
Principal Application Security Engineer
5 days ago
About the job
About Us
Diligent is the AI leader in governance, risk and compliance (GRC) SaaS solutions, helping more than 1 million users and 700,000 board members to clarify risk and elevate governance. The Diligent One Platform gives practitioners, the C-Suite and the board a consolidated view of their entire GRC practice so they can more effectively manage risk, build greater resilience and make better decisions, faster.
At Diligent, we're building the future with people who think boldly and move fast. Whether you're designing systems that leverage large language models or part of a team reimaging workflows with AI, you'll help us unlock entirely new ways of working and thinking. Curiosity is in our DNA, we look for individuals willing to ask the big questions and experiment fearlessly - those who embrace change not as a challenge, but as an opportunity. The future belongs to those who keep learning, and we are building it together. At Diligent, youre not just building the future - youre an agent of positive change, joining a global community on a mission to make an impact.
Learn more at or follow us on LinkedIn and Facebook
The Principal Application Security Engineer will be a key member of the Security group at Diligent, working in close partnership with Software Development, Site Reliability Engineering, and Product Management. This individual will serve as the technical leader and subject matter expert, driving the Application Security program with a primary focus on Vulnerability Management for Diligents Board management and GRC platform. The Application Security teams mission is to support secure software development by defining and enforcing best practices, maintaining security tools and processes, and ensuring vulnerabilities are identified, prioritized, and remediated according to company standards. The ideal candidate will have a strong background in software development, security engineering, or DevOps, coupled with deep security expertise and a demonstrated ability to influence and lead in dynamic global environments.
Key Responsibilities
- Design, implement, and lead the Vulnerability Management program, ensuring vulnerabilities (across infrastructure and applications) are continuously identified, risk assessed, and remediated in alignment with Diligents Vulnerability Management Standard and timelines.
- Provide technical leadership and mentorship to application security engineers and other stakeholders involved in secure software development.
- Drive collaboration with Engineering to ensure timely application of security patches and mitigation of vulnerabilities, including clear escalation paths, exception management, and compliance reporting.
- Influence engineering practices and culture by developing and advocating secure coding standards, response runbooks, and risk-based remediation guidance.
- Serve as a primary escalation point for complex vulnerability management issues and customer or audit inquiries related to application security.
- Participate actively in risk evaluation, prioritization, remediation planning, and exception handling processes for high-risk vulnerabilities.
- Liaising with cross-functional partners to strengthen overall security posture.
Required Experience And Skills
- Bachelors degree in Computer Science or related discipline
- Minimum 10 years of professional experience in application design, development, and security for web and mobile applications.
- Excellent knowledge of security concepts related to Internet technologies, architectures, and protocols, as well as application software security concepts. This includes extensive experience in mitigating vulnerabilities
- Deep understanding of vulnerability management frameworks and security best practices (e.g., asset inventory, vulnerability assessment and scanning, patch management, risk/timeline evaluation, remediation, and exception handling).
- Proven experience designing, implementing, and refining vulnerability lifecycle processes, including asset inventory management, vulnerability identification, risk validation, prioritization, remediation tracking, verification, and exception handling.
- Advanced communication skills, with demonstrated ability to coordinate across engineering, operations, risk management, audit, compliance, and executive teams to ensure timely vulnerability remediation and alignment with business objectives.
- Development experience in one or more of: .NET, Javascript, C#, and/or mobile application frameworks.
- Professional certification in Application Security or Penetration Testing (e.g., CISSP, CSSLP, GSSP-x, CEH, GPEN, GWAPT, GMOB, Security+).
- Familiarity with security standards and frameworks relevant to SaaS and cloud (e.g., ISO, NIST, CSA).
Preferred Experience And Skills
- Demonstrated leadership in application security, including helping set strategic direction, influencing day-to-day practices, assigning technical priorities, and fostering a collaborative, high-performing environment.
- Experience developing and presenting program metrics, dashboards, and risk reports to both technical and non-technical stakeholders, utilizing tools such as JIRA, ServiceNow, or other workflow management solutions.
What Diligent Offers You
- Creativity is ingrained in our culture. We are innovative collaborators by nature. We thrive in exploring how things can be differently both in our internal processes and to help our clients
- We care about our people. Diligent offers a flexible work environment, global days of service, comprehensive health benefits, meeting free days, generous time off policy and wellness programs to name a few
- We have teams all over the world. We may be headquartered in New York City, but we have office hubs in Washington D.C., Vancouver, London, Galway, Budapest, Munich, Bengaluru, Singapore, and Sydney.
