Basic Information

Ref Number

Req_00101435

Last day to apply

25-4月-2023

Primary Location

NSEZ

Country

India

Job Type

Digital Solutions

Work Style

Hybrid

Description and Requirements

  • Experience in web application, mobile app and network vulnerability assessment and penetration testing.

  • Assess application security controls implementation during development, deployment and  production including but not limited to SAST, IAST, DAST and WAF.

  • Perform cloud penetration testing, red teaming, remediation activities, and threat analysis assessments.

  • Design, develop and improve the Security Test infrastructure to enable delivery of high quality and highly secure platforms.

  • Integrate Security testing to Jenkins CI/CD pipeline and continuously work on stabilizing and improving the test coverage.

  • Collaborate with product architect/feature-owners to identify Security test requirements during initial stages of feature definition or product design through remediation.

  • Work with clients to understand and document business requirements and define specifications for security testing to Analyze and identify the vulnerabilities.

  • Create technical assessments which details the vulnerabilities, steps to reproduce, and recommendations for remediation.

  • Coordinate with stakeholders to complete test plans, bug details, and final report for each project.

  • Research, evaluate, document, and discuss findings with project teams and management.

  • Effectively communicate findings and strategy to client stakeholders including technical staff and executive leadership.

  • Pinpoint methods and entry points that attackers may use to exploit vulnerabilities.

  • Recommend improvements for hardware, software, policies, and procedures

  • Provide security guidance and input to customer teams during design review and threat modeling.

  • Experience in Vulnerability Assessment and Penetration Testing using Fortify, Burp Suite, Web Inspect, Nmap, Nessus etc.

  • Simulate security breaches to test the system's security.

  • Knowledge of Web Application Security standards such as OWASP/SANS etc.

  • Mentor team members on application security technical and operational aspects.

  • Prepare VAPT (Vulnerability Assessment & Penetration Testing) reports.

  • Prepare audit plans, test cases and test scenarios to perform the security audit.

  • Prepare estimates for application security and penetration testing.

  • Stay updated on the latest malware and security threats.

Additional Job Description

Supports operations in ensuring ongoing compliance to TI information security standards and programs contractual requirements Monitor ongoing information security compliance. Ensure compliance to TI Global Security & Risk policies and contractual requirements. Ensure remediation efforts are undertaken where non compliance is identified. Regularly perform internal audits on policies, procedures, and practices; and identify the risk and non-compliance and have it documented and reported as needed. (This includes compliance in the areas of privacy, telecom, security, client contractual security regulations, and as required with changing laws/regulations & contracts.) Support the external Security Certifications and Client audits by engaging the different stakeholders and providing required supporting documents as needed. Provide compliance reports to the management to showcase compliance and recommend opportunities to strengthen the existing controls as necessary. Perform periodic risk assessment for different TELUS International sites and for different customers to ensure that the contract is operating as agreed or as deemed necessary. Support ad hoc Information Security projects as required.

EEO Statement

At TELUS International, we enable customer experience innovation through spirited teamwork, agile thinking, and a caring culture that puts customers first. TELUS International is the global arm of TELUS Corporation, one of the largest telecommunications service providers in Canada.   We deliver contact center and business process outsourcing (BPO) solutions to some of the world's largest corporations in the consumer electronics, finance, telecommunications and utilities sectors. With global call center delivery capabilities, our multi-shore, multi-language programs offer safe, secure infrastructure, value-based pricing, skills-based resources and exceptional customer service - all backed by TELUS, our multi-billion dollar telecommunications parent.

Equal Opportunity Employer

At TELUS International, we are proud to be an equal opportunity employer and are committed to creating a diverse and inclusive workplace. All aspects of employment, including the decision to hire and promote, are based on applicants’ qualifications, merits, competence and performance without regard to any characteristic related to diversity.