Applications Security Engineer

1 day ago


Mumbai, Maharashtra, India Employee Forums Full time

Role Summary :

We are looking for an experienced and technically skilled Application Security Engineer to strengthen our cybersecurity posture. The ideal candidate should possess a solid understanding of application-level vulnerabilities, secure code practices, and vulnerability management tools.

You will be responsible for conducting in-depth assessments, secure code reviews, and supporting development teams to remediate findings in alignment with security standards.

Key Responsibilities :

- Safeguard the Confidentiality, Integrity, and Availability of the organization's application ecosystem.

- Perform Vulnerability Assessment and Penetration Testing (VAPT) for Web, Mobile, and API components using both open-source and commercial tools.

- Conduct secure code reviews to identify critical flaws and provide remediation guidance to development teams.

- Lead manual penetration testing and demonstrate proof-of-concept exploits.

- Guide developers and QA teams in interpreting security findings and applying fixes aligned with secure SDLC practices.

- Collaborate with DevOps teams to integrate security into CI/CD pipelines.

- Maintain compliance with PCI DSS and other regulatory/security standards.

- Drive continuous improvements in security test plans, test cases, and internal security frameworks.

Technical Skills Required :

- 3+ years of hands-on experience in Application Security.

- Proficient in VAPT (Static & Dynamic Analysis) for Web, API, and Mobile applications.

- Strong experience with secure code review tools like Fortify, Coverity, Checkmarx.

- Familiarity with DevSecOps and CI/CD pipeline security integration.

- Hands-on with tools like Burp Suite, Nessus, Postman, SoapUI, Metasploit.

- Understanding of WAFs, API gateways, and secure protocol practices.

- Development/scripting knowledge in Java, JavaScript, AngularJS, or Python.

- Experience using JIRA for issue tracking and defect Preferred : OSCP, OSWE, CEH, GWEB or similar security Skills :

- Strong communication and documentation skills.

- Ability to work independently and collaboratively.

- Must be proactive, with an ownership mindset and attention to : Andheri (W), Mumbai, Note :

- Candidates currently residing in Mumbai should apply.

- Candidates who are Immediate Joiners or have 30 Days' Notice Period will be considered.

(ref:hirist.tech)

  • Mumbai, Maharashtra, India Strategy Full time

    Job Location : Pune, IndiaFull-time in person from Strategy Office a minimum of 4 days per weekJob Description :Join Strategys IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategys software applications while using modern security and AI tooling.In this position, you will be responsible for integrating...


  • Mumbai, Maharashtra, India Lxme Full time

    About Us:At LXME, we're building India's first full-stack financial platform designed exclusively for women. Trust, security, and reliability are at the heart of our mission to empower millions of women to confidently save, manage, and invest their money. As we scale, we're looking for an App Security Engineer to lead our application security efforts across...


  • Mumbai, Maharashtra, India Lxme Full time

    About Us:At LXME, we're building India's first full-stack financial platform designed exclusively for women. Trust, security, and reliability are at the heart of our mission to empower millions of women to confidently save, manage, and invest their money. As we scale, we're looking for an App Security Engineer to lead our application security efforts across...


  • Mumbai, Maharashtra, India Leaders Access Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Role Summary:We are looking for an experienced and technically skilled Application Security Engineer to strengthen our cybersecurity posture. The ideal candidate should possess a solid understanding of application-level vulnerabilities, secure code practices, and vulnerability management tools. You will be responsible for conducting in-depth assessments,...


  • Navi Mumbai, Maharashtra, India Eventus Security Full time

    Job Title: Senior Security Engineer Experience Range: 3+ years Job Location: Navi Mumbai Key Responsibilities: Provide Tier 1 and Tier 2 technical support for Trend Micro products , including but not limited to: Trend Micro Apex One and Vision One. Deep Security and Vision One Pro. Cloud App Security and Email Security for Exchange. DDI/DDAN/Tipping...


  • Navi Mumbai, Maharashtra, India Eventus Security Full time

    Job Title: Senior Security Engineer Job Location: Navi Mumbai Experience: 3+yrs Key Responsibilities: Provide Tier 1 and Tier 2 technical support for Trend Micro products, including but not limited to: Trend Micro Apex One and Vision One. Deep Security and Vision One Pro. Cloud App Security and Email Security for Exchange. DDI/DDAN/Tipping Point/SMS/DDEI...

  • Security Researcher

    7 hours ago


    Mumbai, Maharashtra, India Security Brigade Full time US$ 80,000 - US$ 1,20,000 per year

    Job DescriptionSecurity Brigade is looking for a Security Researcher who will be working with ShadowMap tool which is an internal security tool & manage on-site clients for long-term.Objective of this RoleAnalyze attack surface management tool which contains web & mobile application alerts, data leaks, dark web & exposed code repositories.Assist clients by...


  • Mumbai, Maharashtra, India ServQual Full time

    Company DescriptionServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...


  • Mumbai, Maharashtra, India ServQual Full time

    Company Description Serv Qual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN.SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...


  • Mumbai, Maharashtra, India ServQual Full time

    Company Description ServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...