Senior Application Security Engineer

2 months ago


Gurugram, India GEMINI Full time

Department

: Information Security

In the emerging industry of digital assets, there is nothing more important than trust. The Gemini security team forms the backbone of trust. In fact, Gemini’s very first hires were security specialists and we continue to tackle unique challenges in the crypto space. Our team ensures that our customers, clients, and employees are safe, secure, and supported.

The Role: Senior Application Security Engineer

As a member of the Application Security (AppSec) team, you will share in the responsibility of protecting the company and our customers against application security threats. The AppSec team is focused on the advancement of modern application security practices and supports the engineering organization by finding, fixing, and preventing software security vulnerabilities.

As a Senior Application Security Engineer on the Application Security team’s Product Security group, you will work closely with engineering and product teams to provide security recommendations and identify security issues throughout the software development lifecycle. This includes secure design reviews, threat modeling, secure code review, and penetration testing among other activities.

Responsibilities:

Support the Gemini Secure Software Development Lifecycle as an application security subject matter expert through design review, threat modeling, code review, and penetration testing Collaborate and advise engineering teams on application security best practices and vulnerability remediation Perform deep-dive security reviews to ensure all Gemini products and services follow secure design principles across our product portfolio (web, mobile, and APIs) Develop tools and research to scale the Product Security team Create and deliver hands-on software security training to engineering teams to increase security awareness Participate in the Application Security on-call rotation to support engineering teams during incidents Role activities: Manual source code reviewPenetration testingDesign and implementation reviewThreat modelingDesign and implementation consultationContinuous assurance activitiesRisk identification and categorization / managementEngineering education and engagement

Minimum Qualifications:

5+ years of experience in application security or similar roles Ability to perform design reviews, threat modeling, secure code reviews, or penetration testing with an attacker mindset Strong background in application security best practices and familiarity with common vulnerabilities (e.g. SSRF, race conditions, privilege escalations, etc.) Some background in development or scripting experience (Python, Scala, C++, or JavaScript) Familiarity with and ability to understand business objectives, business context, and security risk Strong communication skills and the ability to collaborate on a cross-functional team

Preferred Qualifications:

Experience with microservice architectures Experience with cloud-native environments Experience with preventing application security vulnerabilities through secure design patterns, automated tooling, or frameworks It Pays to Work Here The compensation & benefits package for this role includes: Competitive base salary Benefits Discretionary annual bonus

  • gurugram, India GEMINI Full time

    Department : Information Security In the emerging industry of digital assets, there is nothing more important than trust. The Gemini security team forms the backbone of trust. In fact, Gemini’s very first hires were security specialists and we continue to tackle unique challenges in the crypto space. Our team ensures that our customers, clients,...


  • gurugram, India GEMINI Full time

    Department : Information Security In the emerging industry of digital assets, there is nothing more important than trust. The Gemini security team forms the backbone of trust. In fact, Gemini’s very first hires were security specialists and we continue to tackle unique challenges in the crypto space. Our team ensures that our customers, clients,...


  • Gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is:To deliver solutions that connect people to the restaurants, meals and moments they love.We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team!PAR...


  • gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is: To deliver solutions that connect people to the restaurants, meals and moments they love. We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team! PAR...


  • Gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is:To deliver solutions that connect people to the restaurants, meals and moments they love.We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team!PAR...


  • gurugram, India Partech Full time

    Hi there! We’re PAR and our purpose is: To deliver solutions that connect people to the restaurants, meals and moments they love. We take that responsibility very seriously. As a leading provider of technology to the top restaurant brands in the world we’re calling all rebels, instigators, idealists and builders to join our constantly growing team! PAR...


  • gurugram, India Cvent Full time

    Overview: Cvent’s Information Security team seeks Application Security Engineer II to support delivery of secure cloud-based software platforms and applications. As an Application Security Engineer II, you will closely partner with Cvent product, engineering, and the application security team. You will be responsible for applying your cloud and web...


