More
Posts

Senior Technical Lead @Comviva,
Posted in Comviva
10+ Yrs Exp.
Roles and Responsibilities:
- Define and implement application security strategies, policies, and best practices.
- Conduct secure design reviews, threat modeling, and risk assessments for applications.
- Work with development teams to remediate security vulnerabilities and enforce secure coding standards.
- Drive DevSecOps by helping development teams integrating security tools and practices into CI/CD pipelines.
- Evaluate and implement security tools by doing POC.
- Research and implement new security technologies and methodologies.
- Provide security guidance for third-party integrations and open-source components.
- Research & adopt new security technologies & methodologies to enhance security posture
- Conduct internal audits and risk assessments to ensure compliance
- Define security metrics and reporting for senior leadership.
- Create security awareness and training programs for developers and IT teams.
- Maintain security documentation, policies, and risk assessments.
- Investigate security breaches, vulnerabilities, and threat alerts to mitigate risks.
- Conduct post-incident analysis, root cause assessments, and continuous improvement initiatives.
Required Skills & Experience:
- 9+ years of experience in application security and compliance.
- Strong knowledge of secure coding practices, OWASP Top 10, CWE, and SANS 25.
- Hands-on experience with SAST, DAST, SCA, and penetration testing tools.
- Expertise in securing APIs, microservices, cloud applications, and CI/CD pipelines.
- Experience with threat modeling, DevSecOps, and security automation.
- Familiarity with security frameworks (NIST, CIS Benchmarks, MITRE ATT&CK).
- Good understanding of infrastructure security, network security, and IAM.
- Experience in security audits and compliance processes.
- Excellent problem-solving skills and ability to work cross-functionally.
- Experience in security incident handling.
- Good to have: AI Cyber Security
Preferred Certifications:
- CISM, OSCP, CEH, or equivalent.
- AWS/Azure Security Certifications (e.g., AWS Certified Security – Specialty).


Comviva
Website:
Sector:
Marketing, Mobile, Mobile Devices, Telecommunications
Size:
251-500 employees
Stage:
More
Posts
