Experience
5 - 10 yrs
Salary (CTC)
₹80k - ₹1.5L
Job Location
India
Vacancy
1
Designation
Application Security Engineer
Job Type
Not specified
Job Description
Role & responsibilities
- Design, implement, and maintain application security controls across the Software Development Lifecycle (SDLC).
- Perform secure code reviews, threat modeling, and security risk assessments for web, mobile, and cloud applications.
- Integrate security testing tools such as SAST, DAST, SCA, and container security into CI/CD pipelines.
- Identify, assess, and remediate application vulnerabilities in collaboration with development teams.
- Conduct penetration testing and validate remediation of security findings.
- Develop and promote secure coding standards, best practices, and developer security awareness programs.
- Secure APIs, cloud-native applications, containers, and microservices-based architectures.
- Monitor application security posture and ensure compliance with industry standards such as OWASP, ISO 27001, PCI DSS, and SOC 2.
- Collaborate with DevOps, engineering, infrastructure, and security teams to implement DevSecOps practices.
- Evaluate new security tools and technologies to enhance application security capabilities.
- Prepare security reports, risk assessments, and remediation plans for stakeholders.
Preferred candidate profile
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Software Engineering, or a related field; Master's degree is an added advantage.
- 5 to10 years of experience in Application Security, Cybersecurity, DevSecOps, or Secure Software Development.
- Strong knowledge of OWASP Top 10, secure coding practices, threat modeling, and application security testing methodologies.
- Hands-on experience with SAST, DAST, SCA, penetration testing, vulnerability management, and security automation tools.
- Familiarity with cloud platforms (AWS, Azure, or GCP), Docker, Kubernetes, CI/CD pipelines, and DevSecOps practices.
- Experience with programming or scripting languages such as Java, Python, JavaScript, C#, or Go.
- Relevant certifications such as CISSP, CSSLP, OSCP, GWAPT, CEH, or CompTIA Security+ are preferred.
- Strong analytical, problem-solving, communication, and stakeholder management skills.
- Ability to work collaboratively with development, QA, DevOps, and security teams in Agile environments to build secure, scalable applications.
No Referrers Available
There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.