1The candidate should have good working knowledge of OWASP ESAPI (.NET, JAVA,PHP)
2 Should have experience of Security Code Review as per OWASP methodology using Fortify tool.
3.Having skills to provide recommendations to fix the gaps to the development team.
4.Hands-on experience in IA Security as a Static Code Reviewer.
5 Proven experience with various Security Testing Frameworks (such as OWASP)
6 Expert knowledge of information security principles, web applications and a level of familiarity with malicious code and common techniques used to exploit software vulnerabilities
7 Utilizes automated code reviews using tools like HP Fortify as well as manual code review techniques to identify application security vulnerabilities its mandatory
8 Familiarity with various programming languages and frameworks (C, C++, PHP, .NET, ASP,JAVA, Struts)Solid understanding of Software Development Life Cycle methodologies