onsite
Cyber Security Group Project Manager - Infosys
Software Engineer
Lead the design, development, and maintenance of enterprise cyber capabilities, overseeing the full software security lifecycle, threat modeling, SAST, SCA, DAST, and penetration testing while driving strategic security policies and initiatives.
About the role
Key Responsibilities
- Lead end‑to‑end development and maintenance of technical cyber capabilities across the software development lifecycle.
- Conduct threat modeling of application designs and manage static application security testing (SAST) and software composition analysis (SCA) initiatives.
- Oversee dynamic application security testing (DAST) and penetration testing programs to identify and remediate vulnerabilities.
- Implement security policies and strategies defined by senior leadership, ensuring alignment with short‑ and long‑term cybersecurity goals.
- Collaborate with cross‑functional teams to integrate security controls into product roadmaps and operational processes.
Requirements
- 5+ years of experience in application security, including hands‑on SAST, SCA, DAST, and penetration testing.
- Proven ability to develop and execute comprehensive cybersecurity strategies and policies.
- Strong knowledge of threat modeling methodologies and secure software development practices.
- Excellent leadership and stakeholder management skills, with experience guiding cross‑functional teams.
- Relevant certifications (e.g., CISSP, OSCP, CSSLP) are a plus.
Skills
penetration testing