Position : Sr. Application Security Engineer
Experience : 7+ Years
Location : Ahmedabad / Hyderabad (Hybrid Work mode)
Application Developer with security expertise". This is a person with hands of application development experience in Java, micro services, React (added bonus). The resource would be responsible for understanding the existing Michaels Ecommerce landscape and would review reported security vulnerabilities and should be able to answer related queries for the development teams, provide assistance in resolution and at times be able to provide some solutions for :
- Application Security
- Conduct regular security assessments to identify vulnerabilities in applications and work with development teams to design secure software systems, resolve vulnerabilities and issues, and implement robust security measures.
- Additional responsibilities include security audits and penetration testing as Skills :
- Proficient in multiple programming languages. Advanced understanding of the intricacies and potential security flaws inherent in different languages.
- Working experience in languages like Java, JavaScript, C++, Python, and Ruby.
- Experience in API development / testing and API security
- Established experience with Agile (including Scrum and Kanban) and software development lifecycle (SDLC) practices.
- Experience with GCP, Containers and Serverless and Integration :
- Hands on experience with SAST, DAST, Jira, and Confluence tools, experience integrating security incidence workflows.
- Knowledge of security technologies like firewalls, intrusion detection systems, and encryption and practical application Reviews and Threat Modeling :
- Conduct regular security assessments to identify vulnerabilities in applications and work with development teams to remediate them.
- Work with the development teams on threat modeling to identify potential threats and vulnerabilities in an application.
- Requires understanding of software architecture, identifying potential attack vectors, and devising strategies to mitigate these threats.
- Work closely with software developers, systems administrators, and other IT professionals to ensure security is integrated into the application development process from the start
(ref : hirist.tech)