Open Source Technology Application Security Specialist

2 days ago


Bengaluru, Karnataka, India YOMA TECHNOLOGIES PRIVATE LIMITED Full time ₹ 12,00,000 - ₹ 36,00,000 per year

Description :

Job Title : Open Source Technology Application Security Specialist

Location : Kolkata , Bangalore

Position Overview :

We are seeking a highly skilled Application Security Specialist with strong expertise in open-source technologies and modern web development frameworks such as React, , Python, and Angular. The ideal candidate will have a deep understanding of application-level vulnerabilities, secure coding practices, and penetration testing methodologies.

You will be responsible for identifying, mitigating, and preventing security risks across our front-end and back- end applications, ensuring that robust security controls are embedded throughout the Software Development
Lifecycle (SDLC). The successful candidate will collaborate closely with engineering, DevOps, and infrastructure
teams to strengthen the overall security posture of applications hosted across cloud and on-premise environments.

You will be responsible for identifying, mitigating, and preventing security risks across our cloud and applications while collaborating closely with development and infrastructure teams. The successful candidate will be responsible for implementing robust security practices throughout the application development lifecycle, conducting vulnerability assessments, and performing penetration testing to safeguard our applications built on diverse technological stacks, including .NET, ASP.NET, IIS, Windows OS etc.

Key Responsibilities :

Secure Coding Governance :

- Establish, enforce, and monitor secure coding standards across all open-source technology stacks (React, , Python, Angular, etc.) to minimize application security risks.

Vulnerability Management :

- Identify, analyze, and remediate security vulnerabilities within codebases, APIs, and cloud applications. Focus areas include injection attacks, cross-site scripting (XSS), insecure deserialization, and related OWASP Top 10 issues.

Penetration Testing :

- Plan and execute penetration tests and dynamic security assessments to uncover application weaknesses and
work with development teams to implement corrective measures.

Web Application Firewalls (WAF) and Cloud Security :

- Configure, tune, and monitor WAFs, API gateways, and cloud-native security tools (AWS/Azure/GCP) to protect open-source applications and services.

Technical Leadership :

- Provide technical guidance on secure design and implementation for open-source frameworks and tools.

- Leverage expertise in React, , Python, Angular, and related libraries to support secure architecture decisions.

Collaboration and Training :

- Work closely with product engineering, QA, and operations teams to embed security best practices across all stages of development. Conduct developer training and knowledge sessions to strengthen security awareness.

Continuous Improvement :

- Perform threat modeling and design reviews for new and existing applications.

- Develop and automate security validation tools and scripts to identify vulnerabilities early in the SDLC.

- Monitor and respond to application-level security incidents and provide root-cause analysis.

- Continuously research emerging security threats, tools, and frameworks relevant to open-source ecosystems.

- Monitor, investigate, and respond to security incidents and intrusion attempts. Stay abreast of the latest security threats, trends, and technologies, and continuously improve security policies, tools, processes frameworks, and compliance standards. Support and mentor developers on secure design and architecture. Stay abreast of the latest security threats, trends, and technologies, and continuously improve security policies, tools, and processes.

Required Qualifications and Skills :

Technical Proficiency :

- Strong hands-on experience in React, , Python, Angular, and related open-source technologies.

- Solid understanding of RESTful APIs, OAuth2/OpenID Connect, JWT, and microservices architectures.

Security Expertise :

- Comprehensive understanding of application security principles, OWASP Top 10, and secure SDLC methodologies.

- Experience performing static and dynamic code analysis (SAST/DAST) and API security testing.

Security Tools Experience :

- Proficient in open-source and commercial security tools such as Burp Suite, OWASP ZAP, SonarQube, Checkmarx, or similar vulnerability scanners.

Analytical Abilities :

- Strong analytical and problem-solving skills to assess complex application security issues and implement effective mitigation strategies.

Communication :

- Excellent interpersonal and communication skills with the ability to collaborate effectively with engineering teams and key stakeholders.

Preferred Qualifications :

- Security certifications such as OSCP, CEH, CSSLP, GIAC GWAPT, or equivalent.

- Experience in Agile and DevSecOps environments.

- Familiarity with container security (Docker, Kubernetes) and cloud-native security practices (AWS/GCP/Azure).

- Experience integrating security automation in CI/CD pipelines.



  • Bengaluru, Karnataka, India VAM Systems Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    VAM Systems is a Business Consulting, IT Solutions and Services company.VAM Systems is currently looking for Application Security Specialist for our Bahrain operations with the following skillsets & terms and conditions:· Years of Experience: years· Preferred Previous Work Experience: BankingQualification Major: BE Computer Science and...


  • Bengaluru, Karnataka, India Hewlett Packard Enterprise | HPE Full time ₹ 60,000 - ₹ 1,80,000 per year

    Open Source Compliance - Legal Region CounselThis role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.Who We Are:Hewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and...


  • Bengaluru, Karnataka, India Hewlett Packard Enterprise Full time ₹ 60,000 - ₹ 1,80,000 per year

    This role has been designed as 'Hybrid' with an expectation that you will work on average 2 days per week from an HPE office.Who We AreHewlett Packard Enterprise is the global edge-to-cloud company advancing the way people live and work. We help companies connect, protect, analyze, and act on their data and applications wherever they live, from edge to...


  • Bengaluru, Karnataka, India Google Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Minimum qualifications:Bachelor's degree or equivalent practical experience.5 years of experience in law enforcement, intelligence, military role or equivalent private sector experience.Preferred qualifications:Experience in open source intelligence.Understanding of threat types and trends including global geopolitical trends as well as emerging...


  • Bengaluru, Karnataka, India Google Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Minimum qualifications:Bachelor's degree or equivalent practical experience.5 years of experience in law enforcement, intelligence, military role or equivalent private sector experience.Preferred qualifications:Experience in open source intelligence.Understanding of threat types and trends including global geopolitical trends as well as emerging...


  • Bengaluru, Karnataka, India CynLr Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Skillset Definition:Your primary contribution CONFIDENTIAL chain activities for CynLr, for facilitating smooth and timely vendor coordination.Leading Vendor & Partnership Management for Technology SourcingManaging CynLr's Logistics & Transportation Activities:Participating in CynLr's Performance Tracking & Workflow Design ActivitiesSupporting CynLr's...


  • Bengaluru, Karnataka, India Glean Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    About Glean:   Founded in 2019, Glean is an innovative AI-powered knowledge management platform designed to help organizations quickly find, organize, and share information across their teams. By integrating seamlessly with tools like Google Drive, Slack, and Microsoft Teams, Glean ensures employees can access the right knowledge at the right time, boosting...


  • Bengaluru, Karnataka, India RemoteStar Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    About the client:  Our Client is a global technology company, home to more than 220,000 people across 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology services and products. We work with clients across all major verticals, providing industry solutions for...


  • Bengaluru, Karnataka, India InMobi Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    InMobi Advertising is a global technology leader helping marketers win the moments that matter. Our advertising platform reaches over 2 billion people across 150+ countries and turns real-time context into business outcomes, delivering results grounded in privacy-first principles. Trusted by 30,000+ brands and leading publishers, InMobi is where...

  • Sourcing Specialist

    1 week ago


    Bengaluru, Karnataka, India SNTLY Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Company DescriptionOur comprehensive services cover the entire lifecycle – from concept development and design to meticulous production and on-time delivery. Our expertise ensures that we meet the high standards of global fashion markets and create exceptional value for our partners.Role DescriptionThis is a full-time on-site role for a Sourcing...