Senior Application Security Specialist
Tata Consultancy Services
5 - 15 years
Chennai
Posted: 18/03/2026
Getting a referral is 5x more effective than applying directly
Job Description
Dear Candidate
Tata Consultancy Services is Hiring for Application Security
Experience: 5 -15 Years
Location PAN INDIA
WALK IN DRIVE LOCATION: Chennai /Bangalore/ Hyderabad
WALK IN DRIVE DATE : 21-March-2026
Vulnerability Assessment & Penetration Testing (VAPT) Analyst with 25 years of hands-on experience in assessing the security of Web Applications, APIs, and Mobile Applications (Android & iOS).
Key Responsibilities:
- Conduct in-depth penetration testing on Web, API, and Mobile applications using both manual techniques and automated tools.
- Responsible for Configuring and initiating SAST/DAST scans based on predefined profiles and SOPs and validate scan credentials and URLs for web applications.
- Responsible for driving static and dynamic application security testing across the organization and ensures secure development practices by integrating security tools into CI/CD, triaging vulnerabilities, enabling developers, and maintaining strong coverage of application security risks.
- Deep Understanding of OWASP TOP 10 and common vulnerabilities like SQLi, XSS, CSRF, SSRF, IDOR, RCE, insecure deserialization.
- Saviynt Architecture & Modules and Saviynt Connector & Integration Management
- Responsible for updating the known error database for recurring issues and updating scanning profiles for new technologies
- Identify and exploit real-world security vulnerabilities including but not limited to IDOR, SSRF, insecure storage, authentication flaws, and root/jailbreak detection bypasses.
- Prepare clear, comprehensive, and actionable vulnerability assessment reports.
- Collaborate with development, DevOps, and product teams to explain findings and validate fixes.
- Maintain up-to-date knowledge of current security threats, tools, and techniques.
- Ensure all findings align with industry standards such as: OWASP Top 10/ OWASP API Top 10 and OWASP Mobile Security Testing Guide (MSTG) / MASVS
Required Skills & Tools Expertise:
- Strong experience in application-level VAPT (Web, API, Mobile)
- Deep understanding of mobile app attack surfaces and traffic interception
- Proficient in:
- Burp Suite (Pro level usage)
- Postman, MobSF
- Frida, Jadx, APKTool, Objection
- ADB, Xcode, Charles Proxy, Fiddler
OPtional Qualifications:
- Certification: OSCP (or equivalent hands-on certification)
Regards
S.Shanbaga
Tata Consultancy Services
Human Resources -TAG-CSP
Services you might be interested in
Improve Your Resume Today
Boost your chances with professional resume services!
Get expert-reviewed, ATS-optimized resumes tailored for your experience level. Start your journey now.
