<?xml version="1.0" encoding="utf-8"?>
<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns="http://purl.org/rss/1.0/" xmlns:dc="http://purl.org/dc/elements/1.1/">
 <channel rdf:about="http://jobs.nullcon.net/rss.xml">
  <description>Latest jobs for Web Security</description>
  <link>http://jobs.nullcon.net/</link>
  <title>null Jobs</title>
  <dc:date>20-05-2013</dc:date>
  <items>
   <rdf:Seq>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/780/experienced-web-application-security-experts-at-security-brigade-infosec-pvt-ltd/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/767/web-application-security-analyst-immediate-at-entersoft-information-system-pvt-ltd/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/754/web-penetration-tester-at-sriinfotech/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/737/web-application-security-consultants-at-security-brigade-infosec-pvt-ltd/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/688/application-security-consultants-at-security-brigade-infosec-pvt-ltd/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/665/security-consultant-at-trend-micro/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/658/security-test-engineer-at-zenqa-pvt-ltd/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/641/application-security-technical-evangelist-presales-at-hp-fortify/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/639/senior-information-security-engineer-analyst-at-opentext-technologies-india-pvt-ltd/"/>
    <rdf:li rdf:resource="http://jobs.nullcon.net/job/616/application-security-test-engineer-at-code-decode-labs/"/>
   </rdf:Seq>
  </items>
 </channel>
 <item rdf:about="http://jobs.nullcon.net/job/780/experienced-web-application-security-experts-at-security-brigade-infosec-pvt-ltd/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Mumbai&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.securitybrigade.com&quot;&gt;http://www.securitybrigade.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;We are looking for:&#10;&#9;&lt;ul&gt;&#10;&#9;&#9;&lt;li&gt;Candidates with genuine interest in security &amp;#8211; preferably having done some projects on their own.&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Understanding of &lt;span class=&quot;caps&quot;&gt;OWASP&lt;/span&gt; Top 10 and &lt;span class=&quot;caps&quot;&gt;WASC&lt;/span&gt; Issues&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Development knowledge of any current programming languages&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Interested in manual testing and not just running tools&lt;/li&gt;&#10;&#9;&lt;/ul&gt;&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;a href=&quot;http://www.securitybrigade.com/careers/apply-for-security-consultant-job.php&quot;&gt;To apply for this role, take our online security auditor quiz at http://www.securitybrigade.com/careers/apply-for-security-consultant-job.php&lt;/a&gt;&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/780/experienced-web-application-security-experts-at-security-brigade-infosec-pvt-ltd/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/780/experienced-web-application-security-experts-at-security-brigade-infosec-pvt-ltd/</link>
  <title>[Full-time] Experienced Web-Application Security Experts at Security Brigade InfoSec Pvt. Ltd.</title>
  <dc:date>2013-05-09 01:42:23</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/767/web-application-security-analyst-immediate-at-entersoft-information-system-pvt-ltd/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Banglore&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://entersoft.co.in&quot;&gt;http://entersoft.co.in&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;Looking for someone with 3-5 years experience in web app PT,  who can join Entersoft immediately with in 10days. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;1.Bachelors degree in Computer Science, Information Systems, Engineering or related major&lt;br /&gt;&#10;2. Minimum 6 years experience in Application and network security&lt;br /&gt;&#10;3. Should have played the role of Security test lead at least with 2 projects&lt;br /&gt;&#10;4.  Advanced written and verbal communications skills&lt;br /&gt;&#10;5. Experience with a variety of information security processes and technologies such as:&#10;        5.1.       Common operating systems, network protocols, web services and databases&#10;        5.2.      Risk assessment and management&#10;        5.3.       Identity management and authentication&#10;        5.4.      Directory services&#10;        5.5.      