Application Security

5 days ago


Bengaluru, Karnataka, India Dezerv Full time ₹ 10,00,000 - ₹ 25,00,000 per year

About Dezerv :

Dezerv is a house of investing solutions for high-net-worth and affluent Indians. Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth management businesses and managed over USD 7 billion in assets. The Dezerv team brings together decades of investing expertise from leading global financial institutions like JP Morgan, UBS, BNP Paribas, etc. Our team of experts monitors the performance of portfolios and rebalance them if required to ensure long-term success. We are backed by marquee firms like Premji Invest, Accel, Elevation, Matrix, etc. Since inception, our clients have trusted us with over Crs of their assets.

Why are we building Dezerv?

Investing is stressful and emotional. Building & growing wealth is difficult and time-consuming. Most individuals struggle with managing their investments and money. Our goal is to help individuals grow their wealth without the stress, time, and costs involved in a traditional investment. At Dezerv, we are building a platform that leverages our decades of investment expertise to help individuals invest better for their future.

What are we trying to solve/mission?

We are passionate about helping Indians invest better. We manage investments with active oversight to help both sophisticated and new investors build long-term wealth across various market conditions.

About the team:

We are seeking a highly motivated and experienced Application Security Lead to join our dynamic team in Bangalore. In this critical role, you will be the champion for product security, taking a comprehensive and proactive approach to safeguarding our applications and infrastructure. This role reports directly to the Chief Information Security Officer (CISO) of the company. You will be responsible for the security of our web and mobile platforms, from the underlying architecture to the code that powers them. This is a hands-on role that requires a deep technical understanding of application security, cloud environments, and modern development practices.

Key Responsibilities:

  • Product Security Ownership:
    Take end-to-end ownership of the security of our web and mobile applications, built with technologies like React and Flutter.
  • Application Penetration Testing:
    Conduct regular and in-depth penetration testing of our web and mobile applications to identify and remediate vulnerabilities.
  • Secure SDLC & DevSecOps:
    Champion and integrate security seamlessly into the entire DevOps deployment process. Design, implement, and manage a robust DevSecOps pipeline, automating security testing (SAST, DAST, IAST, SCA) to provide fast feedback to developers.
  • Cloud Security (AWS):
    Leverage your deep knowledge of AWS to secure our cloud infrastructure. Implement and manage Cloud Security Posture Management (CSPM) and Cloud Workload Protection Platforms (CWPP) to ensure the continuous security of our cloud environment.
  • Architecture & Design Review:
    Proactively engage with development teams to conduct security architecture and design reviews for new features and products.
  • Mobile Application Security:
    Implement and enforce security best practices for our Flutter and React-based mobile applications, including secure data storage, secure network communication, and code obfuscation.
  • Threat Modeling:
    Conduct threat modeling exercises to identify potential security risks and design effective mitigation strategies.
  • Security Champion & Advocate:
    Act as the go-to person for all application security matters. Mentor and train developers on secure coding practices and create a strong security-aware culture within the engineering team.
  • Incident Response:
    Develop and maintain an incident response plan for application security incidents. Lead the response to any security breaches, conduct post-mortem analysis, and implement corrective actions.
  • Vulnerability Management:
    Manage the lifecycle of identified vulnerabilities, from discovery to remediation, ensuring timely patching and reporting.

Required Skills and Experience:

  • Experience: 3 -5
    years of relevant experience in application security, with a proven track record in a fast-paced environment. Experience in regulated sectors (like finance or fintech) is highly welcome.
  • Penetration Testing:
    Extensive hands-on experience in both manual and automated penetration testing of web and mobile applications.
  • Application Architecture:
    Strong understanding of application architecture principles and the ability to identify security flaws at the design level.
  • Cloud Security (AWS):
    In-depth knowledge of AWS security services and best practices. Hands-on experience with CSPM and CWPP tools is a must.
  • DevSecOps:
    Proven experience in building and managing a DevSecOps pipeline, with a deep understanding of the DevOps deployment process and how to effectively embed security controls within CI/CD workflows.
  • Mobile Security:
    Demonstrable experience in securing mobile applications, particularly those built with
    Flutter
    and
    React
    .
  • Programming & Scripting:
    Proficiency in at least one scripting language (e.g., Python, Bash) for automation and a good understanding of the languages used in our stack (e.g., JavaScript, Dart).
  • Security Tools:
    Hands-on experience with a variety of security tools for SAST, DAST, SCA, and infrastructure scanning.
  • Certifications:
    Professional security certifications are preferred, in the following order: Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM).
  • Communication:
    Excellent communication and interpersonal skills, with the ability to articulate complex security concepts to both technical and non-technical audiences.

