Cutshort logo

4+ Fortify Jobs in India

Apply to 4+ Fortify Jobs on CutShort.io. Find your next job, effortlessly. Browse Fortify Jobs and apply today!

icon
Pune
4 - 7 yrs
Best in industry
DevSecOps
skill iconAmazon Web Services (AWS)
DevOps
Github Actions
sonarqube
+18 more

About NonStop io Technologies

NonStop io Technologies is a value-driven company with a strong focus on process-oriented software engineering. We specialize in Product Development and have a decade's worth of experience in building web and mobile applications across various domains. NonStop io Technologies follows core principles that guide its operations and believes in staying invested in a product's vision for the long term. We are a small but proud group of individuals who believe in the 'givers gain' philosophy and strive to provide value in order to seek value. We are committed to and specialize in building cutting-edge technology products and serving as trusted technology partners for startups and enterprises. We pride ourselves on fostering innovation, learning, and community engagement. Join us to work on impactful projects in a collaborative and vibrant environment.


Brief Description

We are looking for a skilled DevSecOps Engineer who can help design, automate, and secure cloud-native platforms for healthcare and life sciences clients. The ideal candidate will have hands-on experience with cloud security, infrastructure automation, CI/CD pipelines, compliance controls, and platform operations in regulated environments.


You will work closely with engineering teams, architects, security stakeholders, and client representatives to build secure-by-design systems that meet healthcare security and compliance requirements. Experience supporting AI/ML platforms, healthcare data platforms, or regulated workloads is highly desirable.


Roles and Responsibilities

  • Design and implement security controls aligned with healthcare regulations, including HIPAA, HITRUST, and industry security best practices
  • Ensure secure handling of Protected Health Information (PHI), Personally Identifiable Information (PII), and sensitive healthcare datasets
  • Support client security reviews, vendor assessments, penetration testing remediation, and compliance audits
  • Partner with engineering teams to establish secure SDLC practices and shift-left security initiatives
  • Implement cloud governance policies, security baselines, and compliance automation across multiple client environments
  • Build and maintain audit-ready logging, monitoring, and evidence collection mechanisms
  • Support disaster recovery, business continuity, and security incident response processes
  • Collaborate with healthcare product teams working on FHIR APIs, healthcare integrations, clinical applications, genomics platforms, or AI-enabled healthcare solutions
  • Experience working with healthcare, life sciences, biotech, genomics, digital health, or regulated SaaS platforms is strongly preferred
  • Understanding of PHI, PII, healthcare security controls, and healthcare compliance requirements
  • Familiarity with healthcare interoperability standards such as FHIR, HL7, SMART on FHIR, or healthcare APIs is a plus
  • Experience securing healthcare data platforms, analytics environments, AI/ML workloads, or regulated cloud environments is highly desirable
  • Ability to work directly with client stakeholders and communicate security risks, recommendations, and remediation plans
  • Experience participating in security assessments, audits, compliance reviews, and client-facing technical discussions
  • Strong documentation and security governance skills


Requirements

  • 4–7 years of experience in DevOps, DevSecOps, SRE, or Platform Engineering
  • Strong experience with AWS, Azure, or GCP and cloud security best practices
  • Hands-on experience with CI/CD tools such as Jenkins, GitHub Actions, GitLab CI, or Azure DevOps
  • Experience with security tools, including SonarQube, Snyk, Checkmarx, Fortify, Veracode, or similar platforms
  • Strong understanding of vulnerability management, IAM, threat detection, and security scanning
  • Experience implementing compliance controls aligned with one or more of the following frameworks:
  • HIPAA
  • HITRUST
  • SOC 2
  • ISO 27001
  • NIST Cybersecurity Framework
  • PCI-DSS (where applicable)
  • FDA-regulated software environments (preferred)
  • Proficiency with Terraform, CloudFormation, ARM, Docker, Kubernetes, Linux, and shell scripting
  • Experience with monitoring and observability tools such as Prometheus, Grafana, ELK, or Datadog
  • Exposure to MLOps/AI platforms, model deployment, or AI workload management is desirable
  • Strong troubleshooting, automation, networking, and cloud security skills


Why Join Us?