Application security and systems development life cycle&#10;        5.6.        Data and systems integrity controls&#10;        5.7.       Encryption technology  &#10;        5.8.      Business requirements development and technical architecture  development&lt;br /&gt;&#10;6. Change control and release management&lt;br /&gt;&#10;7.  Network and application security assessment and ethical hacking&lt;br /&gt;&#10;8. System planning and integration&lt;br /&gt;&#10;9. Ability to adjust to changing priorities while multitasking effectively&lt;br /&gt;&#10;10. Experience in planning and implementing security test efforts, which includes manual security testing and developing custom security assessment scripts or programs&lt;br /&gt;&#10;11. Experience utilizing vulnerability assessment tools such as Nessus, AppDetective, BurpSuite, WebInspect, AppScan, and Fortify.&lt;br /&gt;&#10;12. Practical knowledge and experience with &lt;span class=&quot;caps&quot;&gt;OWASP&lt;/span&gt; top ten issues with an understanding of web-based application vulnerabilities&lt;br /&gt;&#10;13. Demonstrated leadership and strong interpersonal skills with the ability to work well in a team.&lt;br /&gt;&#10;14. Self-motivated with ability to work with minimal supervision.&lt;br /&gt;&#10;15. Excellent problem solving skills.&lt;br /&gt;&#10;16. Application development experience with programming languages such as Java, C, C++, C#,asp, and .NET is a great plus&lt;br /&gt;&#10;17.  Strong technical skills related to a broad range of operating systems and databases&lt;br /&gt;&#10;18.  Ability to review and audit source code analysis report&lt;br /&gt;&#10;19.  &lt;span class=&quot;caps&quot;&gt;CISSP&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;GWAPT&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;CEH&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;CCNA&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;CCENT&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;CCNP&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;GSEC&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;MCSA&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;CISM&lt;/span&gt; certifications are preferred&#10; &lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/767/web-application-security-analyst-immediate-at-entersoft-information-system-pvt-ltd/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/767/web-application-security-analyst-immediate-at-entersoft-information-system-pvt-ltd/</link>
  <title>[Full-time] Web Application Security Analyst (Immediate) at Entersoft Information System Pvt Ltd</title>
  <dc:date>2013-05-02 05:29:49</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/754/web-penetration-tester-at-sriinfotech/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Hyderabad&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://sriinfotech.org&quot;&gt;http://sriinfotech.org&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;We are looking at hiring multiple web Security Consultants to join our team in the Hyderabad office.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Overview of our Requirements&lt;br /&gt;&#10;Candidates with the following mind set, please do not apply:&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;I can hack because I can use Nessus &amp;amp; Nmap.&lt;br /&gt;&#10;Running some tools and scanners makes a complete PenTest.&lt;br /&gt;&#10;&lt;span class=&quot;caps&quot;&gt;ISO&lt;/span&gt; 27001 will help you become fully secure.&lt;br /&gt;&#10;I did &lt;span class=&quot;caps&quot;&gt;CEH&lt;/span&gt; and &lt;span class=&quot;caps&quot;&gt;CISSP&lt;/span&gt; because I hate coding.&lt;br /&gt;&#10;No offense to the above – If you are reading this post you are probably on the right track, and may get up there soon. We would like to hear from you as soon as you think you are ready.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Candidates with the following mind set, please do apply:&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;I wrote this tool that is now open source&lt;br /&gt;&#10;Application security and business logic testing is my favorite subject (special mention)&lt;br /&gt;&#10;I recently presented my research at a security conference / meet up&lt;br /&gt;&#10;The above are signs of the type of people we want to meet.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;About the Position&lt;br /&gt;&#10;This is a position for a Security Consultant to join our team. It is a do-it-all role and will involve some of the following:&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Participating in various audits ranging from Application Security, Mobile Security, Network Security, etc.&lt;br /&gt;&#10;Build tools to automate your work and be “process oriented”.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Experience:&lt;br /&gt;&#10;Web-security Analyst:Positions:5 : Experience=6months-2years&lt;br /&gt;&#10;Sr.websecurity analyst:positions2: experience=3+ years&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/754/web-penetration-tester-at-sriinfotech/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/754/web-penetration-tester-at-sriinfotech/</link>
