Web Application Security ExpertBangalore, Karnataka, IndiaYour role is to ensure that AXA XLs web applications are protected via the necessary security controls. This involves understanding our applications, their vulnerabilities (if any) and identifying the best methods to protect those applications. This could involve helping the developers securely code applications, development of WAF rules or the disablement of particular WAF rules from the application.DISCOVER your opportunityWhat will your essential responsibilities include?xc2xb7 Assess applications for WAF applicability.xc2xb7 Ensure web application firewalls are correctly configured and deployed.xc2xb7 Build, maintain and operate current AXA XL processes for WAF deployment and operation.xc2xb7 Educate the organization on web application protection strategies and implementations.xc2xb7 Work with various stakeholders to build knowledge and ensure our applications are protected.xc2xb7 Act as an intermediary between AXA teams to ensure security is appropriate for the risks we face, and the business can move forward in an agile way.You will report to Global Head of Transversal Application Services.QualificationsSHARE your talentWere looking for someone who has these abilities and skills:Required Skills and Abilities:xc2xb7 Application Vulnerabilities: An understanding of vulnerabilities which can affect web applications.xc2xb7 Web Application Firewall knowledge: Understanding of web application firewalls, deployment and usage strategies, mitigation strategies in order to aid.xc2xb7 Web Application Firewall rules knowledge: Knowledge and experience in using rules within web application firewalls including knowledge of regular expressions and their usage in rules.xc2xb7 Application Protection Strategies: Understanding of methods for protecting web applications without the need for a web application. (e.g. secure password hashing, secure coding practices).Desired Skills and Abilities:xc2xb7 Negotiation Skills: The ability to negotiate with various parties to agree an approach that is successful for all parties.xc2xb7 IT Service Management/ServiceNow Knowledge: Understanding of the processes of Service Management and Service Now to aid in developing tickets to support processes and procedures for WAF management.xc2xb7 Penetration testing experience: Experience of the penetration testing practices particularly focused on web application testing and being able to understand the standard practices used for testing applications.xc2xb7 Training & Awareness: The ability to educate and train parts of the organization about WAFs and secure coding practices.FIND your futureAXA XL, the P&C and specialty risk division of AXA, is known for solving complex risks. For mid-sized companies, multinationals and even some inspirational individuals we dont just provide re/insurance, we reinvent it.How? By combining a comprehensive and efficient capital platform, data-driven insights, leading technology, and the best talent in an agile and inclusive workspace, empowered to deliver top client service across all our lines of business xe2x88x92 property, casualty, professional, financial lines and specialty.With an innovative and flexible approach to risk solutions, we partner with those who move the world forward.Learn more atInclusion & DiversityAXA XL is committed to equal employment opportunity and will consider applicants regardless of gender, sexual orientation, age, ethnicity and origins, marital status, religion, disability, or any other protected characteristic.At AXA XL, we know that an inclusive culture and a diverse workforce enable business growth and are critical to our success. Thats why we have made a strategic commitment to attract, develop, advance and retain the most diverse workforce possible, and create an inclusive culture where everyone can bring their full selves to work and can reach their highest potential. Its about helping one another xe2x80x94 and our business xe2x80x94 to move forward and succeed.
MNCJobsIndia.com will not be responsible for any payment made to a third-party. All Terms of Use are applicable.