Cybersecurity Application Security Consultant

2 days ago


Mumbai, Maharashtra, India Digital Defense Full time ₹ 6,00,000 - ₹ 18,00,000 per year

Company:

Digital Defense 

Position Type:

Permanent

Location:

Mumbai

Salary:

₹50,000 INR per month

About the Role

Digital Defense is seeking a highly motivated and skilled Cybersecurity Application Security Consultant with expertise in DevSecOps practices to join our growing team in Mumbai. This is a permanent position where you will play a crucial role in integrating security into every phase of the Software Development Life Cycle (SDLC), from design to deployment and operations. You will work closely with development, operations, and QA teams to ensure our applications are secure by design and by default.

Key Responsibilities

  • Security Integration:
     Integrate security tools and processes into CI/CD pipelines (DevSecOps) to automate security testing, vulnerability scanning, and compliance checks.
  • Application Security Testing:
     Conduct various application security tests, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application Security Testing (IAST), and Software Composition Analysis (SCA).
  • Vulnerability Management:
     Identify, analyze, and prioritize security vulnerabilities in applications and provide actionable recommendations for remediation.
  • Security Architecture Review:
     Participate in the design and architecture reviews of new and existing applications to identify potential security risks and recommend secure design patterns.
  • Threat Modeling:
     Perform threat modeling exercises to identify potential threats and vulnerabilities early in the development lifecycle.
  • Security Best Practices:
     Advocate for and implement secure coding guidelines, industry standards (e.g., OWASP Top 10, SANS Top 25), and security best practices within development teams.
  • Security Training & Awareness:
     Provide guidance and training to development teams on secure coding practices and application security principles.
  • Incident Response Support:
     Assist in the investigation and resolution of application security incidents.
  • Documentation:
     Maintain comprehensive documentation of security findings, remediation efforts, and security policies.

Required Skills and Qualifications

  • Education:
     Bachelor's degree or Engineer in Computer Science, Information Technology, Cybersecurity, or a related field.
  • Experience:
     Proven experience (e.g., 3+ years) in application security, with a strong focus on DevSecOps principles and practices.
  • Development Experience:
     Practical experience in software development, understanding the full development lifecycle.
  • Technical Proficiency:
  • Strong understanding of web application security vulnerabilities (OWASP Top 10) and secure coding practices.
  • Experience with security testing tools (e.g., Burp Suite, OWASP ZAP, Nessus, SonarQube, Checkmarx, Fortify).
  • Familiarity with CI/CD tools (e.g., Jenkins, GitLab CI/CD, Azure DevOps, GitHub Actions, samgrep, open grep).
  • Proficiency in at least one scripting language (e.g., Python, Bash) for automation.
  • Understanding of cloud security principles (AWS, Azure, GCP) is a plus.
  • Knowledge of containerisation technologies (Docker, Kubernetes) and their security implications.
  • DevSecOps Mindset:
     A strong understanding of how to embed security into agile and DevOps methodologies.
  • Communication:
     Excellent written and verbal communication skills, with the ability to explain complex security concepts to technical and non-technical stakeholders.
  • Problem-Solving:
     Strong analytical and problem-solving skills with a keen eye for detail.

Preferred Qualifications

  • Engineering in Computer Science or Cybersecurity
  • Relevant industry certifications, including CEH, OSCP, Offensive Security Web Application certifications.
  • Experience with security frameworks and compliance standards (e.g., ISO 27001, NIST, GDPR).
  • Familiarity with various programming languages (e.g., Java, .NET, Python, ).

How to Apply

Interested candidates can apply by sending their updated resume to

with the subject line
"Application for

Cybersecurity Application Security Consultant - DevSecOps



  • Mumbai, Maharashtra, India NuSummit Cybersecurity Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Key Responsibilities & Strategic Impact Areas:Business Leadership & Strategy.Define and execute the India Cybersecurity growth strategy aligned to company objectives.Own full P&L responsibility for the Cybersecurity India business.Drive revenue growth across new client acquisition, existing account expansion, andpartnerships.Own the India cybersecurity...


  • Mumbai, Maharashtra, India People Equation Full time ₹ 15,00,000 - ₹ 20,00,000 per year

    Job Description - Pre-Sales Security Consultant CybersecurityWe're building more than a cybersecurity product — we're creating and leading the category of Continuous Automated Red Teaming (CART) and Automated Pen Testing. Our AI-based platform emulates real-world attacks across enterprise environments to proactively discover and prioritize exposures —...


  • Mumbai, Maharashtra, India Globesecure Technologies Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Position: Senior Security Consultant - CybersecurityExperience: 5+ YearsLocation: India (with 56 months overseas assignment)Availability: Immediate Joiners PreferredRole OverviewWe are seeking a highly skilled Senior Security Consultant with extensive experience in cybersecurity assessments, secure development lifecycle (SDLC), cloud security, and enterprise...


  • Mumbai, Maharashtra, India Polycab Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title: IT Application Cybersecurity ManagerLocation: HO, Mumbai, IndiaDepartment: CybersecurityReports To: Chief Information Security Officer (CISO)Working Days: WFO 6 days (Off on the 2nd and 4th Saturdays)Job Summary: We are seeking an experienced IT Application Cybersecurity Manager to lead our cybersecurity efforts focused on application security...


  • Mumbai, Maharashtra, India Security Lit Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Description: Application Security Engineer (L2)Role OverviewWe are seeking an experienced Application Security Engineer (L2) to take a lead role in our security testing team. This role requires of 3 year experience (first priority will be given to more than 4 year experience resources for selection) and mandates professional security certifications. You...

  • TVM Consultant

    2 days ago


    Mumbai, Maharashtra, India NMS Consultant Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    We are looking for an enthusiastic TVM (Threat and Vulnerability Management) Consultant/Analyst to join our cybersecurity team. The role involves performing application security assessments of Web, Mobile, and API applications as per defined scope and standards. The candidate will work on identifying, analyzing, and reporting vulnerabilities using SAST,...


  • Mumbai, Maharashtra, India Security Lit Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Description: Application Security Engineer (L1)Role OverviewWe are looking for an Application Security Engineer (L1) to join our security team. This is an entry-level position requiring at least 1 year of hands-on experience in application security testing. You will work on identifying and reporting vulnerabilities across web, mobile, API, and thick...


  • Mumbai, Maharashtra, India Ankura Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Ankura is a team of excellence founded on innovation and growth.Ankura's Cyber & Privacy practice is part of the Data & Technology business group - one of six practices dedicated to client delivery services across the firm.Ankura Consulting India is part of Ankura Global network which is present across more than 35 countries. In India, Globally, Ankura is...


  • Mumbai, Maharashtra, India Ankura Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Ankura is a team of excellence founded on innovation and growth.Ankura's Cyber & Privacy practice is part of the Data & Technology business group - one of six practices dedicated to client delivery services across the firm.Ankura Consulting India is part of Ankura Global network which is present across more than 35 countries. In India, Globally, Ankura is...

  • Security Consultant

    4 days ago


    Navi Mumbai, Maharashtra, India Qseap Infotech Full time

    Role & responsibilities - As a Security Consultant in our consulting team, youll build and nurture positive working relationships with teams and clients with the intention to exceed client expectations. Youll: • Assist in InfoSec and IT operations project implementations and production • Contribute to documentation of Information Security policies,...