Senior Application Security Engineer

2 weeks ago


Bengaluru, India IQMATRIX INFOWAYS SOLUTIONS PRIVATE LIMITED Full time

Principal Accountabilities :

- Lead by example and independently perform all functions and services of the GIS AppSec team.

- Conduct advanced web application, micro-services, API, cloud penetration tests of proprietary and 3rd party on-prem/cloud systems and applications.

- Perform targeted manual security reviews at key points in the software development life cycle.

- Perform peer reviews of assessment reports and provide constructive guidance to team members.

- Train others on tools and processes used in AppSec methodology.

-Provide technical guidance to team members and other stakeholders (e.g. development teams, project teams, business stakeholders).

- Provide input for strategic visioning / planning.

- Identify the need and develop new security standards and reference architectures.

- Identify metrics that can help measure performance, gaps in coverage, need for head count, trends in findings.

- Identify and document process improvements and influence team and management support and prioritize changes.

- Establish yourself as a recognized technical expert within the team.

- Have an interest in continuing your education and training and staying current within the application security domain.

Requirements :

- 12+ years' experience performing security assessments of a wide variety of systems, applications and technologies which include both proprietary and industry standard protocols.

- Expert knowledge and experience performing manual security reviews of application source code for security vulnerabilities written in various languages including : .Net (C#, VB#), C++, .

- Expert level skills with application security testing tools including : Burp Suite Pro, Kali, Checkmarx, sqlmap, nmap, Wireshark, etc.

- Expert knowledge of the Open Web Application Security Project (OWASP) Top 10 vulnerabilities most critical web vulnerabilities and how to identify and remediate them.

- Advanced knowledge of application reverse engineering and using tools such as : Java decompilers, .Net decompilers, IDAPro, etc.

- Advanced knowledge of UNIX/Linux/Windows.

- Advanced knowledge with scripting languages such as: Python, bash, Powershell, etc.

- Experience with drafting of Security Standards, Reference Architectures and Secure Technical Implementation Guidelines.

- Have a passion for application security testing and be able to share your passion and learnings with teammates and customers.

- Self-motivated and a self-starter (If you have a question, find the answer, ask somebody, figure it out, and communicate).

- Excellent Oral and Written communications skills.

- Deep knowledge of security frameworks like OWASP and experience with API security.

- Strong experience in source code review and security testing methodologies (SAST, IAST, DAST, RASP).

Nice to have :

- Certifications such as GWAPT, eWPTx, OSCP, OSWE, CISSP, or other relevant certifications are highly preferred.

(ref:hirist.tech)

  • Bengaluru, India Zynga Full time

    AVAILABLE POSITIONS Senior Application Security EngineerCareers Category:EngineeringCareers location:Bengaluru, IndiaConnected Worker Type:ConnectedR_111904Job Summary:We are currently seeking a Senior Application Security Engineer to join our Product Security team. The team assesses, enables, and influences the secure design, development, operation and...


  • Bengaluru, India Sumo Logic Full time

    Senior Software Engineer-II: Application SecurityApplication Security SREs at Sumo Logic partner with our development teams, Security Operations Center (SOC), to ensure our products are secure and compliant. You will ensure operational excellence, security, and compliance of our entire cloud and technology stack!What you will do:Ensure engineering teams...


  • Bengaluru, India Zeta Services Inc. Full time

    About ZetaZeta is aNext-Gen Banking Techcompany that empowers banks and fintechs to launch banking products for the future. It was founded by and Ramki Gaddipati in 2015.Our flagship processing platform - Zeta Tachyon - is the industry’s first modern, cloud-native, and fully API-enabled stack that brings together issuance, processing, lending, core...


  • Bengaluru, India Zeta Services Inc. Full time

    About ZetaZeta is a Next-Gen Banking Tech company that empowers banks and fintechs to launch banking products for the future. It was founded by and Ramki Gaddipati in 2015.Our flagship processing platform - Zeta Tachyon - is the industry’s first modern, cloud-native, and fully API-enabled stack that brings together issuance, processing, lending, core...


  • Bengaluru, India Sumo Logic Full time

    Senior Software Engineer-II: Application Security  Application Security SREs at Sumo Logic partner with our development teams, Security Operations Center (SOC), to ensure our products are secure and compliant. You will ensure operational excellence, security, and compliance of our entire cloud and technology stack! What you will do: Ensure...

  • Senior Engineer

    1 week ago


    Bengaluru, India SHIELD Full time

    SHIELD is a device-first risk AI platform that helps digital businesses worldwide eliminate fake accounts and stop all fraudulent activities. SHIELD identifies the root of fraud with the global standard for device identification (SHIELD Device ID) and actionable risk intelligence, empowering businesses to stay ahead of new and unknown fraud threats. We are...


