
Staff Application Security Engineer
3 weeks ago
Who We Are
In todays work environment, employees use a myriad of devices to access IT applications and data over multiple networks to stay productive, wherever and however they work. Ivanti elevates and secures Everywhere Work so that people and organizations can thrive.
While our headquarters is in the U.S., half of our employees and customers are outside the country. We have 36 offices in 23 nations, with significant offices in London, Frankfurt, Paris, Sydney, Shanghai, Singapore, and other major cities around the world.
Ivantis mission is to be a global technology leader enabling organizations to elevate Everywhere Work, automating tasks that discover, manage, secure, and service all their IT assets. Through diverse and inclusive hiring, decision-making, and commitment to our employees and partners, we will continue to build and deliver world-class solutions for our customers.
Our Culture - Everywhere Work Centered Around You
At Ivanti, our success begins with our people. This is why we embrace Everywhere Work across the globe, where Ivantians and our customers are thriving. We believe in a healthy work-life blend and act on it by fostering a culture where all perspectives are heard, respected, and valued. Through Ivantis Centered Around You approach, our employees benefit from programs focused on their professional development and career growth.
We align through our core values by locking arms in collaboration, being champions for our customers, focusing on the outcomes that matter most and fighting the good fight against cyber-attacks. Are you ready to join us on the journey to elevate Everywhere Work
About The Team
Ivanti is a global leader in IT systems and security management, service management, asset management, and mobility management solutions, and is experiencing significant growth worldwide. The company has received numerous awards for being a Top Place to Work. With open positions around the globe, it&aposs an exciting time to join Ivanti Competitive salary and benefits and flexible hours. Ivanti is a great place to work.If youre passionate about what you do and are interested in developing solutions that make a difference and in having fun while doing it, Ivanti is the place for you
What You Will Be Doing
- Develop both broad and deep technical understanding of Ivanti products, services and architectures
- Conduct security assessments such as threat modelling, secure architecture, code reviews and penetration tests on web and mobile applications and services
- Interpret security vulnerability reports to stakeholders, providing advice on vulnerability prioritization, remediation and mitigation
- Closely coordinate with all stakeholders to bake in security into all phases of SDLC
- Create and maintain documentation for security processes
- Deliver accurate metrics to stakeholders and business leaders in a clear and concise manner
- Maintain high proficiency in relevant security topics (latest vulnerabilities, TTPs, exploits, etc.)
- Create and deliver security education across the organization
- Develop innovative and scalable tools, solutions and processes to enhance product security operations
- Support accurate security tooling implementation to maximize their effectiveness and interpret their results to relevant stakeholders
To Be Successful in The Role, You Will Have
- 5+ years of experience in web application security roles
- Deep technical understanding of both common and uncommon security vulnerabilities
- Passion and self drive for researching vulnerabilities and latest exploitation techniques
- Ability to discover and exploit security vulnerabilities as well as to give practical and applicable remediation advice
- Practical knowledge of applied cryptography and common attacks against modern cryptographic algorithms (encryption at rest, TLS, hashing, etc.)
- Ability to explain vulnerabilities in a precise, concise and easy to understand manner to stakeholders of varying security and technical backgrounds
- Ability to work in a self-directed environment that is highly collaborative and cross functional
- Experience in performing Threat Modelling and providing actionable advice from its results
- High level of experience in scoring security vulnerability severities through CVSS
- Good understanding of SSDLC as well as development and integration tools and technologies uses as part of CI/CD pipelines
- Experience implementing, running and maintaining tools and processes to reliably identify security issues across large code bases (SAST, SCA, DAST, container scanning, penetration tests, etc.)
- Experience providing secure coding education to developers
- Experience with at least one programming language (preferrable Python)
- Ability to performing internal penetration tests as well as coordinating penetration tests executed by third party vendors
- Ability to triage and reproduce security vulnerabilities from varying internal and external reporting sources
- Experience in programs such as Responsible Disclosure, Bug Bounty or Vulnerability Disclosure Program
You are an ideal candidate if you
- Want to make a difference
- Have high experience in web application, database and infrastructure security topics
- Have high technical knowledge on security vulnerabilities, Dfense techniques and security best practices
- Can easily explain complex topics
- Have excellent verbal and written communication skills
- Enjoy working cross teams and being a valuable resource to other engineers
- Have experience in authentication and authorization standards and protocols (SAML, Oauth, LDAP, AD, etc.)
