Application Security Engineer

3 weeks ago


Mumbai, Maharashtra, India Strategy Full time

Job Location : Pune, India

Full-time in person from Strategy Office a minimum of 4 days per week


Job Description :

Join Strategys IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategys software applications while using modern security and AI tooling.

In this position, you will be responsible for integrating security practices throughout the software development lifecycle, ensuring that our software products are resilient against vulnerabilities.

- Secure SDLC Integration : Work closely with development teams to integrate security into the SDLC, including threat modeling, secure code reviews, and security testing.

- Vulnerability Management : Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA) tools.

- Security Assessments & Penetration Testing : Conduct manual and automated penetration testing of web, mobile, and cloud applications to detect security flaws.

- Secure Code Review : Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices.

- Threat Modeling & Risk Analysis : Perform threat modeling to anticipate potential attack vectors and improve security architecture.

- DevSecOps Enablement : Support and enhance DevSecOps initiatives by integrating security automation within CI/CD pipelines.

- Incident Response & Remediation : Assist in investigating security incidents related to applications and work with engineering teams to remediate threats.

- Security Awareness & Training : Educate and mentor developers on OWASP Top 10, SANS 25, and other security best :

- Bachelors degree in Computer Science, Engineering, or related field

- Minimum 2 years of software development or software security experience in an agile environment

- Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., Checkmarx, Fortify, Veracode, SonarQube, Burp Suite, ZAP).

- Fluent in one or more programming languages, such as Python, Java, JavaScript

- Strong knowledge of secure coding principles and application security frameworks

- Familiarity with security tools (e.g., static and dynamic analysis tools, vulnerability scanners)

- Understanding of security standards and regulations (e.g., OWASP, NIST)

- Hands-on experience with Generative AI and/or ML in creating innovative applications that enhance productivity and efficiency, coupled with a strong eagerness to learn

- Experience with cloud security best practices in AWS, Azure, or GCP.

- Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues

- Effective interpersonal skills; ability to collaborate successfully with both technical and non-technical stakeholders

- Ability to articulate complex technical concepts with clarity, supported by effective written and verbal communication skills

(ref:hirist.tech)

  • Mumbai, Maharashtra, India Security Lit Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Description: Application Security Engineer (L1)Role OverviewWe are looking for an Application Security Engineer (L1) to join our security team. This is an entry-level position requiring at least 1 year of hands-on experience in application security testing. You will work on identifying and reporting vulnerabilities across web, mobile, API, and thick...


  • Mumbai, Maharashtra, India Security Lit Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Description: Application Security Engineer (L2)Role OverviewWe are seeking an experienced Application Security Engineer (L2) to take a lead role in our security testing team. This role requires of 3 year experience (first priority will be given to more than 4 year experience resources for selection) and mandates professional security certifications. You...


  • Mumbai, Maharashtra, India TAC Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job DescriptionAs a Security Engineer VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies.Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...


  • Mumbai, Maharashtra, India Leaders Access Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Role Summary:We are looking for an experienced and technically skilled Application Security Engineer to strengthen our cybersecurity posture. The ideal candidate should possess a solid understanding of application-level vulnerabilities, secure code practices, and vulnerability management tools. You will be responsible for conducting in-depth assessments,...


  • Mumbai, Maharashtra, India Employee Forums Full time

    Role Summary : We are looking for an experienced and technically skilled Application Security Engineer to strengthen our cybersecurity posture. The ideal candidate should possess a solid understanding of application-level vulnerabilities, secure code practices, and vulnerability management tools. You will be responsible for conducting in-depth assessments,...


  • Mumbai, Maharashtra, India Employee Forums Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Role Summary : We are looking for an experienced and technically skilled Application Security Engineer to strengthen our cybersecurity posture. The ideal candidate should possess a solid understanding of application-level vulnerabilities, secure code practices, and vulnerability management tools. You will be responsible for conducting in-depth...

  • Security Researcher

    2 days ago


    Mumbai, Maharashtra, India Security Brigade Full time US$ 80,000 - US$ 1,20,000 per year

    Job DescriptionSecurity Brigade is looking for a Security Researcher who will be working with ShadowMap tool which is an internal security tool & manage on-site clients for long-term.Objective of this RoleAnalyze attack surface management tool which contains web & mobile application alerts, data leaks, dark web & exposed code repositories.Assist clients by...

  • Application Security

    4 weeks ago


    Mumbai, Maharashtra, India ServQual Full time

    Company DescriptionServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...

  • Application Security

    4 weeks ago


    Mumbai, Maharashtra, India ServQual Full time

    Company Description Serv Qual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN.SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...

  • Application Security

    4 weeks ago


    Mumbai, Maharashtra, India ServQual Full time

    Company Description ServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, enabling continuous GRC, automated risk assessments, and real-time control...