Senior Application Security Engineer

3 weeks ago


Gurugram, India Cvent Full time
Overview:

You are an experienced, hands-on Application Security Engineer who’s passionate about building secure products, automating security workflows, and influencing development teams to embed security into the product development lifecycle. Whether you're ready to take ownership or growing your deep technical skills as a Senior Engineer , you're ready to make a measurable impact. You are required to be in the office for 2 days/week.

You excel at the core of Application Security—from secure design reviews, threat modeling to vulnerability discovery via penetration tests and remediation—and bring an engineering mindset that enhances your impact. You’re also passionate about building internal tools, scripting automation, and scaling security practices across diverse tech stacks as part of Cvent’s Application Security Research & Engineering (ASRE) program


In This Role, You Will:

Integrate and scale security across the SDLC, embedding tools like SAST, DAST, and SCA within CI/CD pipelines. Perform threat modeling, secure code and design reviews, penetration testing and risk assessments for new and existing features—including cloud-native and AI/ML systems. Develop internal tools to automate security testing, support securing cloud-native applications using AWS CDK (CDF), and governance processes using scripting languages like Python, JavaScript, TypeScript, or similar. Collaborate with engineering teams to remediate vulnerabilities identified via scans, manual testing, or external assessments. Partner with product and engineering teams to improve the security posture of APIs, web apps, mobile apps, and infrastructure. Communicate risks clearly to technical and non-technical audiences and support compliance efforts with ISO 27001, SOC2, and PCI.

Why You’ll Love This Role

You’ll build and automate security programs that scale across hundreds of apps and services. You’ll join the ASRE team to innovate at the forefront of Application Security. You’ll work with teams who take security seriously and give you the support to make meaningful change. You’ll grow in a role that offers both technical depth and leadership opportunities , depending on your experience and ambition.
Here's What You Need:

6+ years of hands-on experience in application security or secure software development. Strong scripting/programming skills—able to automate tasks and build internal tools using Python, JavaScript, Bash , or similar. Experience with CI/CD toolchains and integration of security tools in SDLC. Strong familiarity with cloud platforms (AWS-preferred, GCP, or Azure) and principles of cloud-native security. Proficiency in security testing tools (e.g., BurpSuite, Checkmarx, Mend, Veracode, Fortify, ZAP, etc.). Strong grasp of OWASP Top 10, CWE, SANS Top 25, secure coding practices, and web application vulnerabilities.

Bonus If You Have

Experience securing AI/ML pipelines and understanding of adversarial ML or model privacy concerns. Exposure to DevSecOps , SBOMs, IaC security, or supply chain risk management Security certifications such as AWS Certified Security – Specialty , AWS Certified Solutions Architect – Associate/Professional , CSSLP , OSWE , GWAPT , CISSP , OSCP
Integrate and scale security across the SDLC, embedding tools like SAST, DAST, and SCA within CI/CD pipelines. Perform threat modeling, secure code and design reviews, penetration testing and risk assessments for new and existing features—including cloud-native and AI/ML systems. Develop internal tools to automate security testing, support securing cloud-native applications using AWS CDK (CDF), and governance processes using scripting languages like Python, JavaScript, TypeScript, or similar. Collaborate with engineering teams to remediate vulnerabilities identified via scans, manual testing, or external assessments. Partner with product and engineering teams to improve the security posture of APIs, web apps, mobile apps, and infrastructure. Communicate risks clearly to technical and non-technical audiences and support compliance efforts with ISO 27001, SOC2, and PCI.

Why You’ll Love This Role

You’ll build and automate security programs that scale across hundreds of apps and services. You’ll join the ASRE team to innovate at the forefront of Application Security. You’ll work with teams who take security seriously and give you the support to make meaningful change. You’ll grow in a role that offers both technical depth and leadership opportunities , depending on your experience and ambition.
6+ years of hands-on experience in application security or secure software development. Strong scripting/programming skills—able to automate tasks and build internal tools using Python, JavaScript, Bash , or similar. Experience with CI/CD toolchains and integration of security tools in SDLC. Strong familiarity with cloud platforms (AWS-preferred, GCP, or Azure) and principles of cloud-native security. Proficiency in security testing tools (e.g., BurpSuite, Checkmarx, Mend, Veracode, Fortify, ZAP, etc.). Strong grasp of OWASP Top 10, CWE, SANS Top 25, secure coding practices, and web application vulnerabilities.

