- Outer Ring Road, Devarabisanahalli Vlg Varthur Hobli, Bldg 2A, Twr 3, Phs 1, BANGALORE, IN, 560103
- SECURITY
- 4939
- Band C
- Aileni Swetha
Job Description
Web Application Security Expert
Bangalore, Karnataka, India
Your role is to ensure that AXA XLs web applications are protected via the necessary security controls. This involves understanding our applications, their vulnerabilities (if any) and identifying the best methods to protect those applications. This could involve helping the developers securely code applications, development of WAF rules or the disablement of particular WAF rules from the application.
What you’ll be DOING
What will your essential responsibilities include?
- Assess applications for WAF applicability.
- Ensure web application firewalls are correctly configured and deployed.
- Build, maintain and operate current AXA XL processes for WAF deployment and operation.
- Educate the organization on web application protection strategies and implementations.
- Work with various stakeholders to build knowledge and ensure our applications are protected.
- Act as an intermediary between AXA teams to ensure security is appropriate for the risks we face, and the business can move forward in an agile way.
You will report to Global Head of Transversal Application Services.
What you will BRING
We’re looking for someone who has these abilities and skills:
Required Skills and Abilities:
- Application Vulnerabilities: An understanding of vulnerabilities which can affect web applications.
- Web Application Firewall knowledge: Understanding of web application firewalls, deployment and usage strategies, mitigation strategies in order to aid.
- Web Application Firewall rules knowledge: Knowledge and experience in using rules within web application firewalls including knowledge of regular expressions and their usage in rules.
- Application Protection Strategies: Understanding of methods for protecting web applications without the need for a web application. (e.g. secure password hashing, secure coding practices).
Desired Skills and Abilities:
- Negotiation Skills: The ability to negotiate with various parties to agree an approach that is successful for all parties.
- IT Service Management/ServiceNow Knowledge: Understanding of the processes of Service Management and Service Now to aid in developing tickets to support processes and procedures for WAF management.
- Penetration testing experience: Experience of the penetration testing practices particularly focused on web application testing and being able to understand the standard practices used for testing applications.
- Training & Awareness: The ability to educate and train parts of the organization about WAF’s and secure coding practices.
Who WE are
How? By combining a comprehensive and efficient capital platform, data-driven insights, leading technology, and the best talent in an agile and inclusive workspace, empowered to deliver top client service across all our lines of business property, casualty, professional, financial lines and specialty.
With an innovative and flexible approach to risk solutions, we partner with those who move the world forward.
Learn more at axaxl.com
What we OFFER
- Five Business Resource Groups focused on gender, LGBTQ+, ethnicity and origins, disability and inclusion with 20 Chapters around the globe
- Robust support for Flexible Working Arrangements
- Enhanced family friendly leave benefits
- Named to the Diversity Best Practices Index
- Signatory to the UK Women in Finance Charter
Learn more at axaxl.com/about-us/inclusion-and-diversity. AXA XL is an Equal Opportunity Employer.
Total Rewards
We’re committed to rewarding your contribution for the long term, so you can be your best self today and look forward to the future with confidence.
Sustainability
- Valuing nature: How we impact nature affects how nature impacts us. Resilient ecosystems - the foundation of a sustainable planet and society – are essential to our future. We’re committed to protecting and restoring nature – from mangrove forests to the bees in our backyard – by increasing biodiversity awareness and inspiring clients and colleagues to put nature at the heart of their plans.
- Addressing climate change: The effects of a changing climate are far reaching and significant. Unpredictable weather, increasing temperatures, and rising sea levels cause both social inequalities and environmental disruption. We're building a net zero strategy, developing insurance products and services, and mobilizing to advance thought leadership and investment in societal-led solutions.
- Integrating ESG: All companies have a role to play in building a more resilient future. Incorporating ESG considerations into our internal processes and practices builds resilience from the roots of our business. We’re training our colleagues, engaging our external partners, and evolving our sustainability governance and reporting.
- AXA Hearts in Action: We have established volunteering and charitable giving programs to help colleagues support causes that matter most to them, known as AXA XL’s “Hearts in Action” programs. These include our Matching Gifts program, Volunteering Leave, and our annual volunteering day – the Global Day of Giving.