Upload Button Icon Add office photos
filter salaries All Filters

308 Goldman Sachs Jobs

Security Engineer - Associate - Tech Risk

1-4 years

Bangalore / Bengaluru

1 vacancy

Security Engineer - Associate - Tech Risk

Goldman Sachs

posted 22d ago

Job Role Insights

Flexible timing

Job Description

In this role, you will be reviewing Software Architecture designs and helping identify detrimental architecture flaws earlier in the SDLC. You will be required to leverage your Application Security knowledge to guide developers and architects on how to build secure software on-prem and in the cloud.

The ideal candidate should have minimum 5 years of prior experience in Application security and have minimum 1 year of experience in performing Threat Modeling or Secure Design Reviews.

RESPONSIBILITIES AND QUALIFICATIONS

Job Responsibilities:

  • Perform software architecture design reviews for on-prem or cloud deployments.
  • Conduct Pentests for on-prem and cloud deployments
  • Serve as an Application security liaison for the developers and architects in the respective Business Unit.
  • Review security assessment reports from Pentest and code review engagements.
  • Conduct Read out Calls with the business to articulate risk and recommend a mitigation strategy.
  • Develop secure architecture design patterns.

Basic Qualifications:

  • Minimum 5 years of experience in one or more technical roles (focusing on application security).
  • Prior experience in performing Threat Modelling or Secure Design Reviews.
  • Knowledge of most common Application Security vulnerabilities ? e.g., OWASP Top 10 and cloud security gaps. 
  • Familiarity with Security standards such as OWASP Testing Guide, OWASP ASVS, NIST and Sans top 20.
  • Common security controls and how they apply to different designs and systems including but not limited to secure authentication, access controls, encryption (at rest/ in transit), IDS/IPS, DLP, malware etc.
  • Experience in application vulnerability assessment and penetration testing of web, thick-client, or mobile applications. 
  • Working knowledge of application security tools such as fuzzers, scanners, debuggers, de-compilers, proxies, simulators, etc.
  • Familiarity with modern and common web stack technologies (e.g. HTTP, HTML5, AJAX, REST, etc.) and platforms (e.g. DropWizard, Springboot, AngularJS, React Tomcat, .Net, Sybase, MS SQL, MongoDB, etc.). 
  • Familiarity with common cloud services, recommended security best practices and secure deployment patterns. AWS is preferred.
  • Understanding of core cryptography concepts (Encryption, Hashing, HMAC, digital signatures) and how they are applied and attacked in web applications (e.g., TLS attacks, CBC attacks).
  • Ability to analyze protocols (OAuth, SAML, OIDC), flows and interactions in a system design to evaluate gaps.
  • Ability to identify threats, abuse cases, and gaps in the design before it is implemented. 
  • Good written and oral communication to be able to articulate risks to both technical and management stakeholders.

Preferred qualifications:

  • Experience in crafting custom proof of concept application exploits using testing tools/frameworks or scripting exploits in Python, Perl, JavaScript, Shell scripting, etc. 
  • Knowledge of network, application, and operating system security risks.
  • MS. in Computer Science, System/Computer Engineering, Cyber-Security, or Information Security. 
  • Experience or trainings in related disciplines e.g., computer science, computer security, software development, system design, open-source frameworks, encryption schemes, etc.
  • Experience doing architecture review of Mobile applications.

Employment Type: Full Time, Permanent

Read full job description

Prepare for Associate Technology roles with real interview advice

People are getting interviews at Goldman Sachs through

(based on 186 Goldman Sachs interviews)
Campus Placement
Job Portal
Company Website
Referral
Recruitment Consultant
Walkin
21%
19%
17%
15%
5%
2%
21% candidates got the interview through other sources.
High Confidence
?
High Confidence means the data is based on a large number of responses received from the candidates.