  <title>[Full-time] web penetration tester at sriinfotech</title>
  <dc:date>2013-04-18 23:54:59</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/737/web-application-security-consultants-at-security-brigade-infosec-pvt-ltd/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Mumbai&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.securitybrigade.com&quot;&gt;http://www.securitybrigade.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;Security Brigade is looking for talented Application Security Consultants who will be responsible for security assessments and penetration testing of application and enterprise environments as well as security research and development of security tools, processes and testing methodologies.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Key Tasks and Responsibilities&lt;/strong&gt;&#10;&#9;&lt;ul&gt;&#10;&#9;&#9;&lt;li&gt;Perform application penetration testing, vulnerability assessments and source code reviews&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Profile an application, identifying threats, and developing test cases to target identified threats&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Identify and exploit vulnerabilities in applications and networks&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Manage project timelines, deadlines and expectations  &amp;#8211; including customer interactions&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Prepare reports documenting identified issues based on internal templates&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Interact with customers in a collaborative consultative manor to deliver results, provide feedback and remediation recommendations on findings&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Research emerging security topics and new attack vectors&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Write tools and scripts to automate technical processes and make audits more efficient&lt;/li&gt;&#10;&#9;&lt;/ul&gt;&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Requirements&lt;/strong&gt;&#10;&#9;&lt;ul&gt;&#10;&#9;&#9;&lt;li&gt;In-depth understanding of security issues, exploitation techniques and remediation measures&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Ability to follow an in-depth manual testing process and not just run automated tools and copy paste results&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Development knowledge of any current programming languages&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Strong understanding of software and application security&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Strong oral and written communication skills&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Involvement in software community via &lt;span class=&quot;caps&quot;&gt;OWASP&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;WASC&lt;/span&gt;,  Null, ClubHack and/or open source development is highly desirable&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Track record speaking at major security conferences such as &lt;span class=&quot;caps&quot;&gt;OWASP&lt;/span&gt; Appsec, &lt;span class=&quot;caps&quot;&gt;SANS&lt;/span&gt; Appsec, and Blackhat, Nullcon is highly desirable&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Intercepting proxies (i.e. Burp Proxy, Charles Proxy, Webscarab Proxy, Paros Proxy, etc)&lt;/li&gt;&#10;&#9;&lt;/ul&gt;&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Workplace Perks&lt;/strong&gt;&#10;&#9;&lt;ul&gt;&#10;&#9;&#9;&lt;li&gt;Technically oriented workplace, work on a variety of interesting and challenging modules and projects, surrounded by hackers, coders and geeks.