The Senior Security Analyst will oversee application security strategies, conduct threat modelling, automate processes, and enhance security postures across the enterprise.
By clicking the "Apply" button, I understand that my employment application process with Takeda will commence and that the information I provide in my application will be processed in line with Takeda's Privacy Notice and Terms of Use. I further attest that all information I submit in my employment application is true to the best of my knowledge.
Job Description
ACCOUNTABILITIES :
• Responsible for conducting static code analysis, threat modelling, and creating/managing the developer training program
• Lead in the development and execution of the secure software development strategy for the
enterprise, including policies, standards, and governance
• Implements automation to integrate Application Security into various applications across the
enterprise
• Provides input and guidance on the various DevOps security tools/processes for threat modelling, code repository security, container security, dynamic application security testing, secrets management, penetration testing, and cloud infrastructure security
• Assists in the development of a communications program for application threats and external and internal security events
• Improves and expands application security risk posture and processes across the enterprise
• Creates and supports metrics that report application risk posture and progress over time
• Manages continuous release planning and execution, and integrates with security design and engineering work across multiple groups and technical constituencies
EDUCATION, BEHAVIOURAL COMPETENCIES AND SKILLS:
• Bachelor's degree in related field (Business, Information Services, IT, Information Security,
etc.)
• At least 3 years of experience with Application Security, including familiarity with the leading
toolsets supporting Application Security (dynamic and static)
• At least 1 year of experience with product design, delivery, ownership, and threat modelling
• Experience in enabling organizations with DevSecOps
• Strong experience with establishing and executing application security strategy
• Experience in static code analysis and third-party software composition analysis
• Experience in establishing and rolling out Threat Modelling enterprise-wide that can be consumed by developers and engineers
• Strong problem-solving and program execution skills; Ability to prioritize and drive difficult decisions among heads of development teams
• Ability to solve very complex security issues that span legal, compliance, and regulatory obligations across various lines of business and shared service areas of the company
• Knowledge of common information security management frameworks, including but not limited to: ISO 27001/27002, ITIL, COBIT, and NIST
• Ability to provide ongoing metrics and reporting
• Ability to communicate ideas and data both verbally and written in a persuasive and appropriate manner
Desired:
• In-depth pharmaceutical industry and drug development experience
• Experience with validated systems
• Information security certification (CISSP, CISM, GIAC, CEH)
Locations
IND - Bengaluru
Worker Type
Employee
Worker Sub-Type
Regular
Time Type
Full time
Job Description
ACCOUNTABILITIES :
• Responsible for conducting static code analysis, threat modelling, and creating/managing the developer training program
• Lead in the development and execution of the secure software development strategy for the
enterprise, including policies, standards, and governance
• Implements automation to integrate Application Security into various applications across the
enterprise
• Provides input and guidance on the various DevOps security tools/processes for threat modelling, code repository security, container security, dynamic application security testing, secrets management, penetration testing, and cloud infrastructure security
• Assists in the development of a communications program for application threats and external and internal security events
• Improves and expands application security risk posture and processes across the enterprise
• Creates and supports metrics that report application risk posture and progress over time
• Manages continuous release planning and execution, and integrates with security design and engineering work across multiple groups and technical constituencies
EDUCATION, BEHAVIOURAL COMPETENCIES AND SKILLS:
• Bachelor's degree in related field (Business, Information Services, IT, Information Security,
etc.)
• At least 3 years of experience with Application Security, including familiarity with the leading
toolsets supporting Application Security (dynamic and static)
• At least 1 year of experience with product design, delivery, ownership, and threat modelling
• Experience in enabling organizations with DevSecOps
• Strong experience with establishing and executing application security strategy
• Experience in static code analysis and third-party software composition analysis
• Experience in establishing and rolling out Threat Modelling enterprise-wide that can be consumed by developers and engineers
• Strong problem-solving and program execution skills; Ability to prioritize and drive difficult decisions among heads of development teams
• Ability to solve very complex security issues that span legal, compliance, and regulatory obligations across various lines of business and shared service areas of the company
• Knowledge of common information security management frameworks, including but not limited to: ISO 27001/27002, ITIL, COBIT, and NIST
• Ability to provide ongoing metrics and reporting
• Ability to communicate ideas and data both verbally and written in a persuasive and appropriate manner
Desired:
• In-depth pharmaceutical industry and drug development experience
• Experience with validated systems
• Information security certification (CISSP, CISM, GIAC, CEH)
Locations
IND - Bengaluru
Worker Type
Employee
Worker Sub-Type
Regular
Time Type
Full time
Top Skills
Application Security
Cloud Security
Devsecops
Penetration Testing
Security Governance
Security Tools
Static Code Analysis
Threat Modelling
Similar Jobs at Takeda
Healthtech • Software • Analytics • Biotech • Pharmaceutical • Manufacturing
Responsible for managing application security processes, leading secure software development strategies, and executing security risk assessments across the enterprise.
Top Skills:
Application SecurityCobitDevsecopsIso 27001ItilNistSecurity ToolsStatic Code AnalysisThreat Modelling
Healthtech • Software • Analytics • Biotech • Pharmaceutical • Manufacturing
The Senior Security Analyst leads application security initiatives, implements security strategies, manages risk posture, and integrates security in a DevSecOps environment.
Top Skills:
Application SecurityCloud Infrastructure SecurityDevsecopsDynamic Application Security TestingStatic Code Analysis
Healthtech • Software • Analytics • Biotech • Pharmaceutical • Manufacturing
Oversee Privileged Access Management operations, manage teams and tasks, ensure service reliability, and facilitate incident resolution and process improvements.
Top Skills:
EntraHashicorpItsm ToolsJIRAMicrosoft Active DirectoryExcelO365 SuitePrivileged Access ManagementServicenow
What you need to know about the Singapore Tech Scene
The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.