
Application Security Engineer II
2 days ago
About the job :
What Youll Do :
- Research, identify and analyze and triage vulnerabilities that could affect Phenom ITX Platform and its supporting infrastructure, and determine its severity, exploitability and corrective action recommendations, summarizing and reporting results.
- Collaborate with engineering/development teams to evolve software assurance processes to address security risks, and help teams learn and adopt shift-security-to-left practices.
- Work on implementing the required fixes to remediate the vulnerabilities in collaboration with the engineering team
- Deploy, improve and utilize SAST/DAST/SCA and other cybersecurity solutions to identify and communicate security vulnerabilities to Phenom production teams
- Maintain and report progress on the state of application vulnerabilities and escalate as necessary to ensure vulnerability issues are closed and handled in a manner consistent with Phenom standards
- Work closely with the business, support and production teams to provide input and guidance on development of planned remediation plans and strategies to solve identified vulnerabilities
- Use technical writing and effective communications to prepare and deliver vulnerability assessment result reports to all levels of audiences (peers and or leadership).
- Drive compliance support and improvements over time through the management, analysis and tracking of vulnerabilities discovered through audits, products or collaborations.
- Perform research and analytics and stay apprised on new security vulnerability, threats, risks, attack tools and techniques to contribute and improve Phenoms Threat model and collaborate with senior engineering and product management staff to incorporate effective security standards and controls into product design.
- Help in the deployment of Phenom Secure Architecture & Software Development program to support the best cybersecurity development practice, and ensure Phenom ITX Platform is highly secure, resilient and aligned with business and product development strategy.
- Continuously review and identify security improvement opportunities in existing processes, services, and workflows to ensure Phenom ITX platform is robust against current and future cybersecurity threats.
- Support cybersecurity process activities including security requirements definition, threat modelling, code reviews and cyber risk assessment.
- Support on development and maintenance of a security by default standard to be used in the development, infrastructure, or any other technology project.
- Deliver training on Security Development Lifecycle to engineering/development teams
- Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement and automation.
- Drive continuous improvement activities to define, measure, visualize and improve key cyber security metrics related to Application Security.
- Provide analytic support to answer questions about vulnerabilities, and general threat intelligence trends
Work Experience :
- Experience with Amazon Web Services cloud environments and its security controls and their corresponding challenges.
- Experience with microservices architectures & distributed Platforms especially in the SaaS businesses
- Experience using Agile software development
- Coding Experience in Scripting & programming languages (such as Terraform, Java, Python, Ruby, etc.)
- Knowledge of information security principles (Confidentiality, Integrity, Availability Authentication & Public Key Infrastructure (PKI), Data Security or Cryptography), and understanding of common exploitation techniques and mitigation.
- Experience implementing, managing, and supporting a vulnerability management program (process and technology).
- Experience and well-known understanding of Dynamic and Static Application Security Testing (DAST & SAST) and infrastructure automation/development utilizing APIs.
- Understanding of the main cybersecurity tools (SIEM, IPS, XDR, etc.) and how they help to protect an application.
- Experience working with Threat modeling (e.g., STRIDE, PASTA, FAIR, Security Cards) and vulnerability frameworks standards (e.g., OWASP, CVSS, CWE) with a good understanding of the Cyber Kill Chain and pervasive threat attack methods and remediation.
- Thought leadership, critical thinking, strong organizational skills, report writing skills to senior level, ability to prioritize and multitask
-
Application Security Engineer II
2 weeks ago
Hyderabad, Telangana, India Phenompeople Private Limited Full time ₹ 6,00,000 - ₹ 18,00,000 per yearJob Requirements : What Youll Do : - Research, identify and analyze and triage vulnerabilities that could affect Phenom ITX Platform and its supporting infrastructure, and determine its severity, exploitability and corrective action recommendations, summarizing and reporting results. - Collaborate with engineering/development teams to evolve...
-
Software Engineer II
14 hours ago
Hyderabad, Telangana, India Microsoft Full time ₹ 15,00,000 - ₹ 25,00,000 per yearWith the Microsoft Cloud Security team, we take immense pride in developing a diverse set of security products and services that are leaders in their respective market segments. Our innovative solutions have set new industry standards, earning global recognition safeguarding critical infrastructure at the highest scale. Microsoft Defender for Cloud is a...
-
Application Security Engineer
6 days ago
Hyderabad, Telangana, India Castellum Labs Full time ₹ 5,00,000 - ₹ 25,00,000 per yearThe Company --Castellum Labs is a Next Gen Cyber Security Technology Venture that started in 2018, from Hyderabad, India with global ambitions, to change the cybersecurity service model. The company's vision is to change the cybersecurity value model in the industry. They use SaaS platforms, advanced lab infra in the cloud and a team of specialized experts...
-
Hyderabad, Telangana, India IKF Finance Full time ₹ 12,00,000 - ₹ 24,00,000 per yearJob Description: Software Development Engineer II (SDE II) - Full Stack DeveloperPosition OverviewWe are looking for a motivated Software Development Engineer II (SDE II) - Full Stack Developer to join our growing team in Hyderabad. The candidate will contribute to building and maintaining web applications using React, , MongoDB, SQL, and basic DevOps...
-
Software Engineer II
2 weeks ago
Hyderabad, Telangana, India JPMorganChase Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob DescriptionYou're ready to gain the skills and experience needed to grow within your role and advance your career — and we have the perfect software engineering opportunity for you.As a Software Engineer II at JPMorganChase within the Consumer and Community Banking, you are part of an agile team that works to enhance, design, and deliver the software...
-
Software Engineer II
2 days ago
Hyderabad, Telangana, India JPMorganChase Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJOB DESCRIPTIONYou're ready to gain the skills and experience needed to grow within your role and advance your career — and we have the perfect software engineering opportunity for you.As a Software Engineer II at JPMorgan Chase within the consumer and community banking Risk, you are part of an agile team that works to enhance, design, and deliver the...
-
Software Engineer II
4 days ago
Hyderabad, Telangana, India JPMorganChase Full time ₹ 12,00,000 - ₹ 24,00,000 per yearJOB DESCRIPTIONYou're ready to gain the skills and experience needed to grow within your role and advance your career — and we have the perfect software engineering opportunity for you.As a Software Engineer II at JPMorgan Chase within the Consumer & Community Banking Team, you are part of an agile team that works to enhance, design, and deliver the...
-
Software Engineer II
9 hours ago
Hyderabad, Telangana, India JPMorganChase Full time ₹ 12,00,000 - ₹ 24,00,000 per yearJOB DESCRIPTIONAs a Software Engineer II at JPMorgan Chase, you are part of an agile team that works to enhance, design, and deliver the software components of the firm's state-of-the-art technology products in a secure, stable, and scalable way. As an emerging member of a software engineering team, you execute software solutions through the design,...
-
Software Engineer II
14 hours ago
Hyderabad, Telangana, India JPMorgan Chase Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAs a Software Engineer II at JPMorgan Chase, you are part of an agile team that works to enhance, design, and deliver the software components of the firm's state-of-the-art technology products in a secure, stable, and scalable way. As an emerging member of a software engineering team, you execute software solutions through the design, development, and...
-
Staff Engineer Application Security
1 week ago
Hyderabad, Telangana, India Appen Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout AppenAppen is a leader in AI enablement for critical tasks such as model improvement, supervision, and evaluation. To do this we leverage our global crowd of over one million skilled contractors, speaking over 180 languages and dialects, representing 130 countries. In addition, we utilize the industry's most advanced AI-assisted data annotation...