Who You Are:

  • You are passionate about security and technology.
  • You are a proactive problem-solver with a "builder" mindset.
  • You thrive in a collaborative, fast-paced startup environment.
  • You are a strong advocate for security best practices.
  • You are eager to learn and adapt to new technologies and challenges.

Why Join Us?

  • Be a part of a mission-driven company that is changing the landscape of wealth management in India.
  • Work with a talented and passionate team in a collaborative environment.
  • Opportunity to have a significant impact and take ownership of product security.
  • Competitive salary and benefits package.

  • Security Guard –

    2 weeks ago


    Bengaluru, Karnataka, India Poojyaya Security Services Full time ₹ 3,00,000 - ₹ 4,50,000 per year

    Poojyaya Security Services is a trusted provider of professional security and manpower solutions across corporate, institutional, industrial, and residential sectors. With discipline, integrity, and commitment, we safeguard people, property, and organizations with excellence.Responsibilities:Provide security and safety to assigned premisesMonitor and report...


  • Bengaluru, Karnataka, India VAM Systems Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    VAM Systems is a Business Consulting, IT Solutions and Services company.VAM Systems is currently looking for Application Security Specialist for our Bahrain operations with the following skillsets & terms and conditions:· Years of Experience: years· Preferred Previous Work Experience: BankingQualification Major: BE Computer Science and...


  • Bengaluru, Karnataka, India Ola Electric Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Title: Application Security EngineerJob Summary:A Security Engineer will be responsible for ensuring the security and privacy of the company's products and services. This role will be vital in shaping the company's security strategy by working closely with development teams to identify, evaluate, and mitigate potential security risks and ensuring that...


  • Bengaluru, Karnataka, India Optiv Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    An Optiv Application Security intern should be passionate about technology and have a desire to learn and enhance their skillsets within the cybersecurity domain. The intern will be provided with training and mentorship to actively participate in the ongoing Application Security practice initiatives. Additionally, they will undergo formal training sessions...


  • Bengaluru, Karnataka, India owow Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Primary Focus- AWS Apps Arch- Dev. background Python/Java/Go Lang,Designing,Cloud Native Exp would be required,AWS Security services (MS,VPC),CICD Awareness.Design and implement application security architecture for AWS-hosted services and applications.Ensures secure-by-design initiatives across SDLC, including threat modeling, risk assessments, and...


  • Bengaluru, Karnataka, India Resmed Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Let's talk about the teamAt Resmed, the Enterprise Security team safeguards the systems, data, and technologies that enable our mission to improve lives through connected health. We collaborate across engineering, data science, enterprise architecture and business units to embed security in everything we build.Let's talk about the roleWe are seeking an...


  • Bengaluru, Karnataka, India TekDoors Inc. Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Job Title: Application Security Architect (AWS focused)Location: Bangalore, Karnataka, IndiaType: Full TimePrimary Focus-AWS Apps Arch- Dev. background Python/Java/Go Lang, Designing, Cloud Native Exp would be required, AWS Security services (MS,VPC),CICD Awareness.Qualifications:• 8+ years in application security, software engineering, or security...


  • Bengaluru, Karnataka, India TekDoors Inc. Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Job Title: Application Security Architect (AWS)Location: BangaloreDuration: Full TimeExperience: 07+ YearsJob Description:• 7+ years in application security, software engineering, or security architecture roles.• 3+ years of hands-on experience with AWS services, like IAM, KMS, CloudTrail, VPCs, CodePipeline, Terraform, etc.• Deep understanding of AWS:...


  • Bengaluru, Karnataka, India BitGo Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    BitGo is the leading infrastructure provider of digital asset solutions, delivering custody, wallets, staking, trading, financing, and settlement services from regulated cold storage. Since our founding in 2013, we have focused on enabling our clients to securely navigate the digital asset space. With a global presence and multiple Trust companies, BitGo...


  • Bengaluru, Karnataka, India SecureDApp - Blockchain & Web3 Security Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Company DescriptionSecureDApp is a blockchain security company specialising in comprehensive security solutions for companies in the web3 space. We focus on identifying vulnerabilities in smart contracts and enhancing the overall security of blockchain networks. SecureDApp ensures ongoing protection, empowering companies with innovative security measures to...