Job Description
Hiring: Application Security / DevSecOps Engineer (SAST/DAST)
Client: Leading MNC
Location: PAN India
Experience: 815 Years
Key Requirements
Must Have Skills:
- 8–15 years of experience in Application Security / DevSecOps.
- Hands-on experience with:
- CI/CD Tools: GitHub Actions, Azure DevOps, GitLab
- Security Tools: SAST, DAST, SCA (Checkmarx, Veracode, Fortify, etc.)
- Experience in conducting Gap Analysis and driving Shift-Left Security initiatives.
- Strong understanding of:
- Secure SDLC
- Threat Modeling
- OWASP Top 10
- CWE (Common Weakness Enumeration)
- Software Supply Chain Security (SBOM, Dependency Management)
- Experience implementing Policy-as-Code and Break-the-Build security controls.
Good to Have:
- Cloud Security (Azure/AWS)
- Infrastructure as Code (Terraform, ARM Templates)
- Container Security (Docker, Kubernetes)
- Knowledge of NIST and ISO 27001 security frameworks
Soft Skills:
- Strong stakeholder management across Development, QA, Platform, and Leadership teams.
- Ability to drive security culture transformation and Shift-Left adoption.
- Excellent communication, training, mentoring, and influencing skills.
Role Overview
The ideal candidate will be responsible for embedding security into the software development lifecycle, driving DevSecOps practices, implementing automated security controls, conducting security assessments, and partnering with engineering teams to enhance the organization's application security posture.
Interested candidates can share their updated resume along with Current CTC, Expected CTC, Notice Period, Current Location, and relevant experience in Application Security/DevSecOps.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.
