Application Security Engineer
14 hours ago
In this role, as an Application Security Engineer, you will work as a part of our security engineering team and you will collaborate with other IT professionals to ensure that data is protected. You will be responsible for suggesting and implementing with best security practices within software development lifecycle (SDLC).
You will responsible for setting up security controls and design requirements during the software creation and development stage of the software lifecycle.
You will also participate in related business and security projects.
You will work closely with leadership and staff to extract data to support recommendations for new security-related procedures and/or revisions.
This role will guide the organization on standard security methodologies.
This position will also play a meaningful role in leading and responding to client security surveys and internal 3rd party audits.
What you will be doing:-
· Developing and maintaining software application security policies and procedures · Developing and maintaining documentation of application security controls · Implementing software application security controls
· Designing technical solutions to address security weaknesses
· Analyzing system services, spotting issues in code, networks and applications
· Following security best practices in performing tasks
· Providing technical leadership, guidance, and direction to the application security team
· Participate in and support application security reviews and threat modeling, including code reviewand dynamic testing.
· Support and consult with product and development teams in the area of application security.
· Assist in development of automated security testing to validate that secure coding best practices are being used · Assist in creation of security training
· Provide leadership for application vulnerability scanning and penetration testing remediation
· Manage integration with vulnerability check tools such as Static Code Analysis and Dynamic Code Analysis tools
· Prepare security reports for benchmarking security efficiency.
· Act as a technical point of contact during escalated security events.
· Responsible to manage Cybersecurity incident response.
· Participate in the change management board, ensuring security is a consideration in all changes.
· Provide support to the Information Security Manager on all application security activities
· Determines security violations and inefficiencies by conducting periodic audits. · Provide evidence to the auditee for the Information Systems audits when needed. Essential Functions
· Work closely with cross-functional teams (Engineering, DevOps, Product) while carrying out daily tasks
· Security code reviews: Identify security vulnerabilities in source code before an application is deployed to production
· Exploit security flaws and vulnerabilities with attack simulations on network as well as multiple application platforms like Web, iOS, Android and cloud platform. · Support the bug bounty program.
· Perform application security vulnerability management using tools like (Acunetix, Veracode etc.)
· Manage integration with vulnerability check tools such as Static Code Analysis and Dynamic Code Analysis tools
· Understanding of patch management. Working the patch management team to analyze the risk of the breaking the environment with installing the patch. And also ensure deployment of patches in a timely manner while understanding business impact.
· Investigate security breaches and other cybersecurity incidents. · Stay up to date on information technology trends and security standards. Skills needed to be successful. · Excellent analytical skills, with an ability to translate business needs into practical security posture.
· Familiarity with common security libraries, security controls, and common security flaws · Strong analytical and problem-solving skills · Automation enablement to reduce testing workloads
· Rapid decision-making to prevent delayed releases due to security issues
· Basic development or scripting experience and skills
· A good understanding of network and web related protocols (such as TCP/IP, UDP, HTTP, HTTPS, protocols). ·
Experience working with development team. · Knowledgeable with Anti-Virus, HIPS, ID/PS, Full Packet Capture, RSA Security · Familiarity with ISO 27001, SOC 2, NIST or other security frameworks
· Ability to prioritize more than one task at a time · Assist in root cause analysis for incident management
· Must have excellent written and spoken communication skills with the ability to explain technical information to non-technical people. · Willing to work non-standard hours and be on-call.
Required Experience & Education · Bachelor's degree in Information Technology, Computer Science · 2 years of experience in information security industry ·
Experience with vulnerability scanning tool and solutions.
·Experience with OWASP, static/dynamic analysis, and common security tools ·Experience with Microsoft Windows, Linux, and macOS.
Supervisory Responsibilities -NA
Onboarding
As part of our onboarding process, all new employees will be required to attend / travel to the office on their first day of employment. This requirement is essential for onboarding activities, including the identity verification, completion of necessary documentation, receiving your IT equipment, introductions to key team members, and orientation to Clinisys policies and procedures.
-
Application Security Engineer
2 weeks ago
Bengaluru, Karnataka, India Ola Electric Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Title: Application Security EngineerJob Summary:A Security Engineer will be responsible for ensuring the security and privacy of the company's products and services. This role will be vital in shaping the company's security strategy by working closely with development teams to identify, evaluate, and mitigate potential security risks and ensuring that...
