Application Security Engineer

16 hours ago


Mumbai, Maharashtra, India Strategy Full time

Job Location : Pune, India

Full-time in person from Strategy Office a minimum of 4 days per week


Job Description :

Join Strategys IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategys software applications while using modern security and AI tooling.

In this position, you will be responsible for integrating security practices throughout the software development lifecycle, ensuring that our software products are resilient against vulnerabilities.

- Secure SDLC Integration : Work closely with development teams to integrate security into the SDLC, including threat modeling, secure code reviews, and security testing.

- Vulnerability Management : Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA) tools.

- Security Assessments & Penetration Testing : Conduct manual and automated penetration testing of web, mobile, and cloud applications to detect security flaws.

- Secure Code Review : Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices.

- Threat Modeling & Risk Analysis : Perform threat modeling to anticipate potential attack vectors and improve security architecture.

- DevSecOps Enablement : Support and enhance DevSecOps initiatives by integrating security automation within CI/CD pipelines.

- Incident Response & Remediation : Assist in investigating security incidents related to applications and work with engineering teams to remediate threats.

- Security Awareness & Training : Educate and mentor developers on OWASP Top 10, SANS 25, and other security best :

- Bachelors degree in Computer Science, Engineering, or related field

- Minimum 2 years of software development or software security experience in an agile environment

- Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., Checkmarx, Fortify, Veracode, SonarQube, Burp Suite, ZAP).

- Fluent in one or more programming languages, such as Python, Java, JavaScript

- Strong knowledge of secure coding principles and application security frameworks

- Familiarity with security tools (e.g., static and dynamic analysis tools, vulnerability scanners)

- Understanding of security standards and regulations (e.g., OWASP, NIST)

- Hands-on experience with Generative AI and/or ML in creating innovative applications that enhance productivity and efficiency, coupled with a strong eagerness to learn

- Experience with cloud security best practices in AWS, Azure, or GCP.

- Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues

- Effective interpersonal skills; ability to collaborate successfully with both technical and non-technical stakeholders

- Ability to articulate complex technical concepts with clarity, supported by effective written and verbal communication skills

(ref:hirist.tech)

  • Mumbai, Maharashtra, India Lxme Full time

    About Us:At LXME, we're building India's first full-stack financial platform designed exclusively for women. Trust, security, and reliability are at the heart of our mission to empower millions of women to confidently save, manage, and invest their money. As we scale, we're looking for an App Security Engineer to lead our application security efforts across...


  • Mumbai, Maharashtra, India Lxme Full time

    About Us:At LXME, we're building India's first full-stack financial platform designed exclusively for women. Trust, security, and reliability are at the heart of our mission to empower millions of women to confidently save, manage, and invest their money. As we scale, we're looking for an App Security Engineer to lead our application security efforts across...


  • Mumbai, Maharashtra, India Employee Forums Full time

    Role Summary : We are looking for an experienced and technically skilled Application Security Engineer to strengthen our cybersecurity posture. The ideal candidate should possess a solid understanding of application-level vulnerabilities, secure code practices, and vulnerability management tools. You will be responsible for conducting in-depth assessments,...


  • Navi Mumbai, Maharashtra, India Eventus Security Full time

    Job Title: Senior Security Engineer Experience Range: 3+ years Job Location: Navi Mumbai Key Responsibilities: Provide Tier 1 and Tier 2 technical support for Trend Micro products , including but not limited to: Trend Micro Apex One and Vision One. Deep Security and Vision One Pro. Cloud App Security and Email Security for Exchange. DDI/DDAN/Tipping...


  • Navi Mumbai, Maharashtra, India Eventus Security Full time

    Job Title: Senior Security Engineer Job Location: Navi Mumbai Experience: 3+yrs Key Responsibilities: Provide Tier 1 and Tier 2 technical support for Trend Micro products, including but not limited to: Trend Micro Apex One and Vision One. Deep Security and Vision One Pro. Cloud App Security and Email Security for Exchange. DDI/DDAN/Tipping Point/SMS/DDEI...


  • Mumbai, Maharashtra, India ServQual Full time

    Company DescriptionServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...


  • Mumbai, Maharashtra, India ServQual Full time

    Company Description Serv Qual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN.SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...


  • Mumbai, Maharashtra, India ServQual Full time

    Company Description ServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...

  • Security Consultant

    3 days ago


    Navi Mumbai, Maharashtra, India Eventus Security Full time

    Job Title: Security Consultant Experience range: 1-3 years Job Location: Navi Mumbai / Delhi Immediate Joiners Preferred We are seeking a motivated and technically proficient Security Consultant to join our cybersecurity team. The ideal candidate should have hands-on experience in Vulnerability Assessment and Penetration Testing (VA/PT) across web...

  • Security Consultant

    7 days ago


    Navi Mumbai, Maharashtra, India Eventus Security Full time

    Job Title: Security ConsultantExperience range: 1-3 yearsJob Location: Navi Mumbai / DelhiImmediate Joiners PreferredWe are seeking a motivated and technically proficient Security Consultant to join our cybersecurity team. The ideal candidate should have hands-on experience in Vulnerability Assessment and Penetration Testing (VA/PT) across web...