drjobs Application Security Engineer

Application Security Engineer

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Pune - India

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Job Description

Join Strategys IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategys software applications while using modern security and AI tooling. In this position you will be responsible for integrating security practices throughout the software development lifecycle ensuring that our software products are resilient against vulnerabilities.

  • Secure SDLC Integration: Work closely with development teams to integrate security into the SDLC including threat modeling secure code reviews and security testing.

  • Vulnerability Management: Identify triage and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA tools.

  • Security Assessments & Penetration Testing: Conduct manual and automated penetration testing of web mobile and cloud applications to detect security flaws.

  • Secure Code Review: Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices.

  • Threat Modeling & Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture.

  • DevSecOps Enablement: Support and enhance DevSecOps initiatives by integrating security automation within CI/CD pipelines.

  • Incident Response & Remediation: Assist in investigating security incidents related to applications and work with engineering teams to remediate threats.

  • Security Awareness & Training: Educate and mentor developers on OWASP Top 10 SANS 25 and other security best practices.

 

 

 


Qualifications :

 

  • Bachelors degree in Computer Science Engineering or related field

  • Minimum 2 years of software development or software security experience in an agile environment

  • Handson experience with SAST DAST IAST and SCA tools (e.g. Checkmarx Fortify Veracode SonarQube Burp Suite ZAP).

  • Fluent in one or more programming languages such as Python Java JavaScript

  • Strong knowledge of secure coding principles and application security frameworks

  • Familiarity with security tools (e.g. static and dynamic analysis tools vulnerability scanners)

  • Understanding of security standards and regulations (e.g. OWASP NIST)

  • Handson experience with Generative AI and/or ML in creating innovative applications that enhance productivity and efficiency coupled with a strong eagerness to learn 

  • Experience with cloud security best practices in AWS Azure or GCP.

  • Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues

  • Effective interpersonal skills; ability to collaborate successfully with both technical and nontechnical stakeholders

  • Ability to articulate complex technical concepts with clarity supported by effective written and verbal communication skills

Job Location

Application Security Engineer

  • Pune India

  • Fulltime in person from Strategy Office a minimum of 4 days per week


Additional Information :

Additional Information

The recruitment process includes online assessments as a first step (English logic design technical) we send them via email please check also your SPAM folder


Remote Work :

No


Employment Type :

Fulltime

Employment Type

Full-time

Company Industry

Department / Functional Area

Engineering

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.