- Know how to go beyond generic security vulnerability remediation advice
- Can read and write code with ease
- Love to learn about latest security topics even in your free time
- Have good understanding of one or more major cloud providers (Azure, AWS, GCP)
- Know how to educate others on security topics
- Have previous experience in securing SaaS applications and cloud environments at scale
- Understand in depth CI/CD pipelines, containerization (Kubernetes, Docker, etc.) and Microservices
- Know how to coordinate external vulnerability reporting
- Have B.S. Computer Science or similar combination of education and experience
Our Employer Commitment
This job posting will remain active until a qualified candidate is identified.
At Ivanti, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion, sex, pregnancy (including childbirth, lactation and related medical conditions), national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information (including characteristics and testing), military and veteran status, and any other characteristic protected by applicable law. Ivanti believes that diversity and inclusion among our teammates is critical to our success as a global company, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool.
If you require special assistance for the best interview experience, please contact us at [Confidential Information] .
-
Staff Security Engineer
3 days ago
Bengaluru, Karnataka, India Ethos Life Full time ₹ 15,00,000 - ₹ 20,00,000 per yearAbout EthosEthos was built to make it faster and easier to get life insurance for the next million families. Our approach blends industry expertise, technology, and the human touch to find you the right policy to protect your loved ones. We leverage deep technology and data science to streamline the life insurance process, making it more accessible and...
-
Staff Application Security Engineer
8 hours ago
Bengaluru, Karnataka, India Ivanti Full time US$ 1,00,000 - US$ 1,50,000 per yearWho We AreIn today's work environment, employees use a myriad of devices to access IT applications and data over multiple networks to stay productive, wherever and however they work. Ivanti elevates and secures Everywhere Work so that people and organizations can thrive.While our headquarters is in the U.S., ha...
-
Application Security Engineer
4 days ago
Bengaluru, Karnataka, India beBeeSecurity Full time ₹ 15,00,000 - ₹ 25,00,000Job Title: Application Security EngineerWe are seeking an experienced Application Security Engineer to drive secure software development life cycles across various teams. The ideal candidate will have hands-on expertise in Secure SDLC practices, Secure Code Reviews, and Software Composition Analysis (SCA) & Threat Modeling.Key Responsibilities:Develop and...
-
Bengaluru, Karnataka, India Zscaler Full time US$ 1,50,000 - US$ 2,00,000 per yearAbout ZscalerServing thousands of enterprise customers around the world including 45% of Fortune 500 companies, Zscaler (NASDAQ: ZS) was founded in 2007 with a mission to make the cloud a safe place to do business and a more enjoyable experience for enterprise users. As the operator of the world's largest security cloud, Zscaler accelerates digital...
-
Senior Application Security Engineer
3 weeks ago
Bengaluru, Karnataka, India Tide Platform Full timeABOUT TIDEAt Tide we are building a finance platform designed to save small businesses time and money We provide our members with business accounts and related banking services but also a comprehensive set of connected administrative solutions from invoicing to accounting Launched in 2017 Tide is now used by over 1 million small businesses across the...
-
Application Security Engineer
4 weeks ago
Bengaluru, Karnataka, India Coders Brain Technology Private Limited Full timeWere Hiring : WebPTP1 - ConsultantLocation : Bangalore/PuneExperience : 4-8 YearsSalary : As per market standardEmployment Type : Full-TimeJoining : the Role : We are seeking a skilled Application Security Engineer / Penetration Tester to perform both automated and manual security testing on applications, APIs, and networks. You will work closely with...
-
Application Security Engineer
3 weeks ago
Bengaluru, Karnataka, India RemoteStar Full timeJob DescriptionAbout the client:Our Client is a global technology company, home to more than 220,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry...
-
Senior Application Security Engineer
9 hours ago
Bengaluru, Karnataka, India TechBlocks Full timeAbout Us:Techblocks is a leading global digital product development firm. We unify strategy, design and technology with continuous growth-centric digital product engineering solutions for F500 companies and global brands, including Bell Telecom, Bausch Health (Previously Valeant Pharma), Honda Motors, AES Corp, Thomson Reuters Carswell, First American and...
-
Member of Technical Staff
1 week ago
Bengaluru, Karnataka, India Andromeda Security Full timeDistributed Systems Development Engineer Summary: We are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. You will have the opportunity to grow with the company and help secure enterprises from cloud security breaches. Job Description: Looking for dreamers, coders, hackers who want to...
-
Member of Technical Staff
2 weeks ago
Bengaluru, Karnataka, India Andromeda Security Full timeDistributed Systems Development Engineer Summary: We are a stealth startup, top-tier Silicon Valley VC-funded multinational startup building a team in Bengaluru, India. You will have the opportunity to grow with the company and help secure enterprises from cloud security breaches. Job Description: Looking for dreamers, coders, hackers who want to...