&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Casual clothes&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Breakfast service to your desk&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Full time cook will whip you up anything you can print a recipe for&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Team environment, collaborative learning environment, transparent communications&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Generally fun environment with lots of &lt;span class=&quot;caps&quot;&gt;LAN&lt;/span&gt; gaming and hackathons in off hours :)&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Opportunity to advance career at growing company always looking for emerging leaders&lt;/li&gt;&#10;&#9;&lt;/ul&gt;&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Candidate Profile / Criteria&lt;/strong&gt;&lt;br /&gt;&#10;&lt;span class=&quot;caps&quot;&gt;TLDR&lt;/span&gt; – Passion &amp;gt; Education&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;We don&amp;#8217;t require a B Tech or BSc degree, but plenty of the team has them. We always look at capabilities and experience first. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Candidates with published advisories, tools, research papers, generally anything that can demonstrate you know your stuff when it comes to web and mobile applications will be preferred.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;About Security Brigade&lt;/strong&gt;&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Security Brigade is a pure-play information security consulting firm specializing in delivering high quality services through expert driven manual testing. Founded on the core belief that “Great audits are done by great auditors – not expensive tools”, Security Brigade’s approach is built around strong processes that enable auditors to conduct in-depth manual security audits. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Security Brigade is based out of Mumbai, India and was founded in December 2006. It conducts thousands of audits a year for organizations such as: MakeMyTrip, Network 18, Tata Group, &lt;span class=&quot;caps&quot;&gt;HDFC&lt;/span&gt;, Vodafone, &lt;span class=&quot;caps&quot;&gt;IRDA&lt;/span&gt;, Reliance Money, Netmagic Solutions among many others. For more information, visit www.securitybrigade.com&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/737/web-application-security-consultants-at-security-brigade-infosec-pvt-ltd/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/737/web-application-security-consultants-at-security-brigade-infosec-pvt-ltd/</link>
  <title>[Full-time] Web Application Security Consultants at Security Brigade InfoSec Pvt. Ltd.</title>
  <dc:date>2013-04-04 22:24:05</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/688/application-security-consultants-at-security-brigade-infosec-pvt-ltd/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Mumbai&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.securitybrigade.com&quot;&gt;http://www.securitybrigade.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;Security Brigade is looking to expand its team with individuals that are looking for a hands-on, challenging and fast paced environment.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Our key criteria&lt;/strong&gt;&#10;&#9;&lt;ul&gt;&#10;&#9;&#9;&lt;li&gt;Must have an intimate knowledge of Burp Proxy (or an equivalent tool).&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Must be familiar with various development languages . Read only knowledge will also do.&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Must understand &lt;span class=&quot;caps&quot;&gt;HOW&lt;/span&gt; vulnerabilities work and not just be capable of running tools.&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Must be passionately curious about how things work.&lt;/li&gt;&#10;&#9;&lt;/ul&gt;&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;About the position&lt;/strong&gt;&lt;br /&gt;&#10;This is a position for a Web-Application Security Consultant to join our team. It is a do-it-all role and will involve some of the following:&lt;/p&gt;&#10;&#10;&#9;&lt;ul&gt;&#10;&#9;&#9;&lt;li&gt;Conducting security audits of various web and mobile based applications&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Working on various internal R&amp;amp;D projects&lt;/li&gt;&#10;&#9;&#9;&lt;li&gt;Working with our development team to help enhance our internal workflow driven security testing platform&lt;/li&gt;&#10;&#9;&lt;/ul&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;To Apply For This Job&lt;/strong&gt;&lt;br /&gt;&#10;Fill our online security auditor quiz &lt;a href=&quot;http://www.securitybrigade.com/company/apply-for-security-consultant-job.php&quot;&gt;here&lt;/a&gt; to apply for the role.