Application Security Engineer

1 month ago


gurugram, India Soffit Infrastructure Services (P) Ltd Full time

Job Overview:

We are looking for a talented and experienced Application Security Engineer to join our team. The ideal candidate will have a strong understanding of application security standards, tools, and methodologies and will be responsible for conducting security assessments, penetration testing, and vulnerability analysis for web and mobile applications. This role requires hands-on experience with both automated and manual testing tools, familiarity with security mechanisms, and a commitment to improving the overall security posture of the organization.


Key Responsibilities:

• Conduct security assessments for both web and mobile applications.

• Perform vulnerability assessments and penetration tests using tools such as Burp Suite Pro, AppScan, Veracode, Fortify, WebInspect, Acunetix, etc.

• Leverage mobile application testing tools like Drozer, Xposed, MobSF, SSLTrustKiller, Frida, apktool, dex2jar, jadx, and IDA for iOS and Android applications.

• Conduct thorough testing of APIs to identify security flaws.

• Utilize OWASP and SANS standards to guide security practices.

• Stay up to date with the latest security testing tools, techniques, and ethical hacking methodologies.

• Compile and present risk-based findings to stakeholders, providing detailed reports and suggesting appropriate mitigations.

• Provide expertise on penetration testing methodologies, including black box, grey box, and white box testing.

• Demonstrate proficiency with common penetration testing tools such as nmap, Wireshark, Kali Linux, Metasploit, OpenVAS, OWSAP ZAP, Accunetix, Nikto, Nessus, and sqlmap.

• Assist development teams with implementing penetration tests as part of the Secure Software Development Life Cycle (Secure SDLC).

• Create and refine security checklists tailored to organizational needs.

• Ensure continuous security improvement by making suggestions for system and process enhancements.

• Experience working with SaaS, IaaS, and PaaS environments, helping integrate and optimize security technologies and processes.


Skills and Qualifications:

• Proficiency with OWASP Top 10 and SANS security standards.

• Strong experience in using security assessment tools, including both static (SAST) and dynamic (DAST) application security testing tools.

• Hands-on experience with mobile application security testing and mobile-specific vulnerabilities. • Proficient with web technologies such as J2EE, XML, JSON, SOAP, REST, and AJAX.

• Basic programming knowledge in Java, JavaScript, and SQL.

• Familiarity with encryption, authentication, and authorization techniques for secure software development.

• Experience in automating security testing using scripting languages like Python, Bash, or Java.

• Knowledge of network security and vulnerability assessment practices.

• Experience in Secure Code Review and identifying vulnerabilities in the source code.

• Strong understanding of various security techniques and risk assessment processes.


Certifications:

• Certified Ethical Hacker (CEH) or equivalent certifications related to application security.


Desired Competencies:

• OWASP, Burp Suite, Web Application Security, Acunetix, Vulnerability Assessment, Network Security, Mobile Application Security.

• Proficient in Secure Code Review, Python, Bash, Java, and Automation scripting.



  • gurugram, India Soffit Infrastructure Services (P) Ltd Full time

    Job Overview: We are looking for a talented and experienced Application Security Engineer to join our team. The ideal candidate will have a strong understanding of application security standards, tools, and methodologies and will be responsible for conducting security assessments, penetration testing, and vulnerability analysis for web and mobile...


  • Gurugram, India Soffit Infrastructure Services (P) Ltd Full time

    Job Overview: We are looking for a talented and experienced Application Security Engineer to join our team. The ideal candidate will have a strong understanding of application security standards, tools, and methodologies and will be responsible for conducting security assessments, penetration testing, and vulnerability analysis for web and mobile...


  • Gurugram, India Partech Full time

    Hi there! Have you noticed that the restaurant industry is changing?We are PAR and our purpose is:To deliver solutions that connect people to the restaurants, meals, and moments they love.At PAR Technology, our relentless drive for innovation and unwavering commitment to customer success are at the heart of everything we do. We lead the restaurant and retail...


  • Gurugram, India Housing.com Full time

    REA India is a part of REA Group Ltd. of Australia (ASX: REA) ("REA Group"). It is the country's leading full stack real estate technology platform that owns Housing.com and PropTiger.com.REA India is the only player in India that offers a full range of services in the real estate space, assisting consumers through their entire home seeking journey all...


  • Gurugram, India Egon Zehnder Full time

    The Company Knowledge Centre India (KCI) Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder. There are 5 teams that make up KCI: Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT. Your Journey at Egon Zehnder Starts Here At EZ, you have the opportunity to...


  • Gurugram, India Egon Zehnder Full time

    The Company Knowledge Centre India (KCI) Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder. There are 5 teams that make up KCI: Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT. Your Journey at Egon Zehnder Starts Here At EZ, you have the opportunity to...


