Here they are
Requirements:
5 years of experience in application security space
Technical sills InfoSec:
Perform threat modeling of the solution identifying designlevel threats & recommending mitigations
Periodically deliver handson SDL trainings to developers with focus on application security
Perform security code review of the solution using manual and automated techniques
Perform manual security testing of the application using proxy tools such as Burp
Use automated scanners to scan the solution and filter false positives
Good understanding of Microsoft .NET technologies
Good understanding of Identity protocols (OpenId Connect OAuth2.0 etc.)
Good understanding of cloud technologies preferably Azure
Full understanding of the web stack web security common application vulnerabilities & mitigations
Basic penetration testing skills
Aware of contemporary happenings vulnerabilities & mitigations in application security space
application security,azure,.net,threat & vulnerability management,code review,security,cloud,web,nessus,qualys