Consultant/Senior Consultant- SAST App Sec Secret Managemet in Pune
Ernst & Young (EY)Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessLog in to see why each signal reads the way it does.
Job Description
Structured overview of role & requirementsAbout This Role
Govern and track secrets findings across repositories, ensuring remediation within defined SLAs.
Coordinate with development, platform, risk, and compliance teams on remediation, exceptions, and risk acceptances.
Maintain governance artifacts, audit-ready documentation, reports, and monitor remediation progress with escalations as needed.
Minimum Requirements
4–5 years of experience in Application Security, SSDLC, Governance, or similar roles.
Bachelor's Degree in IT, Engineering, or related field.
Strong understanding of secrets exposure risks (API keys, tokens, passwords, certificates) and experience reviewing secrets scanning outputs.
Familiarity with SAST concepts, GitHub, CI/CD environments, and strong documentation and communication skills.
Ideal Candidate Profile
Experienced in coordinating across multiple teams including development, risk, and compliance within application security governance.
Demonstrated ability to manage and improve security tool outputs, such as secret scanning and false positive mitigation.
Operates effectively in governance-focused roles requiring documentation, metrics tracking, reporting, and stakeholder engagement.