  • Gurgaon/Gurugram, India Housing.com Full time

    REA India is a part of REA Group Ltd. of Australia (ASX: REA) ("REA Group"). It is the country's leading full stack real estate technology platform that owns Housing.com and PropTiger.com.REA India is the only player in India that offers a full range of services in the real estate space, assisting consumers through their entire home seeking journey all...


  • Gurgaon/Gurugram, India StatusNeo Technology Consulting Pvt. Ltd Full time

    Job Title : Application Security EngineerLocation : Gurgaon, Haryana (Work from office) Duration : Full-timeExperience : 3-6 yearsJob Description : Key Responsibilities :- Drive the culture & initiative of secure-by-design in the area of application development- Support Application security function across the entire software development practice- Manage...


  • Gurugram, India PeopleXM Full time

    Description :- Support development, test and production environments, including application security and availability.- Create, configure, backup and restore a WebLogic Server domain, cluster, and authentication provider.- Ensures installations meet standards and technical specifications.- Plan, install, build, manage, support, configure, secure and test...

  • IT Security Analyst

    3 weeks ago


    Gurugram, India Jobs for Humanity Full time

    Job Description Position Type : Full time Type Of Hire : Experienced (relevant combo of work and education) Education Desired : Bachelor of Computer Science Travel Percentage : 0%As the world works and lives faster, FIS is leading the way. Our fintech solutions touch nearly every market, company and person on the planet. Our teams are inclusive and diverse....


  • gurugram, India NCR Voyix Full time

    Job Title: Information Security Engineer IILocation: Gurugram, HybridRequired Skills:Strong knowledge of network, backend systems, operating systems, applications, and web services in a manner that allows for the interaction of all as it relates to security and services. Endpoint Engineering skills like Crowd Strike, McAfee, Carbon Black CloudAdded advantage...

  • PAR Tech

    19 hours ago


    Gurugram, India PAR Tech India Full time

    We are PAR and our purpose is :To deliver solutions that connect people to the restaurants, meals, and moments they love. At PAR Technology, our relentless drive for innovation and unwavering commitment to customer success are at the heart of everything we do. We lead the restaurant and retail industries by ensuring that our products-from point of sale...


  • gurugram, India Everest Group Full time

    About Everest GroupEverest Group is a leading research firm helping business leaders make confident decisions. We guide clients through today’s market challenges and strengthen their strategies by applying contextualized problem-solving to their unique situations. This drives maximized operational and financial performance and transformative experiences....


  • Gurugram, India NCR Voyix Full time

    Job Title: Information Security Engineer IILocation: Gurugram, HybridRequired Skills:Strong knowledge of network, backend systems, operating systems, applications, and web services in a manner that allows for the interaction of all as it relates to security and services. Endpoint Engineering skills like Crowd Strike, McAfee, Carbon Black CloudAdded advantage...


  • Gurugram, India NCR Voyix Full time

    Job Title: Information Security Engineer IILocation: Gurugram, HybridRequired Skills:Strong knowledge of network, backend systems, operating systems, applications, and web services in a manner that allows for the interaction of all as it relates to security and services. Endpoint Engineering skills like Crowd Strike, McAfee, Carbon Black CloudAdded advantage...


  • Gurugram, India NCR Voyix Full time

    Job Title: Information Security Engineer II Location: Gurugram, Hybrid Required Skills: Strong knowledge of network, backend systems, operating systems, applications, and web services in a manner that allows for the interaction of all as it relates to security and services. Endpoint Engineering skills like Crowd Strike, McAfee, Carbon Black Cloud Added...


  • gurugram, India NCR Voyix Full time

    Job Title: Information Security Engineer IILocation: Gurugram, HybridRequired Skills:Strong knowledge of network, backend systems, operating systems, applications, and web services in a manner that allows for the interaction of all as it relates to security and services. Endpoint Engineering skills like Crowd Strike, McAfee, Carbon Black CloudAdded advantage...


  • Gurugram, India GLG Full time

    Senior Security Operations Engineer Location: India - Remote We are seeking an experienced and effective Security Operations Engineer to join our Information Security Team. The successful candidate will report to the VP of Information Security and will maintain, implement, and enrich the program that safeguards our infrastructure, systems, applications...


  • Gurgaon/Gurugram, IN PeopleXM Full time

    Description :- Support development, test and production environments, including application security and availability.- Create, configure, backup and restore a WebLogic Server domain, cluster, and authentication provider.- Ensures installations meet standards and technical specifications.- Plan, install, build, manage, support, configure, secure and test...


  • Gurgaon/Gurugram, India PeopleXM Full time

    Description :- Support development, test and production environments, including application security and availability.- Create, configure, backup and restore a WebLogic Server domain, cluster, and authentication provider.- Ensures installations meet standards and technical specifications.- Plan, install, build, manage, support, configure, secure and test...