-
Application Security Engineers
2 weeks ago
Bengaluru, Karnataka, India NETSACH GLOBAL Full time ₹ 12,00,000 - ₹ 36,00,000 per yearGreetings from Netsach - A Cyber Security Company.We are looking for Application security Engineers (2 resources) with 8+ yrs of strong experience who would be responsible for providing technical expertise on secure software development and support of all associated activities, processes, and tools for protecting technology-based informationJob Titlle:...
-
Application Security Engineer
1 week ago
Bengaluru, Karnataka, India BitGo Full time ₹ 1,04,000 - ₹ 1,30,878 per yearBitGo is the leading infrastructure provider of digital asset solutions, delivering custody, wallets, staking, trading, financing, and settlement services from regulated cold storage. Since our founding in 2013, we have focused on enabling our clients to securely navigate the digital asset space. With a global presence and multiple Trust companies, BitGo...
-
Application Security Engineer 2
2 weeks ago
Bengaluru, Karnataka, India PowerSchool Group Full time ₹ 15,00,000 - ₹ 25,00,000 per yearOverview:At PowerSchool, we are a dedicated team of innovators guided by our shared purpose of powering personalized education for students around the world. From the central office to the classroom to the home, PowerSchool supports the entire educational ecosystem as the global leader of cloud-based software for K-12 education. Our employees make it all...
-
Application Security Engineer 2
1 week ago
Bengaluru, Karnataka, India PowerSchool Full time ₹ 15,00,000 - ₹ 25,00,000 per yearOverviewAt PowerSchool, we are a dedicated team of innovators guided by our shared purpose of powering personalized education for students around the world. From the central office to the classroom to the home, PowerSchool supports the entire educational ecosystem as the global leader of cloud-based software for K-12 education. Our employees make it all...
-
Principal Application Security Engineer
2 weeks ago
Bengaluru, Karnataka, India Diligent Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout the jobAbout Us Diligent is the AI leader in governance, risk and compliance (GRC) SaaS solutions, helping more than 1 million users and 700,000 board members to clarify risk and elevate governance. The Diligent One Platform gives practitioners, the C-Suite and the board a consolidated view of their entire GRC practice so they can more effectively...
-
Application Security Engineer
2 weeks ago
Bengaluru, Karnataka, India Uplers Full time ₹ 12,00,000 - ₹ 36,00,000 per yearSenior Security and Compliance EngineerExperience: 3 - 6 Years ExpSalary : competitivePreferred Notice Period: Within 30 DaysOpportunity Type: Hybrid (Bengaluru)Placement Type: Permanent(*Note: This is a requirement for one of Uplers' Clients)Must have skills required :Information Security OR Statutory Compliance, Cloud SecurityHiver (One of Uplers' Clients)...
-
Engineer - Application Security Test
1 week ago
Bengaluru, Karnataka, India NewSpace Research and Technologies Full time ₹ 5,00,000 - ₹ 8,00,000 per yearWho we are:We are a start-up based out of Bengaluru & Delhi NCR. We are engaged in development of next generation missions and technologies (NGM&T) towards future warfare needs of the Indian defence forces. It is undertaking research towards enhancing persistence and autonomy for unmanned vehicles and robotic swarms. NRT's product development portfolio...
-
Senior Application Security Engineer
2 weeks ago
Bengaluru, Karnataka, India Atomicwork Full time ₹ 12,00,000 - ₹ 36,00,000 per yearAbout AtomicworkAtomicwork is reimagining IT and workplace operations by putting employees at the center of the experience. With a strong emphasis on automation, integration, and security, Atomicwork helps organizations streamline workflows, improve productivity, and reduce friction across employee and IT interactions.Role OverviewWe are looking for aSenior...
-
Application Security
6 days ago
Bengaluru, Karnataka, India Dezerv Full time ₹ 10,00,000 - ₹ 25,00,000 per yearAbout Dezerv :Dezerv is a house of investing solutions for high-net-worth and affluent Indians. Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth management businesses and managed over USD 7 billion in assets. The Dezerv team brings together decades of investing expertise from leading global...