Bonus If You Have

Experience securing AI/ML pipelines and understanding of adversarial ML or model privacy concerns. Exposure to DevSecOps , SBOMs, IaC security, or supply chain risk management Security certifications such as AWS Certified Security – Specialty , AWS Certified Solutions Architect – Associate/Professional , CSSLP , OSWE , GWAPT , CISSP , OSCP

  • Gurugram, India Cvent Full time

    Overview: You are an experienced, hands-on Application Security Engineer who’s passionate about building secure products, automating security workflows, and influencing development teams to embed security into the product development lifecycle. Whether you're ready to take ownership or growing your deep technical skills as a Senior Engineer , you're ready...

  • Senior Manager

    3 days ago


    Gurugram, India Questhiring Full time

    Job Description :About the job :We are seeking a highly skilled and experienced Senior Manager Application Security to lead our application security strategy, governance, and execution. This role will oversee secure software development practices, drive security reviews and testing, and partner with engineering teams to ensure security is embedded across the...


  • Gurugram, India ChargePoint Full time

    About Us : With electric vehicles expected to be nearly 30% of new vehicle sales by 2025 and more than 50% by 2040, electric mobility is becoming a reality.ChargePoint (NYSE : CHPT) is at the center of this revolution, powering one of the worlds leading EV charging networks and a comprehensive set of hardware, software and mobile solutions for every charging...


  • Gurugram, India ChargePoint Full time

    Job Description About Us With electric vehicles expected to be nearly 30% of new vehicle sales by 2025 and more than 50% by 2040, electric mobility is becoming a reality. ChargePoint (NYSE: CHPT) is at the center of this revolution, powering one of the world's leading EV charging networks and a comprehensive set of hardware, software and mobile solutions for...

  • Security Engineer

    1 week ago


    Gurugram, Gurugram, India Amantya Technologies Full time

    Job Description Company Description Amantya Technologies is a product engineering and system integration company specializing in wireless (4G, 5G), digital, cloud, embedded, hardware, and AI/ML domains. Founded in 2018, Amantya operates from offices in the USA, Canada, and India (Gurgaon, Bangalore, and Nagpur), delivering high-quality solutions to global...


  • IND - HR - Gurugram, Candor Tech Space, India Carelon Global Solutions Full time

    Web Application Firewall - Analyst IT Security - BF JR165971 Position Title:Web Application Firewall - Analyst IT Security - BF JR Job Family:IFT > IT Security & Compliance Shift: Job Description: Job Title Analyst IT Security Requirement Type Full-Time Employee Job Location Bangalore/Hyderabad/Gurugram Requirement Level Associate Hiring Manager Senior...


  • Delhi, Gurugram, NCR, India JINDAL STEEL & POWER Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Description Security testing consultantJob Title: Application security testing consultant (Assistant Manager)Job SummaryWe are seeking an engineer with 3-5 yrs of experience and highly motivated senior security testing consultant to join our team in a dynamic industrial environment. The Application Security testing Engineer will be responsible for...

  • Security Engineer III

    2 weeks ago


    Gurugram, India Success Pact Consulting Pvt Ltd Full time

    Security Engineer III (Cloud, AI/ML-Enhanced Container Security)Years of Experience : 6- 10 YearsLocation : GurgaonIndustry Type : Cybersecurity / Cloud Engineering / Container OrchestrationJob Summary :We are seeking a highly specialized Security Engineer III with 6- 9 years of experience, possessing a strong focus on advanced Cloud Security and practical...

  • Application Engineer

    3 weeks ago


    Gurugram, India DeepRunner AI Full time

    The ideal candidate will have a degree in computer science and experience in developing multiple applications. This candidate should be able to generate clean code and optimal solutions based on the outlined criteria. This candidate should also work closely with various teams in order to establish best practices, codes to utilize and ultimately, execute in...


  • Gurugram, India AHEAD Full time

    AHEAD builds platforms for digital business. By weaving together advances in cloud infrastructure, automation and analytics, and software delivery, we help enterprises deliver on the promise of digital transformation.At AHEAD, we prioritize creating a culture of belonging, where all perspectives and voices are represented, valued, respected, and heard. We...