Application Security Engineer

5 hours ago


Bengaluru, Karnataka, India Exotel Techcom Pvt Ltd Full time ₹ 20,00,000 - ₹ 45,00,000 per year
About Us

Exotel is a leading provider of AI transformation solutions for enterprise customer engagement and experience. With over 20 billion annual conversations across omnichannel, voice, agents, and bots, Exotel is trusted by 7,000+ clients worldwide, spanning industries such as BFSI, Logistics, Consumer Durables, E-commerce, Healthcare, and Education. Customer expectations are evolving rapidly, and businesses face the challenge of balancing revenue growth, cost optimisation, and exceptional CX. Exotel steps in as the transformative partner, delivering AI-powered communication solutions that address all three — enabling businesses to engage smarter, faster, and better.

About the Role

As our Application Security Engineer, you will get to work on the security of our apps/services - Web, Mobile and API-based at Scale. Implementing granular security controls at various points of the Secure Software Development Lifecycle.

The Goal is to build Seamless Security. We want you to redefine how developers view security, eliminating friction and improving Security natively.

You will work closely with other Security functions,Infra , Architects and Developers to build highly reliable and secure products.

Responsibilities

  • Threat modeling experience for any Web/Mobile/API Application/Service, prior experience of 1-2 years is desirable.

  • Expertise in 1 or more of the following areas:-

    • API Security
  • Web Application Security
  • Mobile Application Security

  • Assist the Application Security Lead in Secure by Design reference architectures for Developer adoption- Secure Architecture frameworks.

  • Build the SCA(Software Composition Analysis) map for all the third party dependency usage at Scale and prioritize vulnerabilities based on EPSS,CISA KEV.

  • Vulnerability Identification and Remediation with focus on vulnerability prioritization using EPSS,CISA KEV

  • Build a robust SSDLC pipeline and envision frictionless experience for Developers in the lifecycle. Including but not limited to SAST , DAST and other Security tools in the lifecycle.

Work on findings evaluation, prioritization and fix/mitigate at scale.

  • Implement Data Security standard and work with Engineering to work on Sensitive Data leakage.

  • Work on providing proactive Security Best practice evaluation and enforcement for third party applications (COTS-Commercial-Off-the-Shelf) .

  • Contribute to the Security Champions program training modules.

  • Work with Cloud Security to improve Web App Firewalls (WAF) fine tuning for applications/services at use at Exotel.

  • Work on Security Incidents for Applications/Services across the ecosystem.

Requirements

  • Overall 5-7 years of relevant experience

  • Bachelor's degree in Computer Science or a related technical discipline, or equivalent practical experience.

  • Understanding of security frameworks and standards like OWASP & NIST, Solid understanding of security protocols, cryptography, authentication, authorization. Prior Experience in solving any of OWASP Top 10 highly desirable.

  • Good understanding of Linux and Windows OS, TCP/IP protocol stack and networking fundamentals, and security principles at all layers of the OSI stack

  • Experience with API security, network security, cryptography, PKI, certificate management,

  • Experience in CI/CD Tools Including Git, Jenkins, Ansible, or similar

  • Knowledge and experience in web application security testing, vulnerability assessment, penetration testing, and generating reports using tools like Burp Suite, Paros, AppScan, Wireshark, Nmap, and Nessus.

  • Advanced Expertise in at least one language, Shell scripting/Python/Go/NodeJS


  • Security Engineer II

    4 hours ago


    Bengaluru, Karnataka, India Safe Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    At SAFE Security, our mission is bold and ambitious: We Will Build CyberAGI — a super-specialized system of intelligence that autonomously predicts, detects, and remediates threats. This isn't just a vision—it's the future we're building every day, with the best minds in AI, cybersecurity, and risk. At SAFE, we empower individuals and teams with the...


  • Bengaluru, Karnataka, India Allen Online Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title: Staff Engineer - Application SecurityWe are seeking a highly experienced Principal Engineer in Application Security to join our team. The ideal candidate will play a critical role in ensuring our applications are secure and comply with the Indian Data Protection and Privacy (DPDP) laws. This position requires a deep understanding of application...


  • Bengaluru, Karnataka, India ALLEN Digital Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    About ALLEN Digital:At ALLEN Digital, we spearhead a technology-driven approach to education, leveraging top-tier tech talent from leading technology firms. Through our strategic collaboration with Bodhi Tree Systems, a prominent venture capital firm known for building & scaling tech-first brands, we are revolutionizing education with a tech-first...


  • Bengaluru, Karnataka, India smallcase Full time ₹ 8,00,000 - ₹ 20,00,000 per year

    About smallcase smallcase is on a mission to change how India & Indians invest. We build products & tools for individuals to invest better in stocks & ETFs and platforms & infrastructure for the industry to offer better investment products. Our user community is 6,50,000+ strong & we work with the largest financial brands in India like HDFC, Kotak,...


  • Bengaluru, Karnataka, India 78677dd5-c602-4129-ad99-bccfd569d49b Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    We are hiring an experienced Application Security (AppSec) Engineer to strengthen secure software development across our products and platforms. You will collaborate with development teams, perform secure code reviews, lead threat modeling sessions, orchestrate security testing, and ensure our applications meet the highest security and compliance standards....


  • Bengaluru, Karnataka, India Clinisys Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    In this role, as an Application Security Engineer, you will work as a part of our security engineering team and you will collaborate with other IT professionals to ensure that data is protected. You will be responsible for suggesting and implementing with best security practices within software development lifecycle (SDLC). You will responsible for setting...


  • Bengaluru, Karnataka, India Pearson Full time ₹ 20,00,000 - ₹ 40,00,000 per year

    DescriptionAt Pearson, we are the world's learning company with over 24,000 employees across 70 countries. Our mission is to combine world-class educational content and assessment, powered by services and technology, to enable more effective teaching and personalised learning at scale. We believe that wherever learning flourishes, so do people.In this...


  • Bengaluru, Karnataka, India Netsach Global Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Greetings from Netsach - A Cyber Security Company.We are looking for Application security Engineers (2 resources) with 8+ yrs of strong experience who would be responsible for providing technical expertise on secure software development and support of all associated activities, processes, and tools for protecting technology-based informationJob Titlle:...


  • Bengaluru, Karnataka, India BitGo Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    BitGo is the leading infrastructure provider of digital asset solutions, delivering custody, wallets, staking, trading, financing, and settlement services from regulated cold storage. Since our founding in 2013, we have focused on enabling our clients to securely navigate the digital asset space. With a global presence and multiple Trust companies, BitGo...


  • Bengaluru, Karnataka, India EquiLend Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    About UsWe are a leading global financial technology company transforming how the securities finance industry trades, settles, and analyzes data. Our award-winning Trading, Post-Trade, Data & Analytics, RegTech, and SaaS solutions power efficiency, transparency, and innovation for over 200 of the world's top financial institutions. Every month, our platform...