Senior Application Security Engineer

14 hours ago


Pacific Remote Islands Marine National Monument, India Nexsofture Private Limited Full time

Role Overview

We are seeking a highly skilled Senior Application Security Engineer with deep expertise in application security, threat modeling, and secure design, particularly within the ServiceNow ecosystem. The ideal candidate will combine strong technical security knowledge with practical experience in enterprise application development and cloud environments.

This role requires hands-on work with threat modeling, secure architecture reviews, security testing, and automation, alongside close collaboration with engineering and leadership teams to strengthen security posture, reduce risk, and protect sensitive customer data.

Key Responsibilities

  • Perform threat modeling, architecture reviews, and security design reviews for ServiceNow applications, APIs, and integrations.
  • Conduct security assessments and penetration testing using SAST/DAST tools (e.g., Checkmarx, Veracode, Burp Suite, OWASP ZAP).
  • Implement and maintain security testing automation within CI/CD pipelines.
  • Analyze and remediate vulnerabilities, ensuring secure coding practices and compliance with security standards.
  • Work hands-on with ServiceNow platform security architecture, configuration, and application development.
  • Collaborate with developers, architects, and stakeholders to ensure secure integration and data protection across distributed systems.
  • Provide technical guidance and mentorship to engineering teams on secure design principles and best practices.
  • Communicate technical risk and mitigation strategies clearly to both technical and non-technical stakeholders.
  • Support governance initiatives by aligning with industry security frameworks and compliance standards.

Required Qualifications

Experience & Expertise

  • 6+ years of experience in application or cloud security engineering.
  • Demonstrable expertise in threat modeling frameworks (STRIDE, PASTA, attack trees, etc.).
  • Hands-on experience with SAST & DAST tools – setup, configuration, analysis, and remediation.
  • Mandatory: Extensive, production-level ServiceNow platform experience – security architecture, administration, and application ecosystem.
  • Strong troubleshooting & analytical skills in distributed systems security.
  • Proficiency in JavaScript, Python, or scripting languages used in ServiceNow/web development.
  • Deep understanding of:
  • Authentication & Authorization protocols (OAuth, SAML, SSO)
  • Secure API design & access controls
  • Modern web application architecture & attack vectors
  • Industry standards (OWASP, NIST, etc.)
  • Exposure to secure CI/CD pipelines and integration of security tools into DevSecOps workflows.

Preferred Qualifications (Nice to Have)

  • Industry certifications: CISSP, CEH, OSCP, CSSLP, or ServiceNow Certified Implementation Specialist.
  • Experience conducting code and architecture reviews for SaaS or enterprise-scale systems.
  • Familiarity with security governance & compliance frameworks (ISO 27001/2, SOC2, GDPR).
  • Knowledge of cloud security (AWS, Azure, GCP) and hybrid architectures.
  • Experience in incident response, forensics, or penetration testing.
  • Knowledge of security monitoring, alerting, and SIEM integrations.

Job Type: Full-time

Work Location: Remote


  • Security Engineer

    14 hours ago


    Pacific Remote Islands Marine National Monument, India NotDisclosed Full time

    Key Responsibilities: Design, implement, and maintain security architecture across applications, infrastructure, and networks. Ensure data security (TLS 1.3, AES-256) and strong identity/access management (SAML, OAuth, RBAC). Lead threat modeling, risk assessments, and vulnerability management. Oversee secure SDLC practices: code reviews, SAST/DAST, CI/CD...


  • Pacific Remote Islands Marine National Monument, India Ocrolus Full time

    Come build at the intersection of AI and fintech. At Ocrolus, we're on a mission to help lenders automate workflows with confidence—streamlining how financial institutions evaluate borrowers and enabling faster, more accurate lending decisions. Our AI-powered data and analytics platform is trusted at scale, processing nearly one million credit applications...


  • Pacific Remote Islands Marine National Monument, India Sun King Full time

    Description Job location: Remote in India About the role:In this role, your principal mission will be to drive security-related engineering engagement and technical remediation across Sun King's product lines. You will work across application security, architecture reviews, and cloud security to scale security engagement across Engineering. As a Product...

  • L1 Security Analyst

    13 hours ago


    Pacific Remote Islands Marine National Monument, India Kobalt Security Inc. Full time

    About Us: At , our mission is to solve cybersecurity for SMBs at scale. We believe small businesses are the engine behind innovation and growth. Understanding the challenges that our customers have enables us to design and refine scalable cybersecurity services that support a secure path to growth. This is reflected in everything we do from the programs we...


  • Pacific Remote Islands Marine National Monument, India Saviynt Full time

    Saviynt's AI-powered identity platform manages and governs human and non-human access to all of an organization's applications, data, and business processes. Customers trust Saviynt to safeguard their digital assets, drive operational efficiency, and reduce compliance costs. Built for the AI age, Saviynt is today helping organizations safely accelerate their...


  • Pacific Remote Islands Marine National Monument, India e-Dictate IT solutions Pvt. Ltd. Full time

    OverviewWe are looking for an experienced professional to join our team and lead the implementation of Single Sign-On (SSO) using SAML for our applications built in the .NET environment. Role Overview:As a Senior Engineer, you will be responsible for designing, implementing, and integrating SSO solutions leveraging SAML protocols. You will work closely with...


  • Pacific Remote Islands Marine National Monument, India CALLEASEAI Full time

    We are looking for a skilled Web Application Engineer with over three years of experience to join our team. You'll play a key role in developing and maintaining our core SaaS platform, which is built on WordPress. This is a remote position where you will be responsible for the full development lifecycle, from concept to deployment.Responsibilities Design,...


  • Pacific Remote Islands Marine National Monument, India Kotech Solutions Full time

    We are looking for a skilled Web Application Engineer with over three years of experience to join our team. You'll play a key role in developing and maintaining our core SaaS platform, which is built on WordPress. This is a remote position where you will be responsible for the full development lifecycle, from concept to deployment.Responsibilities Design,...


  • Pacific Remote Islands Marine National Monument, India Zimperium Full time

    Zimperium is an industry leader in enterprise mobile security, being the first and only company to provide a complete mobile threat defense system that offers real-time, on device world-class protection against both known and unknown next generation of advanced mobile cyberattacks and malware. Our MTD and award-winning machine learning-based engine protects...

  • Security Engineer L2

    14 hours ago


    Pacific Remote Islands Marine National Monument, India Rackspace Technology Full time

    Rackspace Security (Public Cloud) Security Engineer L3 (Endpoint Security) About Rackspace Cyber Defence Rackspace Cyber Defence is our next generation cyber defence and security operations capability that builds on 20+ years of securing customer environments to deliver proactive, risk-based, threat-informed and intelligence driven security services. Our...