- Diversity is important to us. Growing, maintaining and promoting a diverse team is a top priority for us. We foster and encourage diversity through our Employee Resource Groups and provide access to resources and education to support the education of our team, facilitate dialogue, and foster understanding.
-
Principal Application Security Engineer
1 week ago
Bengaluru, Karnataka, India Diligent Corporation Full time US$ 1,25,000 - US$ 1,75,000 per yearAbout Us Diligent is the AI leader in governance, risk and compliance (GRC) SaaS solutions, helping more than 1 million users and 700,000 board members to clarify risk and elevate governance. The Diligent One Platform gives practitioners, the C-Suite and the board a consolidated view of their entire GRC practice so they can more effectively manage risk,...
-
Principal Engineer – Developer Enablement
1 week ago
Bengaluru, Karnataka, India Skyhigh Security Full time US$ 1,50,000 - US$ 2,00,000 per yearJob Title:Principal Engineer – Developer Enablement & CI/CD StrategyAbout Skyhigh Security:Skyhigh Security is a dynamic, fast-paced, cloud company that is a leader in the security industry. Our mission is to protect the world's data, and because of this, we live and breathe security. We value learning at our core, underpinned by openness and...
-
Principal Information Security Engineer
1 week ago
Bengaluru, Karnataka, India ScaleneWorks People Solutions Full timeWe are looking for a Principal security officer to join the AirOps TISO Technical information Security office team Business contextIn its currrent configuration AOP AirOps is covering Airport IT Airline operations and Passenger Self Service applications that are being offered to our customers the airlines and airports To be able to offer protection...
-
Principal Engineer
1 week ago
Bengaluru, Karnataka, India Optiv Full timeThe Principal Engineer will be responsible for creation of procedures, implementation of processes and development of staff for managing and maintaining security systems across internal and client environments. The Principal Engineer will work closely with Management, Senior Engineers, Solution Architects, Senior Security Engineers, other Principal Security...
-
Principal Engineer
1 week ago
Bengaluru, Karnataka, India Optiv Full time US$ 1,50,000 - US$ 2,00,000 per yearThe Principal Engineer will be responsible for creation of procedures, implementation of processes and development of staff for managing and maintaining security systems across internal and client environments. The Principal Engineer will work closely with Management, Senior Engineers, Solution Architects, Senior Security Engineers, other Principal Security...
-
RSA Software Quality Principal Engineer
1 week ago
Bengaluru, Karnataka, India RSA Security Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRSA Software Quality Principal Engineer (Java)RSA provides trusted identity and access management for 12,000 organizations around the world, managing 25 million enterprise identities and providing secure, convenient access to millions of users. RSA specializes in empowering security-first organizations in financial services, healthcare, energy, technology...
-
Principal Engineer
5 days ago
Bengaluru, Karnataka, India Optiv Full time US$ 1,50,000 - US$ 2,00,000 per yearThe Principal Engineer will be responsible for creation of procedures, implementation of processes and development of staff for managing and maintaining security systems across internal and client environments. The Principal Engineer will work closely with Management, Senior Engineers, Solution Architects, Senior Security Engineers, other Principal Security...
-
Software Principal Engineer
23 hours ago
Bengaluru, Karnataka, India Dell Technologies Full time ₹ 1,04,000 - ₹ 1,30,878 per yearSoftware Principal Engineer – SecOps Join us as a Software Principal Engineer on our Security Engineering team in Bangalore to do the best work of your career and make a profound social impact.What you'll achieveAs a Software Principal Engineer, you will be responsible for embedding secure development practices and leading vulnerability management across...
-
Principal I, Application
9 hours ago
Bengaluru, Karnataka, India Alcon Full time ₹ 1,04,000 - ₹ 1,30,878 per yearAt Alcon, we're passionate about enhancing sight and helping people see brilliantly. With more than 25,000 associates, we innovate fearlessly, champion progress, and act swiftly to impact global eye health. We foster an inclusive culture, recognizing your contributions and offering opportunities to grow your career like never before. Together, we make a...
-
Principal Engineer
7 days ago
Bengaluru, Karnataka, India Optiv Full timeJob Description :The Principal Engineer will be responsible for :- Creation of procedures, implementation of processes and development of staff for managing and maintaining security systems across internal and client environments.- The Principal Engineer will work closely with Management, Senior Engineers, Solution Architects, Senior Security Engineers,...