Apply Here

  • Job ID:

    Job-1633
  • Job Title:

    API Security Engineer
  • Location:

    Hyderabad
  • Duration:

    3 - 6 months
  • Job Description:

    RESPONSIBILITIES:
    • Support and consult with development and engineering teams in the areas of application security
    • Educates development team on security procedure and standards, and ensures they are followed
    • Research and help develop security solutions to help secure applications (API Security, Data Protection, Identity Protection)
    • Create Security guidance/documentation for development/engineering teams
    • Experience working with AWS or other cloud environments (development/architecture)
    • Experience with cloud and API security standards (OWASP API Top 10, CIS Top 20)
    • Perform security risk assessments for all proposed application-related (APIs) changes.

    EXPERIENCE and SKILLS:
    • 3+ years of experience in software development in one or more of the following programming languages, .NET, Python, Java/Springboot (REST), JavaScript (Node/React), and/or Go
    • Comfortable with tools like Noname/NeoSec/Salt Api security, OWASP ZAP, Veracode, etc.
    • 3+ years of experience with API Security
    • Experience with API Management solutions like Mulesoft
    • Technical and foundational knowledge of software engineering, computer systems, security engineering, authentication, and/or applied cryptography.
    • Excellent knowledge of all web technologies, especially web services, web applications, Service Oriented Architectures, and network/web protocols
    • Knowledge of application threat modeling, Remediation of OWASP API Top 10, CIS Top 10, SANS Top 25 a plus
    • Experience with attacker tactics, techniques, and procedures, and corresponding mitigation methods.
    • Sound knowledge of all procedures, standards, and regulations for authorization and authentication, applied cryptography, and security vulnerabilities.

     
  • Job Type:

    Contract

 

Hear what our consultants have to say about us…

Soby Oomen

Sr. Oracle Applications Developer

“I have been working at Buxton Consulting for more than 3 years.
Management is very attentive and responsive. Intelligent managers and executives who know their employees and make an effort to ensure that they have everything they need to succeed. Great People to work with.”

Sriram Rengasamy

Sr .NET Engineer

I am very fortunate that I got an opportunity with Buxton as my vendor. Their team is very professional, transparent and helpful. Anytime I reached out to them I got an immediate response. Unlike other vendors, Buxton treats consultants very fairly and respectfully so that we love to be associated with Buxton for a long time. Reaching out to consultants on a periodic basis and hearing out our problems/suggestions made us feel good. During my tenure at SCIF, I heard people saying that we should refer our friends to join Buxton as they are the BEST among all the vendors in SCIF and they do not try to exploit consultants, as Buxton is very fair in their compensation for the consultants.