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;About Security Brigade&lt;/strong&gt;&lt;br /&gt;&#10;Security Brigade InfoSec Pvt. Ltd. is a pure-play information security consulting firm specializing in delivering high quality services through expert driven manual testing. Founded on the core belief that “Great audits are done by great auditors – not expensive tools”, Security Brigade’s approach is built around strong processes that enable auditors to conduct in-depth manual security audits. Security Brigade’s proprietary E.D.I.T.E platform provides a workflow based testing engine that encapsulates the complete audit process. It allows expert auditors to follow am in-depth manual testing processes while assisted by a combination of proprietary, open-source and commercial technology.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Security Brigade is based out of Mumbai, India and was founded in December 2006. It conducts thousands of audits a year for organizations such as: MakeMyTrip, Network 18, Tata Group, &lt;span class=&quot;caps&quot;&gt;HDFC&lt;/span&gt;, Vodafone, &lt;span class=&quot;caps&quot;&gt;IRDA&lt;/span&gt;, Reliance Money, Netmagic Solutions among many others. For more information, visit www.securitybrigade.com&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Note: Applications have been closed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/688/application-security-consultants-at-security-brigade-infosec-pvt-ltd/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/688/application-security-consultants-at-security-brigade-infosec-pvt-ltd/</link>
  <title>[Full-time] Application Security Consultants at Security Brigade InfoSec Pvt. Ltd.</title>
  <dc:date>2013-03-02 02:18:54</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/665/security-consultant-at-trend-micro/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Vadodara&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.trendmicro.com&quot;&gt;http://www.trendmicro.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;Job Description:&lt;br /&gt;&#10;Job responsibilities&lt;br /&gt;&#10;Web Application Security expert is responsible for maintaining application security from external attacks, such as Cross Site Scripting, &lt;span class=&quot;caps&quot;&gt;SQL&lt;/span&gt; Injection, Cookie Manipulation, Buffer Overflows, etc. Check for new application vulnerability attacks and ensure security of application against those attacks.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;As our Security Expert, you will focus on direction, design, implementation and securing of Web Services and Web Applications.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;This will include design of security features, security reviews, implementation and Security testing/QA; enforcing Security best practices and protections for Web related technologies (&lt;span class=&quot;caps&quot;&gt;XML&lt;/span&gt;/SQL injections, &lt;span class=&quot;caps&quot;&gt;XML&lt;/span&gt; bomb attack, &lt;span class=&quot;caps&quot;&gt;XSS&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;CSRF&lt;/span&gt;, etc.). &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Experience in usage of Web Application Firewalls (&lt;span class=&quot;caps&quot;&gt;WAF&lt;/span&gt;) &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Knowledge of &lt;span class=&quot;caps&quot;&gt;OWASP&lt;/span&gt; and &lt;span class=&quot;caps&quot;&gt;WASC&lt;/span&gt; is a must.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Technical skills&lt;br /&gt;&#10;Performing:&#10;&#9;Network and Web-based Application Penetration tests.&#10;&#9;Logical Security Audits.&#10;&#9;Hands-on Technical Security Evaluations and Implementations.&#10;&#9;Web Application Penetration Testing.&#10;&#9;Vulnerability Detection and Remediation.&lt;br /&gt;&#10;Conducting:&#10;&#9;Database Penetration Tests.&#10;&#9;Application Assessment reports.&#10;&#9;&lt;span class=&quot;caps&quot;&gt;PCI&lt;/span&gt; Compliance Assessment Reports&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Non-technical skills&#10;&#9;Ability to solve problems creatively&#10;&#9;High productivity&#10;&#9;Ability to communicate clearly in writing, by phone, and in person&#10;&#9;Ability to work at both detailed and abstract levels&#10;&#9;Willingness and ability to create and adapt to new technologies&#10;&#9;Ability to launch new projects and follow through to completion.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Work experience requirements:&lt;br /&gt;&#10;•&#9;3-5 Years&lt;br /&gt;&#10;Education Requirements&lt;br /&gt;&#10;•&#9;BE/BTech/MCA or equivalent Bachelor’s degree&lt;br /&gt;&#10;•&#9;Security certificates will be a plus.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Note: Applications have been closed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/665/security-consultant-at-trend-micro/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/665/security-consultant-at-trend-micro/</link>
