Application Security Engineer II

1 week ago


Gurgaon, Haryana, India Cvent Full time

Overview:

Cvent's Information Security team seeks Application Security Engineer II to support delivery of secure cloud-based software platforms and applications.

As an Application Security Engineer II, you will closely partner with Cvent product, engineering, and the application security team.

You will be responsible for applying your cloud and web application security subject matter expertise to conduct product security reviews that consist of:

Contribute to the AppSec Research and Engineering program by developing solutions to common security problems across Cvent products and automating operational activities.

Support developing threat models to help identify risks in product design and implementation Participating in software design requirements and architectural reviews Handling reporting and driving timely resolution of security weaknesses or defects; and Engaging with internal stakeholders, security researchers, and customers to provide product security assurance.


In This Role, You Will:
Develop solutions for common security problems across Cvent products, contribute to AppSec Engineering projects. Develop threat models, conduct static/dynamic application security testing and internal penetration tests.

Report and triage vulnerabilities found via various techniques, such as SAST, DAST, penetration testing, and reports from the field (such as from QA teams, customers, and/or the security research community).

Track, support planning for, and ensure timeliness of remediation of open product weaknesses or vulnerabilities.

Partner with product and engineering teams to ensure security is championed throughout their teams and reflected in software development practices.

Engage with customers and relevant external parties to provide assurance in Cvent's software security practices, product security posture and communicate security roadmap plans and status updates, as appropriate.

Coordinate security penetration testing activities conducted by trusted security partners and/or customers, as applicable.


Support technical audit activities to maintain compliance with Cvent's internal security policies and security attestation standards and certifications, such as PCI, SOC 1 / SOC 2, CSA STAR, and ISO Here's What You Need:

3+ years of experience in application security and software development Scripting (python, ruby, groovy, etc.) experience to automate application security operational tasks and develop solutions for common security problems.

Strong working knowledge of secure coding and manual reviews. Experience in threat modeling and application security architectures reviews is a plus.

Strong experience in manual penetration testing of web applications; experience testing mobile and API (REST and SOAP) applications a plus.

Experience in using security testing tools such as Checkmarks, Burpsuite, AppScan, and DataTheorem. Exceptional communication, teamwork, and influencing skills that foster a collaborative and continuous-improvement environment. Ability to effectively communicate technical issues to both technical and non-technical audiences. Ability to adapt to a hyper-growth pace and changing priorities. Ability to manage multiple, concurrent projects, activities, and tasks under tight time constraints. Self-motivation and the ability to work under minimal supervision.

Bachelor's degree in an Information Technology related field of study or equivalent experience; relevant, industry recognized security certifications such as CISSP, CEH, GWAPT are encouraged.

Develop solutions for common security problems across Cvent products, contribute to AppSec Engineering projects. Develop threat models, conduct static/dynamic application security testing and internal penetration tests.

Report and triage vulnerabilities found via various techniques, such as SAST, DAST, penetration testing, and reports from the field (such as from QA teams, customers, and/or the security research community).

Track, support planning for, and ensure timeliness of remediation of open product weaknesses or vulnerabilities.

Partner with product and engineering teams to ensure security is championed throughout their teams and reflected in software development practices.

Engage with customers and relevant external parties to provide assurance in Cvent's software security practices, product security posture and communicate security roadmap plans and status updates, as appropriate.

Coordinate security penetration testing activities conducted by trusted security partners and/or customers, as applicable.

Support technical audit activities to maintain compliance with Cvent's internal security policies and security attestation standards and certifications, such as PCI, SOC 1 / SOC 2, CSA STAR, and ISO 27001.

3+ years of experience in application security and software development Scripting (python, ruby, groovy, etc.) experience to automate application security operational tasks and develop solutions for common security problems.

Strong working knowledge of secure coding and manual reviews. Experience in threat modeling and application security architectures reviews is a plus.

Strong experience in manual penetration testing of web applications; experience testing mobile and API (REST and SOAP) applications a plus.

Experience in using security testing tools such as Checkmarks, Burpsuite, AppScan, and DataTheorem. Exceptional communication, teamwork, and influencing skills that foster a collaborative and continuous-improvement environment. Ability to effectively communicate technical issues to both technical and non-technical audiences. Ability to adapt to a hyper-growth pace and changing priorities. Ability to manage multiple, concurrent projects, activities, and tasks under tight time constraints. Self-motivation and the ability to work under minimal supervision.

Bachelor's degree in an Information Technology related field of study or equivalent experience; relevant, industry recognized security certifications such as CISSP, CEH, GWAPT are encouraged.



  • Gurgaon, Haryana, India GEMINI Full time

    Department : Information Security In the emerging industry of digital assets, there is nothing more important than trust. The Gemini security team forms the backbone of trust. In fact, Gemini's very first hires were security specialists and we continue to tackle unique challenges in the crypto space. Our team ensures that our customers, clients, and...

  • Cloud Engineer II

    3 weeks ago


    Gurgaon, Haryana, India timesjobs Full time

    ### Cloud Engineer IILocation: Gurugram Gurgaon HR, INRequisition Number: 96296CLOUD ENGINEER II M365Experience: 3 to 5 Years Provide escalated support for complex Microsoft 365related issues reported by Level 1 support and endusers. Troubleshoot and resolve advanced problems related to user access, permissions, and configurations. Administer and optimize...

  • Cloud Engineer II

    1 month ago


    Gurgaon, Haryana, India timesjobs Full time

    ### Cloud Engineer IILocation: Gurugram Gurgaon HR, INRequisition Number: 96296CLOUD ENGINEER II M365Experience: 3 to 5 Years Provide escalated support for complex Microsoft 365related issues reported by Level 1 support and endusers. Troubleshoot and resolve advanced problems related to user access, permissions, and configurations. Administer and optimize...