  • gurugram, India Cvent Full time

    Overview: Cvent’s Information Security team seeks Application Security Engineer II to support delivery of secure cloud-based software platforms and applications. As an Application Security Engineer II, you will closely partner with Cvent product, engineering, and the application security team. You will be responsible for applying your cloud and web...


  • Gurugram, India GLG Full time

    Senior Security Operations Engineer Location: India - Remote We are seeking an experienced and effective Security Operations Engineer to join our Information Security Team. The successful candidate will report to the VP of Information Security and will maintain, implement, and enrich the program that safeguards our infrastructure, systems, applications...


  • Gurugram, India GLG Full time

    Senior Security Operations Engineer Location: India - Remote We are seeking an experienced and effective Security Operations Engineer to join our Information Security Team. The successful candidate will report to the VP of Information Security and will maintain, implement, and enrich the program that safeguards our infrastructure, systems, applications...


  • gurugram, India GLG Full time

    Senior Security Operations Engineer Location: India - Remote We are seeking an experienced and effective Security Operations Engineer to join our Information Security Team. The successful candidate will report to the VP of Information Security and will maintain, implement, and enrich the program that safeguards our infrastructure, systems, applications...


  • Gurugram, India Eptura Full time

    Job Title: Senior Engineer/Engineer of Product SecurityLocation: DLF Cyber Hub, GurugramWhat are we about:Eptura is a global worktech company that provides software solutions for people, workplaces, and assets to enable everyone to reach their full potential. With 16 million users across 115 countries, we are trusted by over 16,000 of the worlds leading...


  • Gurugram, India Eptura Full time

    Job Title: Senior Engineer/Engineer of Product SecurityLocation: DLF Cyber Hub, GurugramWhat are we about:Eptura is a global worktech company that provides software solutions for people, workplaces, and assets to enable everyone to reach their full potential. With 16 million users across 115 countries, we are trusted by over 16,000 of the worlds leading...


  • gurugram, India Eptura Full time

    Job Title: Senior Engineer/Engineer of Product Security Location: DLF Cyber Hub, Gurugram What are we about: Eptura is a global worktech company that provides software solutions for people, workplaces, and assets to enable everyone to reach their full potential. With 16 million users across 115 countries, we are trusted by over 16,000 of the worlds...


  • gurugram, India Eptura Full time

    Job Title: Senior Engineer/Engineer of Product Security Location: DLF Cyber Hub, Gurugram What are we about: Eptura is a global worktech company that provides software solutions for people, workplaces, and assets to enable everyone to reach their full potential. With 16 million users across 115 countries, we are trusted by over 16,000 of the worlds...


  • Gurugram, India TaskUs Full time

    About TaskUs: TaskUs is a provider of outsourced digital services and next-generation customer experience to fast-growing technology companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming, streaming...


  • gurugram, India TaskUs Full time

    About TaskUs: TaskUs is a provider of outsourced digital services and next-generation customer experience to fast-growing technology companies, helping its clients represent, protect and grow their brands. Leveraging a cloud-based infrastructure, TaskUs serves clients in the fastest-growing sectors, including social media, e-commerce, gaming, streaming...


  • Gurugram, India Egon Zehnder Full time

    The Company Knowledge Centre India (KCI) Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder. There are 5 teams that make up KCI: Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT. Your Journey at Egon Zehnder Starts Here At EZ, you have the opportunity to...


  • Gurugram, India Egon Zehnder Full time

    The Company Knowledge Centre India (KCI) Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder. There are 5 teams that make up KCI: Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT. Your Journey at Egon Zehnder Starts Here At EZ, you have the opportunity to...


  • gurugram, India Egon Zehnder Full time

    The Company Knowledge Centre India (KCI) Established in January 2005, KCI in Gurgaon, works in close collaboration with the Global offices of Egon Zehnder. There are 5 teams that make up KCI: Research, Research Operations, Visual Solutions, Projects/CV Capture and Digital IT. Your Journey at Egon Zehnder Starts Here At EZ, you have the opportunity to...