  <title>[Full-time] Security Consultant at Trend Micro</title>
  <dc:date>2013-02-11 02:09:26</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/658/security-test-engineer-at-zenqa-pvt-ltd/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Hyderabad&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.zenqa.com&quot;&gt;http://www.zenqa.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;Job Description:&#10; # Looking for security testing professionals experience in Web application security testing.&#10; # Exposure to vulnerability assessments on mobile applications.&#10; # Knowledge of assessments in cloud based applications.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Roles &amp;amp; Responsibilities: &lt;br /&gt;&#10;•&#9;Strong Web application security experience with thorough understanding of web and cloud based application vulnerabilities&lt;br /&gt;&#10;•&#9;Have some hands on experience in analyzing logs to identify attack trends&lt;br /&gt;&#10;•&#9;Exposure to vulnerability assessments in mobile applications on Android, iPhone etc. and knowledge of mobile app pen testing methodology &lt;br /&gt;&#10;•&#9;Familiarity with at least one network and web application vulnerability scanners as well as source code analysis tools&lt;br /&gt;&#10;•&#9;Familiarity with Security Standards and groups ( &lt;span class=&quot;caps&quot;&gt;OWASP&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;WASC&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;PCI&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;FISMA&lt;/span&gt; etc.)&lt;br /&gt;&#10;•&#9;Exposure to browser plug ins to perform security testing&lt;br /&gt;&#10;•&#9; Exposure to security assessments of Native Mobile applications (Android/iPhone/ Blackberry etc).&lt;br /&gt;&#10;•&#9;Hands on experience with the Mobile security assessment tools mainly with the platform specific &lt;span class=&quot;caps&quot;&gt;SDK&lt;/span&gt;&amp;#8220;s like Android &lt;span class=&quot;caps&quot;&gt;SDK&lt;/span&gt; &amp;#8211; adb, ddms, inbuilt tools with iOS &lt;span class=&quot;caps&quot;&gt;SDK&lt;/span&gt; (XCode), iPhone simulator, iPhoneExplorer, otool, etc.&lt;br /&gt;&#10;•&#9;Knowledge of database, application, and Web server design and implementation &lt;br /&gt;&#10;•&#9;Knowledge of application Security Architecture&lt;br /&gt;&#10;•&#9;Knowledge of the software development lifecycle is a plus&lt;br /&gt;&#10;•&#9;Knowledge on Security in  Windows and &lt;span class=&quot;caps&quot;&gt;UNIX&lt;/span&gt;/Linux Operating Systems&lt;br /&gt;&#10;•&#9;Knowledge of network exploitation, ethical hacking, penetration testing and tool development a plus&lt;br /&gt;&#10;•&#9;Experience in writing scripts using .Net, Java, Perl, Python a plus &lt;br /&gt;&#10;•&#9;Experience in application level attacks, bypassing firewalls, evading intrusion detection etc.&lt;br /&gt;&#10;Education: BE/B.Tech/MCA.&lt;br /&gt;&#10;Experience:  4 – 8 years in security testing.&lt;br /&gt;&#10;Salary: Best in the industry.&lt;br /&gt;&#10;Notice Period: Not an issue.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;About ZenQA PVt Ltd: ZenQA is an 8 year old company located in premium I.T location’s of Hyderabad 1.K.Raheja I.T Park ”Mindspace”, 2.Cyber pearl  3.VBIT Park(Capella) in Hi-Tec City we have 250 Plus Resources in the above mentioned locations working on software development &amp;amp; Testing projects for clients from U.S.A, Canada, U.K &amp;amp; Australia, we are in the process of &lt;span class=&quot;caps&quot;&gt;CMMI&lt;/span&gt; accreditation &amp;amp; we are in an intention to build the company to 500 employees by 2014.&lt;br /&gt;&#10;Awards &amp;amp; Recognition : Winner of Deloitte Technology Fast 50 India 2012 &amp;amp; 2nd Best Indian &lt;span class=&quot;caps&quot;&gt;SME&lt;/span&gt; in IT&amp;amp;&lt;span class=&quot;caps&quot;&gt;ITES&lt;/span&gt; category in 2010.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Note: Applications have been closed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/658/security-test-engineer-at-zenqa-pvt-ltd/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/658/security-test-engineer-at-zenqa-pvt-ltd/</link>
