Apply Here

  • Job ID:

    Job-1633
  • Job Title:

    API Security Engineer
  • Location:

    Hyderabad
  • Duration:

    3 - 6 months
  • Job Description:

    RESPONSIBILITIES:
    • Support and consult with development and engineering teams in the areas of application security
    • Educates development team on security procedure and standards, and ensures they are followed
    • Research and help develop security solutions to help secure applications (API Security, Data Protection, Identity Protection)
    • Create Security guidance/documentation for development/engineering teams
    • Experience working with AWS or other cloud environments (development/architecture)
    • Experience with cloud and API security standards (OWASP API Top 10, CIS Top 20)
    • Perform security risk assessments for all proposed application-related (APIs) changes.

    EXPERIENCE and SKILLS:
    • 3+ years of experience in software development in one or more of the following programming languages, .NET, Python, Java/Springboot (REST), JavaScript (Node/React), and/or Go
    • Comfortable with tools like Noname/NeoSec/Salt Api security, OWASP ZAP, Veracode, etc.
    • 3+ years of experience with API Security
    • Experience with API Management solutions like Mulesoft
    • Technical and foundational knowledge of software engineering, computer systems, security engineering, authentication, and/or applied cryptography.
    • Excellent knowledge of all web technologies, especially web services, web applications, Service Oriented Architectures, and network/web protocols
    • Knowledge of application threat modeling, Remediation of OWASP API Top 10, CIS Top 10, SANS Top 25 a plus
    • Experience with attacker tactics, techniques, and procedures, and corresponding mitigation methods.
    • Sound knowledge of all procedures, standards, and regulations for authorization and authentication, applied cryptography, and security vulnerabilities.

     
  • Job Type:

    Contract

 

Hear what our consultants have to say about us…

Stacey Barnes

IT Director

“We have been a client of Buxton for 10+ years. Buxton has been a great partner working with FormFactor on Data Warehouse, Oracle EBS and Infrastructure projects. Their team is knowledgeable and professional and we trust the products delivered.”

Kavnish Gupta

Business Analyst

“I worked for Buxton Consulting as a full time employee for about 5 years between 2013 and 2018.  I worked on various managed projects, inhouse and at client end.  Buxton was very professional in all their dealings with the employee and clients.  The HR team and my Client Relations Manager, always had regular interactions and feedback sessions with me to discuss the project and personal goals. Buxton also handled my Visa and Immigration related work with thorough professionalism and I never had any issues with that. I would definitely recommend Buxton Consulting as an employer and also for short and long term managed projects.”