Application Security Engineer

2 weeks ago


Pune, India BMC Software Full time

Primary Roles and Responsibilities:

Conduct penetration testing and red teaming exercises targeting mainframe environments and the surrounding application ecosystem.

Perform code-assisted and black-box penetration testing against enterprise applications/systems interacting with RACF, DB2, CICS, MQ, and related subsystems.

Identify risks in authentication, authorization, data handling, and communications within mainframe-integrated products.

Create threat models and guide product teams in mitigating high-impact vulnerabilities early in the SDLC.

Drive remediation efforts through hands-on collaboration and secure design guidance.

Author technical reports and deliver executive summaries tailored to various audiences.

Stay current on vulnerabilities, exploits, and testing techniques relevant to legacy enterprise technologies and mainframe ecosystems.

Assess common integration patterns (SOA, REST/JSON, MQ) for security risks.

To ensure youre set up for success, you will bring the following skillset & experience:

5+ years of experience in penetration testing, with a specialization in systems/applications integrating with mainframe environments.

Deep knowledge of mainframe communication protocols and security mechanisms.

Demonstrated experience conducting red team-style assessments or advanced threat emulation on mainframe systems.

Proficient in tools such as:

Mainframe utilities: REXX, ISPF panels, NetView

Security tools: Nmap, Burp Suite, Wireshark, custom scripts

Strong scripting and automation skills (Python, REXX, Bash, or similar).

Strong communication and leadership skills, with a proven ability to lead technical teams or projects.

Experience producing board-level reports and presenting findings to senior stakeholders.

Exposure to hybrid environments (mainframe to cloud integrations, modernization efforts).

Familiarity with modern enterprise integration methods (REST, SOAP, MQ, FTP) that interface with mainframe services

Whilst these are nice to have, our team can help you develop in the following skills:

Industry certifications such as OSCP, OSCE, CRTP, GIAC GPEN, GXPN, or CISSP.

Background in regulated industries such as banking, insurance, or government, where mainframes are core infrastructure.

Knowledge of COBOL, PL/I, or other mainframe-centric programming languages.

Experience with compliance standards like PCI-DSS, NIST, or SOX as they apply to mainframes.



  • Pune, Maharashtra, India Princenton software services pvt ltd Full time ₹ 5,14,000 - ₹ 22,47,318 per year

    Job Summary:Do you love software and system security? Do you have a strong background in software development? Want to exercise your skills across many OS and hardware platforms in a critical function in a growing team? Want the stability of a Fortune 500 company and the challenges of a multi-site, international development group serving a world-wide,...


  • Pune, Maharashtra, India Swift Strategic Solutions Inc Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Our technology services client is seeking multipleSenior Application Security Engineerto join their team on a contract basis. These positions offer a strong potential for conversion to full-time employment upon completion of the initial contract period. Below are further details about the role:Role: Senior Application Security EngineerExperience: 4- 8...


  • Pune, Maharashtra, India Urbint Full time

    Job Summary :We are seeking an Application Security Engineer-II to help embed security within Urbints software development lifecycle and scale our product security practices. This role focuses on enabling developers with the right tools, patterns, and guidance, while collaborating with engineering, CloudOps, and InfoSec to proactively identify, assess, and...


  • Pune, Maharashtra, India TripleLift Full time

    About TripleLift : We're TripleLift, an advertising platform on a mission to elevate digital advertising through beautiful creative, quality publishers, actionable data and smart targeting. Through over 1 trillion monthly ad transactions, we help publishers and platforms monetize their businesses. Our technology is where the world's leading brands find...


  • Pune, India Apex One Full time

    Key Responsibilities:Conduct comprehensive application security assessments, focusing on the OWASP Top 10 for web and mobile applications.Utilize vulnerability assessment tools to identify and analyze security risks within applications and systems.Collaborate with development teams to integrate security practices into the software development lifecycle...


  • Pune, India TripleLift Full time

    About TripleLiftWe're TripleLift, an advertising platform on a mission to elevate digital advertising through beautiful creative, quality publishers, actionable data and smart targeting. Through over 1 trillion monthly ad transactions, we help publishers and platforms monetize their businesses. Our technology is where the world's leading brands find...


  • pune, India Randstad Full time

     Work within an agile development team and lead at an engineering level the design, development, deployment, and maintenance of software security tooling. Collaborate with development teams to integrate software security into the software development lifecycle (SDLC).  Develop and maintain software security policies, standards, and...


  • Pune, India Urbint Full time

    Job Summary :We are seeking an Application Security Engineer-II to help embed security within Urbints software development lifecycle and scale our product security practices. This role focuses on enabling developers with the right tools, patterns, and guidance, while collaborating with engineering, CloudOps, and InfoSec to proactively identify, assess, and...

  • Application Security

    40 minutes ago


    Bengaluru, Mumbai, Pune, India Alike Thoughts Full time US$ 1,20,000 - US$ 2,00,000 per year

    Location : Mumbai, Bangalore, Pune, Chennai ,Hyderabad, Kolkata, Kochi, Coimbatore, Mysore, Nagpur, Bhubaneswar, Indore, WarangalWe are looking for a skilled Security Engineer to join our platform engineering team The successful candidate will be responsible for designing implementing and managing security measures to protect our systems applications and...


  • Pune, Maharashtra, India BMC Software Full time

    Description and RequirementsHybrid LI-Hybrid At BMC trust is not just a word - it s a way of life We are an award-winning equal opportunity culturally diverse fun place to be Giving back to the community drives us to be better every single day Our work environment allows you to balance your priorities because we know you will bring your best every...