  • Opportunity to work on a cutting-edge healthcare product
  • A collaborative and learning-driven environment
  • Exposure to AI and software engineering innovations
  • Excellent work ethic and culture

If you're passionate about technology and want to work on impactful projects, we'd love to hear from you!


Read more
Our client is in the field of IT servicing and IT consulting

Our client is in the field of IT servicing and IT consulting

Agency job
via Sapwood Ventures by Sonal Trivedi
Chennai
3 - 7 yrs
₹10L - ₹15L / yr
API
JSON
Apache Kafka
Agile/Scrum
Sonar
+1 more
Role and Responsibilities
  • Analyzes, designs, develops, codes and implements programs in one or more programming languages, for Web and Rich Internet Applications.
  • Supports applications with an understanding of system integration, test planning, scripting, and troubleshooting.
  • Assesses the health and performance of software applications and databases.
  • Establishes, participates, and maintains relationships with business units, customers and subject matter experts in order to remain apprised of direction, project status, architectural and technology trends, risks, and functional/integration issues.
  • Defines specifications and develop programs, modifies existing programs, prepares test data, and prepares functional specifications.
  • Analyzes program and application performance using various programming languages, tools and techniques.
  • Provides guidance to non-technical staff in using software and hardware systems most effectively and efficiently.
  • Reviews project proposals, evaluates alternatives, provides estimates and makes recommendations.
  • Designs and defines specifications for systems.
  • Identifies potential process improvement areas and suggests options and recommends approaches
Candidate Profile
  •         Knowledgeable in software development and design pattern
  •          Swagger, Rabbit MQ, Kafka 
  •          Good API skills technology such as Rest web service and Spring based technology
  •          Good knowledge on Container based application  configurations and deployment preferred env. is OpenShift
  •           Experience on creating unit test using Junit
  •           Experience on markup language such as JSON and YML
  •           Experience on using quality and security scan tools such as Sonar, Fortify
  •           Experience on Agile methodology
  •           7 -10 Years of experience in software development.
Location: Chennai 
 

 
Read more
Several years of experience in designing web applications

Several years of experience in designing web applications

Agency job
via Jobdost by Ankitha Vyas
Bengaluru (Bangalore), Hyderabad, Chennai
5 - 7 yrs
₹12L - ₹15L / yr
skill icon.NET
ASP.NET
Object Oriented Programming (OOPs)
Fortify
Microsoft IIS
+25 more
Basic Qualifications: (what are the skills required to this job with minimum years of experience on each, including education)

• Should have 5+ years of work experience in design, develop, Code and Unit Test web and desktop-based applications written in .Net framework starting from 4.x and above.
• Strong analytical skills to understand a given requirement and provide work estimates.
• Strong Object-Oriented Programming knowledge.
• Strong experience with Static Code Analyzers like Fortify.
• Should have good understanding of web servers such as IIS and Front-end such as HTML’s and Razor based engines.
• Strong debugging skills using .net front end and backend.
• Strong coding experience and thorough understanding of programming languages such as C#, VB.NET, ASP.Net, ADO.Net, JQuery, JavaScript, Traditional Web Services, WCF, Web API and other Scripting languages such as pythons.
• Strong working knowledge on various design patterns such as MVC, MVVM, DDD, Repository Pattern and any custom/hybrid framework as designed by the Architects.
• Should have a strong working knowledge of Azure DevOps.
• Strong knowledge and understanding of data sharing medium using JSON, XML and other media types.
• Strong knowledge on Entity Framework (6 and above) and other ORM such as Dapper.
• Strong knowledge and programming skills in Database such SQL SERVER, Oracle, My SQL and SQL Express. Additionally, nice to know-how knowledge in MS ACCESS.
• Strong knowledge and coding experience in REST based web services and service-oriented design patterns using WCF and other API’s.
• Should have used IDE such as Visual Studio and Visual Studio Code for Front-end development.
• 1+ years of building SPA web solutions using Angular 6/7/8 , BackBone, Bootstrap
• 5+ years building HTML5 complaint pages
• 3+ years of experience using TypeScript
• 3+ years of writing automated testing using Jamine or others