  • Bengaluru, India Getinz Techno Services Full time

    Hiring Senior Mobile Application Security Engineer for a product company in the mobile-first risk intelligence platform (Fraud Detection Software) domain.Experience Range: 4 - 8 yrsLocation: Koramangala, BengaluruWork from officeRequirementsBachelor's degree in Computer Science, Cybersecurity, or a related fieldMinimum of 4 years of experience within mobile...


  • Bengaluru, India ADCI - Karnataka Full time

    In Amazon Stores, we ship some of the widest arrays of technology found at any company. From amazon.com to world class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the boundaries of technology in every direction using the globe’s largest AWS deployment.As an AppSec engineer, you will collaborate with...


  • Bengaluru, India Ethos Full time

    About EthosEthos was built to make it faster and easier to get life insurance for the next million families. Our approach blends industry expertise, technology, and the human touch to find you the right policy to protect your loved ones.We leverage deep technology and data science to streamline the life insurance process, making it more accessible and...


  • Bengaluru, India Amazon Development Centre (India) Private Limited Full time

    In Amazon Stores, we ship some of the widest arrays of technology found at any company. From amazon.com to world class machine learning pipelines, from cutting-edge digital healthcare to no-checkout retail, we push the boundaries of technology in every direction using the globe’s largest AWS deployment.As an AppSec engineer, you will collaborate with...

  • Senior Engineer

    3 days ago


    Bengaluru, India SHIELD Full time

    SHIELD is a device-first risk AI platform that helps digital businesses worldwide eliminate fake accounts and stop all fraudulent activities. SHIELD identifies the root of fraud with the global standard for device identification (SHIELD Device ID) and actionable risk intelligence, empowering businesses to stay ahead of new and unknown fraud threats. We are...


  • Bengaluru, India HappyFox Full time

    We’re looking for an experienced Security Engineer with at-least 5+ years of experience to join our Product Engineering teams to help keep our products secure.Responsibilities: Perform manual and automated application penetration tests and provide suggestions to harden our productsParticipate regularly in development and release process to identify and...


  • Bengaluru, India Livestream Full time

    As anApplication Security Engineer IIIat Vimeo, you will engage in a variety of activities, either offensive, defensive, or some combination thereof, ultimately aimed at safeguarding our users who entrust Vimeo with their content every day.You’ll plan, carry out, and lead security initiatives to monitor and protect sensitive data and systems from...


  • Bengaluru, India Vimeo, Inc. Full time

    You’ll plan, carry out, and lead security initiatives to monitor and protect sensitive data and systems from infiltration and cyber-attacks.You love to solve puzzles and are a great team player.This role is remote.What you’ll do:Penetration testing— either hunt for security issues on our production or staged applications during an open-box internal pen...


  • Bengaluru, India Ethos Full time

    About Ethos Ethos was built to make it faster and easier to get life insurance for the next million families. Our approach blends industry expertise, technology, and the human touch to find you the right policy to protect your loved ones.  We leverage deep technology and data science to streamline the life insurance process, making it more accessible...


  • Bengaluru, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate the manual work they normally need to do to make employee changes. Take onboarding, for example....

  • Senior Engineer

    3 days ago


    Bengaluru, India First Advantage Full time

    Who You Are:You are self-motivated and ready to “roll up your sleeves." While you are an independent contributor, you are also collaborative. You can spearhead a project and see it through from start to completion.As a team player, you navigate cross-functional teams and work well with team members in other business units and departments toward a common...


  • Bengaluru, India Rippling Full time

    About RipplingRippling is the first way for businesses to manage their HR & IT—payroll, benefits, computers, apps, and more—in one unified workforce platform.By connecting every business system to one source of truth for employee data, businesses can automate the manual work they normally need to do to make employee changes. Take onboarding, for example....


  • Bengaluru, India Getinz Techno Services Full time

    Hiring Senior Mobile Application Security Engineer for a product company in the mobile-first risk intelligence platform (Fraud Detection Software) domain.Experience Range: 4 - 8 yrsLocation: Koramangala, BengaluruWork from officeRequirementsBachelor's degree in Computer Science, Cybersecurity, or a related fieldMinimum of 4 years of experience within mobile...


  • Bengaluru, India News Corp Full time

    Job Description : Job Title: Senior Engineer, Security Engineering Job Location: Bengaluru, Karnataka Work Arrangement: Hybrid (3 days per week in office) Responsibilities: Build automation to provide for cybersecurity, CI/CD or similar applications Expected to be aware of IaaS, SaaS and PaaS technologies and have the ability to...