  <title>[Full-time] Security Test Engineer at ZenQA Pvt Ltd</title>
  <dc:date>2013-02-05 21:21:37</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/641/application-security-technical-evangelist-presales-at-hp-fortify/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; prefer Delhi, Bangalore, Mumbai&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.hpenterprisesecurity.com/products/hp-fortify-software-security-center/&quot;&gt;http://www.hpenterprisesecurity.com/products/hp-fortify-software-security-center/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;hello all, &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;wanted to share this opening with you. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;o   Your role is to &lt;strong&gt;explain, demonstrate, and prove&lt;/strong&gt; to customers how the HP Fortify (application security) solutions are superior to the competition and the best fit for their needs. &lt;br /&gt;&#10;o   You want to be &lt;strong&gt;rewarded&lt;/strong&gt; for making an impact to product revenue. &lt;br /&gt;&#10;o   You are strong in Java and/or .Net &lt;strong&gt;programming&lt;/strong&gt; knowledge and Build tools but are looking to leverage those skills in a new direction. &lt;br /&gt;&#10;o   You would enjoy the satisfaction of helping customer &lt;strong&gt;protect&lt;/strong&gt; valuable business data and defend national security.&lt;br /&gt;&#10;o   Your experience in engineering management or enterprise client consulting help you &lt;strong&gt;communicate&lt;/strong&gt; to multiple stakeholders. &lt;br /&gt;&#10;o   You have demonstrated &lt;strong&gt;presentation&lt;/strong&gt; skills to technical as well as non-technical audiences  and/or leadership in a non-work organization. &lt;br /&gt;&#10;o   You would love to &lt;strong&gt;travel&lt;/strong&gt; frequently to meet customers and partners in India and South East Asia. &lt;br /&gt;&#10;o  Any experience doing presales work would definitely be a plus. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Please note: If your background is only pen-testing and have had no full-time jobs as an application developer/SDLC, then it will probably not be a good fit in this particular position. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;thank you. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Note: Applications have been closed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/641/application-security-technical-evangelist-presales-at-hp-fortify/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/641/application-security-technical-evangelist-presales-at-hp-fortify/</link>
  <title>[Full-time] Application Security Technical Evangelist (presales) at HP Fortify</title>
  <dc:date>2013-01-23 11:07:11</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/639/senior-information-security-engineer-analyst-at-opentext-technologies-india-pvt-ltd/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Hyderabad&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.opentext.com&quot;&gt;http://www.opentext.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt;&#9;&lt;p&gt;&lt;strong&gt;Role Description:&lt;/strong&gt; &lt;br /&gt;&#10;The successful candidate will work as part of a small team reviewing world class enterprise information management applications. The position will focus on locating security vulnerabilities and preventing them as early as possible in the development process. In a time of increasing interconnectivity and rising expectations of rapid content delivery, security is a paramount concern. The analyst will be expected to demonstrate their technical knowledge and help Open Text produce software that exceeds the security requirements of customers worldwide. &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Responsibilities:&lt;/strong&gt; &amp;#8211; Investigate reported vulnerabilities, providing information about defect type, steps to recreate  &amp;#8211; Setting up and managing own testing environments &amp;#8211; Reliably perform security testing of products  &amp;#8211; Assisting in the preparation of plans to review software components through application security review. &amp;#8211; Produce clear, concise and unambiguous reports &amp;#8211; Provide feedback to development teams about the security of applications  &amp;#8211; Work with automated source code analysis tools &amp;#8211; Create solutions (software, procedures) to help locate software defects &amp;#8211; Analyze defects for root causes, make recommendations for remedies  &amp;#8211; Participate in threat modeling exercises, security assessments   &amp;#8211; Assisting in the preparation of plans to review software components through source code analysis or application security review.  &amp;#8211; Comment constructively on documents produced by others  &amp;#8211; Contribute to white papers about product security, testing, and related topics&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Qualifications&lt;/strong&gt;&lt;br /&gt;&#10;&lt;strong&gt;Technical Proficiency:&lt;/strong&gt; &amp;#8211; Knowledge of the security of web services technologies, web servers, databases and web-based applications  &amp;#8211; Knowledge of common application security controls  &amp;#8211; Knowledge of application security issues &amp;#8211; Knowledge of common technologies used in web applications (such as JavaScript, &lt;span class=&quot;caps&quot;&gt;HTML&lt;/span&gt;, &lt;span class=&quot;caps&quot;&gt;DHTML&lt;/span&gt;) &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Functional Proficiency/knowledge:&lt;/strong&gt; &amp;#8211; Background/understanding of software development life cycle  &amp;#8211; Strong analytical / troubleshooting skills  &amp;#8211; Possess a commitment to quality and a thorough approach to work.  &amp;#8211; Good writing skills  &amp;#8211; Good communications and consultancy skills  &amp;#8211; The ability to work in a team and as an individual  &amp;#8211; A natural curiosity&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Education:&lt;/strong&gt; Minimum education or equivalent credentials the incumbent must possess in order to qualify for the role.&#9; &amp;#8211; B.E./B.Tech &amp;#8211; Previous experience in software application development &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;&lt;strong&gt;Experience:&lt;/strong&gt;&lt;br /&gt;&#10;6+ relevant experience.   Highly developed professional/technical skills are needed to perform the job.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Note: Applications have been closed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/639/senior-information-security-engineer-analyst-at-opentext-technologies-india-pvt-ltd/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/639/senior-information-security-engineer-analyst-at-opentext-technologies-india-pvt-ltd/</link>
  <title>[Full-time] Senior Information Security Engineer / Analyst at OpenText Technologies India Pvt. Ltd.</title>
  <dc:date>2013-01-23 03:32:55</dc:date>
 </item>
 <item rdf:about="http://jobs.nullcon.net/job/616/application-security-test-engineer-at-code-decode-labs/">
  <description>&lt;strong&gt;Location:&lt;/strong&gt; Pune&lt;br /&gt;&lt;strong&gt;URL:&lt;/strong&gt; &lt;a href=&quot;http://www.codedecodelabs.com&quot;&gt;http://www.codedecodelabs.com&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Description:&lt;/strong&gt;&lt;br /&gt; Urgently required, Application Security Test Engineer, with 2 to 5 years of relevant experience.&#10;&#10;&#9;&lt;p&gt;Skill Requirements &amp;#8211; &lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Technical &amp;#8211; -&amp;gt; In depth knowledge of Application Security Assessment and Application PT.&lt;br /&gt;&#10;-&amp;gt; In depth knowledge of at least one programming language.&lt;br /&gt;&#10;-&amp;gt; In depth knowledge of at least one scripting language.&lt;br /&gt;&#10;-&amp;gt; Should be adept with tools of trade. Though, dependency on automated scanning tools is strongly discouraged.&lt;br /&gt;&#10;-&amp;gt; In depth knowledge of App Sec methodologies and best practices.&lt;br /&gt;&#10;-&amp;gt; Knowledge of Web App, Mobile App and Thick Client Apps is desired.&lt;br /&gt;&#10;-&amp;gt; Knowledge of Web Servers and Application Development Framework is a plus.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Professional&lt;br /&gt;&#10;-&amp;gt; Ability to meet hard deadlines efficiently&lt;br /&gt;&#10;-&amp;gt; Relevant certifications.&lt;br /&gt;&#10;-&amp;gt; Ability to handle clients independently.&lt;br /&gt;&#10;-&amp;gt; Good Communication skills are mandatory.&lt;/p&gt;&#10;&#10;&#9;&lt;p&gt;Note: Applications have been closed.&lt;/p&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href=&quot;http://jobs.nullcon.net/job/616/application-security-test-engineer-at-code-decode-labs/&quot;&gt;Apply to this job&lt;/a&gt;&lt;br /&gt;</description>
  <link>http://jobs.nullcon.net/job/616/application-security-test-engineer-at-code-decode-labs/</link>
  <title>[Full-time] Application Security Test Engineer at Code Decode Labs</title>
  <dc:date>2013-01-15 01:07:37</dc:date>
 </item>
</rdf:RDF>