Application Security Engineer

1 week ago


Bengaluru Hyderabad Pune, India Infosys Full time ₹ 12,00,000 - ₹ 36,00,000 per year

About the Role:

We are looking for experienced and passionate Application Security Engineers to join our team. This role involves securing web applications, automating security processes, and integrating security into the software development lifecycle. The ideal candidate will have strong programming skills, a deep understanding of application vulnerabilities, and hands-on experience with security testing tools.

Key Responsibilities:

  • Conduct secure code reviews, static (SAST) and dynamic (DAST) application security testing.
  • Develop and maintain Python scripts and tools for security automation.
  • Work closely with development teams to integrate security into the SDLC and CI/CD pipelines.
  • Perform vulnerability assessments using tools like Qualys WAS and ArmorCode.
  • Analyze and remediate security issues in web applications and APIs.
  • Maintain and enhance security dashboards and reporting mechanisms.
  • Stay updated with the latest application security threats, trends, and best practices.

Mandatory Skills:

  • Python Programming for automation and tool development.
  • SQL for data analysis and security testing of database interactions.
  • Web Development understanding of web technologies, frameworks, and architecture.
  • Security Automation experience with automating security testing and reporting.
  • SAST & DAST Tools hands-on experience with tools like SonarQube, Checkmarx, Burp Suite, etc.
  • Qualys WAS for web application scanning and vulnerability management.
  • ArmorCode experience with security orchestration and vulnerability management

Ideal Candidate Profile:

  • 49 years of experience in application security or related roles.
  • Strong understanding of OWASP Top 10 and secure coding practices.
  • Experience working in Agile environments and collaborating with DevOps teams.
  • Excellent problem-solving and communication skills.
  • Certifications like OSCP, CEH, or GWAPT are a plus


  • Bengaluru, India RSA Security Full time

    Product Overview Outseer Fraud Manager is an advanced, omnichannel fraud detection hub that provides risk-based, multi-factor authentication for organizations seeking to protect their consumers from fraud across digital channels. Powered by the AI/ML based Risk Engine, Outseer Fraud Manager is designed to measure the risk associated with a user’s login...


  • Bengaluru, India RSA Security Full time

    Product Overview Outseer Fraud Manager is an advanced, omnichannel fraud detection hub that provides risk-based, multi-factor authentication for organizations seeking to protect their consumers from fraud across digital channels. Powered by the AI/ML based Risk Engine, Outseer Fraud Manager is designed to measure the risk associated with a user’s login...


  • Hyderabad, India ICE Data Services Full time

    Job Purpose An ICE Application Security Engineer is part of a team responsible for ensuring that ICE produces and maintains secure applications. This team member influences secure design, performs code analysis, identifies vulnerabilities through hands-on penetration testing, assists developers in remediation efforts, and communicates findings to developers,...


  • Hyderabad, India ICE Full time

    Job DescriptionJob PurposeAn ICE Application Security Engineer is part of a team responsible for ensuring that ICE produces and maintains secure applications. This team member influences secure design, performs code analysis, identifies vulnerabilities through hands-on penetration testing, assists developers in remediation efforts, and communicates findings...


  • Hyderabad, Telangana, India ICE Data Services Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job PurposeAn ICE Application Security Engineer is part of a team responsible for ensuring that ICE produces and maintains secure applications. This team member influences secure design, performs code analysis, identifies vulnerabilities through hands-on penetration testing, assists developers in remediation efforts, and communicates findings to developers,...


  • Hyderabad, Telangana, India ICE Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Job DescriptionJob PurposeAn ICE Application Security Engineer is part of a team responsible for ensuring that ICE produces and maintains secure applications. This team member influences secure design, performs code analysis, identifies vulnerabilities through hands-on penetration testing, assists developers in remediation efforts, and communicates findings...


  • Bengaluru, Hyderabad, Pune, India Infosys Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    About the Role:We are looking for experienced and passionate Application Security Automation Engineers to join our team. This role involves securing web applications, automating security processes, and integrating security into the software development lifecycle. The ideal candidate will have strong programming skills, a deep understanding of application...


  • Pune, Maharashtra, India Domo Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Company OverviewDomo's AI and Data Products Platform lets people channel AI and data into innovative uses that deliver a measurable impact. Anyone can use Domo to prepare, analyze, visualize, automate, and build data products that are amplified by AI.Domo is a native cloud-native data experiences innovator that puts data to work for everyone. Underpinned by...


  • Bengaluru, Chennai, Hyderabad, India Mouri Tech Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Description:We are seeking a highly skilled Application Security Engineer with a strong background in backend penetration testing, secure coding, and security architecture. The ideal candidate will have experience working in development and/or DevSecOps roles and be comfortable collaborating across engineering, operations, and security teams to drive...


  • Hyderabad, India NopalCyber Full time

    About Nopal Cyber Nopal Cyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Surface Management (ASM), Breach and Attack Simulation (BAS), and Advisory Services, we fortify our clients’ cybersecurity across both offense...