What people at Goldman Sachs are saying

5.0
 Rating based on 2 Associate Technology reviews

Likes

It has a good name , not sure how but yes it has

Dislikes

everything else , no benefits

Read 2 reviews

Associate Technology salary at Goldman Sachs

reported by 26 employees with 2-6 years exp.
₹15.6 L/yr - ₹57 L/yr
243% more than the average Associate Technology Salary in India
View more details

What Goldman Sachs employees are saying about work life

based on 1.2k employees
67%
88%
79%
91%
Flexible timing
Monday to Friday
No travel
Day Shift
View more insights

Goldman Sachs Benefits

Cafeteria
Work From Home
Health Insurance
Free Transport
Gymnasium
Child care +6 more
View more benefits

Compare Goldman Sachs with

JPMorgan Chase & Co.

4.1
Compare

Morgan Stanley

3.7
Compare

TCS

3.7
Compare

Amazon

4.1
Compare

Google

4.4
Compare

Microsoft Corporation

4.1
Compare

Citigroup

3.6
Compare

Bank of America

4.3
Compare

Wells Fargo

3.9
Compare

UBS

4.0
Compare

Barclays

3.9
Compare

HSBC Group

4.0
Compare

Deutsche Bank

3.9
Compare

Standard Chartered

3.8
Compare

IQVIA

3.9
Compare

Automatic Data Processing (ADP)

4.0
Compare

Synechron

3.6
Compare

S&P Global

4.2
Compare

Gallagher

3.8
Compare

Cargill

4.1
Compare

Similar Jobs for you

Cyber Security at Infosys Limited

Bangalore / Bengaluru

4-9 Yrs

₹ 6-14 LPA

Security Architect at Accenture Solutions Pvt Ltd

Bangalore / Bengaluru

3-5 Yrs

₹ 13-17 LPA

Security Engineer at Goldman Sachs

Bangalore / Bengaluru

3-8 Yrs

₹ 12-16 LPA

Java Full Stack Developer at Risosu Consulting

4-8 Yrs

₹ 10-17 LPA

Documentum Developer at iXceed Solutions

3-7 Yrs

₹ 12-15 LPA

Associate Technology at Athene

Mumbai

3-5 Yrs

₹ 9-13 LPA

Associate at Goldman Sachs

Bangalore / Bengaluru

4-9 Yrs

₹ 6-11 LPA

Full Stack Engineer at Mobiquity, Inc

Kolkata, Mumbai + 5

4-8 Yrs

₹ 7-11 LPA

Associate at Goldman Sachs

Hyderabad / Secunderabad

1-4 Yrs

₹ 10-15 LPA

Full Stack Engineer at Accenture Solutions Pvt Ltd

Bangalore / Bengaluru

3-8 Yrs

₹ 5-10 LPA

Goldman Sachs Bangalore / Bengaluru Office Location

View all
Bengaluru Office
Goldman Sachs Services Pvt. Ltd Cherry Hills, Embassy Golf Links Business Park, 6, Embassy Golf Links Business Park, Domlur Layout Bengaluru
Karnataka

Security Engineer - Associate - Tech Risk

1-4 Yrs

Bangalore / Bengaluru

22d ago·via naukri.com

Software Engineering - Vice President - Risk Division

6-9 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Internal Audit-C&T Engineering Audit - Vice President - Bengaluru

8-15 Yrs

Hyderabad / Secunderabad

1d ago·via naukri.com

Risk-Bengaluru-Vice President-Liquidity Risk

12-16 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Internal Audit - Business Audit - Vice President - Bengaluru

8-15 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Software Engineer - Vice President - Human Capital Management

16-18 Yrs

Bangalore / Bengaluru

1d ago·via naukri.com

Corporate Treasury-Bengaluru-Vice President-Quantitative Engineering

8-14 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

Software Engineering - Vice President - Global Banking & Markets

10-15 Yrs

Hyderabad / Secunderabad

2d ago·via naukri.com

Software Engineering - Vice President - Global Banking & Markets

6-7 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com

Software Engineering - Vice President - Data Engineering

6-7 Yrs

Bangalore / Bengaluru

2d ago·via naukri.com
write
Share an Interview