands-on experience in application security and 2 years in DevSecOps, and extensive knowledge in any one of the object-oriented programming languages.
  • Strong Information Security technical skills and knowledge to identify, research and understand security control gaps and program compliance issues
  • Strong web application security experience with thorough understanding of web application vulnerabilities and secure coding practices
  • Demonstrated experience in performing threat modeling, security architecture review, and vulnerability assessment on applications and infrastructure
  • Deep understanding of OWASP methodologies for web, API, mobile, CI/CD, and LLM.
  • Knowledge in Cloud(AWS, Azure) Architecture
  • Familiarity with CI/CD tools (e.g., Jenkins, GitLab CI) and their integration with security tools.
  • Understanding of Security Policies, Procedures, Audit, and Compliance requirements
  • Skills in Terraform/Chef/Python/Perl/Ruby is desired
  • Superior ability to effectively communicate security concepts, threats, controls, and mitigation/remediation to application teams and audiences not familiar with such topics

Soft Skills:

  • Excellent communication and presentation skills
  • Ability to work collaboratively and build consensus is essential
  • Ability to manage multiple priorities effectively.
  • Strong analytical and problem-solving skills with attention to detail.
  • Willingness and capability to self-learn

Good to Have:

  • Experience in conducting infrastructure vulnerability scans, analysis of scan results, and vulnerability triage.
  • Experience in assessing and enhancing security of cloud-based environments and services.
  • Experience in AWS security involving tools and process
  • Experience in container/Kubernetes security
  • Active participation in the security communities and groups
  • Demonstrated commitment to staying up to date with emerging security threats and technologies.
  • Hold at least one applicable industry certification; CEH, CISSP, OSCP, CISM, Cloud Security etc.


Broadridge associates helped us envision our Connected Workplace - a work model that allows associates around the globe, dependent upon their role responsibilities, take advantage of the benefits of both on-site and off-site work to support our clients, one another, and the communities where we live and work. Our Connected Workplace is grounded in the concept of FACS: Flexible, Accountable, Connected, and Supported, which is our commitment to our associates. FACS supports our strong culture and allows us to achieve business goals while supporting meaningful work-life integration for our associates.

We are dedicated to fostering a diverse, equitable, and inclusive environment and committed to providing a workplace that empowers associates to be authentic and bring their best to work. We believe that associates can only do their best when they feel safe, understood, and valued, and we work diligently and collaboratively to ensure Broadridge is a company—and ultimately a community—that recognizes and celebrates diversity in all its dimensions.

Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  2  1  0

Tags: Agile APIs Application security Automation AWS Azure CEH CI/CD CISM CISSP Cloud Compliance Computer Science DAST DevSecOps GitLab Jenkins Kubernetes LLMs OSCP OWASP Perl Python Ruby SAST Security assessment Terraform Vulnerabilities Vulnerability scans

Perks/benefits: Career development Flex hours

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.