  • Gurgaon, Haryana, India Hudson RPO Full time

    Title : Software Engineer IILocation : GurugramJob Description :We are expanding and so we are looking for Software Engineers to join our Solutions Platform team. You'll work with the teams responsible for the systems and related infrastructure that enable our engineering teams to get our industry leading data to our customer and product engineering teams...


  • Gurgaon, Haryana, India Hudson RPO Full time

    Title : Software Engineer IILocation : GurugramJob Description :We are expanding and so we are looking for Software Engineers to join our Solutions Platform team. You'll work with the teams responsible for the systems and related infrastructure that enable our engineering teams to get our industry leading data to our customer and product engineering teams...


  • Gurgaon, Haryana, India Partech Full time

    Hi there We're PAR and our purpose is: To deliver solutions that connect people to the restaurants, meals and moments they love. We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we're calling all rebels, instigators, idealists and builders to join our constantly growing team PAR...

  • Mobile Engineer II

    1 week ago


    Gurgaon, Haryana, India Expedia Group Full time

    Mobile Engineer II, iOS Are you passionate about software engineering and looking to be part of a team that delights millions of travellers worldwide through building engaging experiences?We're looking for a Mobile Engineer II, iOS, to join our team on an exciting journey to build the capabilities and foundations that will power the next generation of...


  • Gurgaon, Haryana, India SHL Full time

    Job Description SHL is seeking a Cyber & Application Security Manager with experience in cloud security, application security, network security, security operations and overall cyber security programs. Reporting to the Chief Information Security Officer & SVP of IT, this individual will be responsible for driving the cyber, cloud, and network security...


  • Gurgaon, Haryana, India Ameriprise Financial Full time

    Senior Information Security Engineer required for Security Infrastructure Management team, with relevant experience in Security tools Operations - UEBA/SIEM/Securonix,Tripwire Ip360, AWS Guardduty. Key responsibilities: i) Configure and manage security tools Securonix,Threatstream,Tripwire,AWS Guardduty. ii) Perform independent assignments - RIN...

  • Security Engineer

    1 week ago


    Gurgaon, Haryana, India Nityo Infotech Full time

    Customer Service , Engineering , Management , Network Security , Operations Management , Risk Management , Alto , Analysis , Analysts , App , Application , Application Security , Architecture , Assessment , Background , Base , Based , Business , CISA , CISSP , Certifications , Clear , Cloud , Company , Constraints , Controls , Coordinate , Create ,...


  • Gurgaon, Haryana, India Egon Zehnder Full time

    The CompanyEgon Zehnder ( is trusted advisor to many of the world's most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies, government...


  • Gurgaon, Haryana, India Egon Zehnder Full time

    The Company Egon Zehnder ) is trusted advisor to many of the world's most respected organizations and a leading Executive Search firm, with more than 550 consultants and 63 offices in 36 countries spanning Europe, the Americas, Asia Pacific, the Middle East and Africa. Our clients range from the largest corporations to emerging growth companies, government...


  • Gurgaon, Haryana, India Airtel India Full time

    Someone who is familiar with OWASP/SANS standardsExperience in using automated and manual testing tools (Burp Suite Pro, Appscan, NMAP, Acuentix etc.)Good hands-on experience with Application Security Assessment tools both static and dynamic like Veracode, Fortify, WebInspect, CodeSecure, AppScan, Burp, CoverityPerforming security testing over APIsAbility to...


  • Gurgaon, Haryana, India Jobs for Humanity Full time

    Job Description Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0%As the world works and lives faster, FIS is leading the way. Our fintech solutions touch nearly every market, company and person on the planet. Our teams are inclusive and...


  • Gurgaon, Haryana, India Thermo Fisher Scientific Full time

    Work ScheduleStandard (Mon-Fri)Environmental ConditionsOffice, Some degree of PPE (Personal Protective Equipment) required (safety glasses, gowning, gloves, lab coat, ear plugs etc.)We are currently seeking a highly motivated Scientist II, Field Applications to join our exceptional team at Thermo Fisher Scientific Inc. in India. This is a unique opportunity...


  • Gurgaon, Haryana, India Ciena Corporation Full time

    Join Ciena, a company that prioritizes its people-first philosophy. Be part of a team that values a personalized and flexible work environment, empowering individual growth, wellbeing, and a sense of belonging. Ciena is a technology company that intertwines business priorities with meaningful social impact.Discover More About Ciena:We strongly advocate for...


  • Gurgaon, Haryana, India FIS Global Full time

    Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0%Are you curious, motivated, and forward-thinking? At FIS, you'll have the opportunity to work on some of the most challenging and relevant issues in financial services and technology. Our talented...


  • Gurgaon, Haryana, India FIS Global Full time

    Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0%Are you curious, motivated, and forward-thinking? At FIS, you'll have the opportunity to work on some of the most challenging and relevant issues in financial services and technology. Our talented...


  • Gurgaon, Haryana, India Jobs for Humanity Full time

    Job Description Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0%Are you curious, motivated, and forward-thinking? At FIS, you'll have the opportunity to work on some of the most challenging and relevant issues in financial services and...


  • Gurgaon, Haryana, India Expedia Group Full time

    Software Development Engineer II Are you an engineer with a passion for infrastructure and platforms? We are looking for an upbeat, collaborative, and creative individual who is excited about the opportunity to develop a compute platform for the worlds largest travel companyThe Runtime Compute team provides container orchestration capabilities across Expedia...