Security Analyst at DNV
Chennai, tamil nadu, India -
Full Time


Start Date

Immediate

Expiry Date

23 Jan, 26

Salary

0.0

Posted On

25 Oct, 25

Experience

2 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Security Risk Assessments, Vulnerability Management, Secure Coding Standards, CI/CD Pipelines, Threat Modeling, Data Flow Analysis, Impact Assessments, Application Security, Infrastructure Security, Compliance, Access Control, Encryption, Key Management, API Token Management, Security Documentation, Security Audits, Security Awareness

Industry

Public Safety

Description
Conduct regular security risk assessments for web applications, APIs, and underlying cloud infrastructure (AWS preferred). Manage the vulnerability management lifecycle — identify, validate, track, and remediate findings using tools like Snyk, AWS Inspector, or internal scanning utilities. Collaborate with development and QA teams to embed secure coding standards and automated security checks into CI/CD pipelines. Perform threat modeling, data flow analysis, and impact assessments for new product features and architectural changes. Monitor application and infrastructure security logs and alerts to detect anomalies, respond to incidents, and document root cause analysis. Ensure compliance with internal ISMS policies and regulatory standards — including encryption, access control, and data retention. Conduct periodic access control reviews to uphold the principle of least privilege. Support encryption, key management, and API token lifecycle management across development and production environments. Maintain up-to-date security documentation, including risk registers, SOPs, and audit evidence. Assist with external and internal security audits, preparing evidence and tracking corrective actions to closure. Promote security awareness across engineering and operations teams through training and sharing of best practices.
Responsibilities
Conduct regular security risk assessments and manage the vulnerability management lifecycle for web applications and cloud infrastructure. Collaborate with development and QA teams to embed secure coding standards and monitor security logs for anomalies.
Loading...