Day to Day job Duties: (what this person will do on a daily/weekly basis)

• Co-ordinate/mentor other Junior developers on a day to day basis.
• Understand the use cases/User Story, code and develop on a designed platform/pattern.
• Strict adherence to coding standards.
• Participate self-code review/peer reviews and correct errors wherever applicable before checking in the final code into the Branch/code repo.
• Create code documentations wherever applicable and as set guidelines by the team.
• Create and perform Unit Tests wherever applicable as set guidelines by the team.
• Provide feedback and assist in estimation planning.
• Merge code branches as and when required.
• Create and publish release documentations and application deployments as and when requested.
• Report out statuses to the leads onshore daily during the Stand-up calls.
• Additionally, update efforts on a given work item on everyday basis.
• Provide true estimates on work assigned prior development. Also ask questions/provide comments on User Stories/work items assigned.
• Be a team player and flexible towards availability in case of any urgent issues that need immediate attention.
• Plan out vacations in advance (min. 2 weeks of adv. Notice).


Nice to have(not a must) experience, skills

• Good understanding of Service Workers.
• Prior coding experience using FORTRAN.
• Experience on 3rd party tools like Spire.Pdf, PDF.Js.
• Knowledge of Rapid application development framework like DevExpress, Code on Time, HighCharts.
• Knowledge of code clean up tools like CodeMaid.
• Knowledge of Power BI and O365 Suites of applications.
• knowledge of SQL Data tools like SSIS and SSRS.
Read more
AMBC Technologies Pvt Ltd
Ponmuthumari Mohan
Posted by Ponmuthumari Mohan
Bengaluru (Bangalore)
3 - 9 yrs
₹8L - ₹12L / yr
Web application security
oscp
vapt
Fortify
OWASP

Requirements:

  • Overall experience in the field of Information risk and security related initiatives/ projects.
  • Experience in the areas of Infrastructure Security Audit, IT Security, Vulnerability Assessment, Risk Assessment, Web Application Security, Network Security Review, Network Architecture Review, Mobile Application Security Testing, Configuration Review, Source Code Review, Wireless Pentest, Process Review etc.
  • Ability to understand business concepts and integrate business risk elements into security operations.
  • Experience in conducting VAPT.
  • Experience with web application vulnerability scanning tools (e.g., IBM AppScan, HP Web inspect, Acunetix, NTO Spider, BurpSuite Pro).
  • Strong ethics and understanding of ethics in business and information security.
  • Should have exposure to Code review, Network VA/PT and App VA/PT work.
  • Understanding and familiarity with common code review methods and standards.
  • Experience with code scanning toolsets such as Fortify and Ounce.
  • Understanding of HTTP and web programming.
  • Knowledge of OWASP tools and methodologies, common security requirements within ASP.NET application, standard SDLC practices.
  • Knowledge of Network Security technology in areas of Firewall, IPS, VPN, Gateway security solutions (proxy, web filtering).
  • In-depth understanding on Common Vulnerability Exposure (CVE)/ Cert advisory database.
Read more
Get to hear about interesting companies hiring right now
Company logo
Company logo
Company logo
Company logo
Company logo
Linkedin iconFollow Cutshort
Why apply via Cutshort?
Connect with actual hiring teams and get their fast response. No spam.
Find more jobs
Get to hear about interesting companies hiring right now
Company logo
Company logo
Company logo
Company logo
Company logo
Linkedin iconFollow Cutshort