Talent.com
Application Security Engineer
Application Security EngineerFoodsmart • Secunderabad, Telangana, India
No longer accepting applications
Application Security Engineer

Application Security Engineer

Foodsmart • Secunderabad, Telangana, India
30+ days ago
Job description

About us :

Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians. Our platform is designed to foster healthier food choices, drive lasting behavior change, and deliver long-term health outcomes. Through our highly personalized, digital platform, we guide our 2.2 million members—including those in employer-sponsored health plans, regional and national Medicaid managed care organizations, Medicare Advantage plans, and commercial insurers—on a tailored journey to eating well while saving time and money.

Foodsmart seamlessly integrates dietary assessments and nutrition counseling with online food ordering and cost-effective meal planning for the entire family, optimizing ingredients both at home and on the go. We partner with national and regional retailers across the U.S., many of whom accept SNAP / EBT, making healthier food more accessible. Additionally, we assist members with SNAP enrollment and management, providing tangible access to nutritious food.In 2024, Foodsmart secured a $200 million investment from TPG’s Rise Fund, which supports entrepreneurs dedicated to achieving the United Nations’ Sustainable Development Goals. This investment will help us expand our reach, particularly to low-income workers who are disproportionately affected by diet-related diseases.

At Foodsmart, our mission is to make nutritious food accessible and affordable for everyone, regardless of economic status. We are committed to a set of core values that shape our culture and work environment :

⚖️ Measured : We make data-driven, truth-seeking decisions.

Impactful : We are fueled by achieving our mission and vision.

Collaborative : We help each other be better and create a positive environment.

Hungry : We maintain a healthy growth mindset, seeking to overcome challenges with courage.

Joyful : We take joy in each other, our work, and the privilege of doing this work.

Whether you're a dietitian, a commercial leader, or a technologist, working at Foodsmart means being part of a team that is passionate, supportive, and driven by a shared purpose. Join us in transforming the way people access and enjoy healthy food.

About the role :

We are seeking an Application Security Engineer who will work at the intersection of security, DevOps, and development to ensure security is embedded throughout our SDLC. This role requires deep technical expertise in secure code review, static and dynamic application security testing (SAST / DAST), and infrastructure governance, especially in the segregation of environments, separation of duties, and branch protection in source control systems.

You will :

Code & Application Security

Conduct manual and automated code reviews to identify security vulnerabilities (e.g., XSS, SQLi, logic flaws).

Define and implement SAST and DAST pipelines using tools such as SNYK, Checkmarx, Fortify, OWASP ZAP, or Burp Suite.

Collaborate with development teams to remediate vulnerabilities and educate on secure coding standards (e.g., OWASP Top 10).

DevSecOps & CI / CD Pipeline Security

Integrate security controls into CI / CD pipelines using tools like GitHub Actions, Jenkins, and GitLab CI.

Define and enforce branch protection rules, code signing, and commit validation policies (e.g., mandatory code reviews, signed commits).

Work closely with DevOps to ensure security-as-code is implemented across build, test, and deployment stages.

Infrastructure & Environment Segregation

Ensure proper segregation between development, staging, and production environments, following least privilege principles.

Collaborate with infra and cloud teams to enforce network and access segregation (e.g., VPC segmentation, IAM policies).

Governance & Policy Enforcement

Define and monitor separation of duties policies between developers, testers, and deployers.

Create security baselines and compliance checks (e.g., CIS Benchmarks, SOC 2 / ISO 27001 readiness).

Set up auditing and alerting for anomalous activities in source control and deployment platforms.

Tooling & Automation

Deploy and maintain security tools (e.g., GitGuardian, Aqua, Prisma Cloud) to detect hard coded secrets, policy violations, and misconfigurations.

Automate remediation workflows where possible (e.g., auto-patching vulnerable dependencies).

You have :

7-10 years in Security Architecture, AppSec, or a combined development and security engineering role.

Strong hands-on experience in secure coding, application security testing, and source code analysis.

Solid knowledge of CI / CD pipelines, version control (especially GitHub / GitLab), and branch control strategies.

Familiarity with cloud platforms (AWS, Azure, GCP) and security practices for each.

In-depth understanding of network security, access controls, and zero trust architecture.

Practical knowledge of regulatory or compliance frameworks (e.g., ISO 27001, SOC 2, NIST).

Preferred Qualifications

Experience working with Infrastructure as Code (IaC) tools (e.g., Terraform, CloudFormation) with embedded security checks.

Familiarity with container security (Docker, Kubernetes, image scanning).

Certifications : OSCP, CSSLP, CEH, GSEC, or AWS Security Specialty.

Contributions to open-source security tools or projects is a plus.

Key KPIs / Metrics of Success

Time-to-remediate for identified vulnerabilities.

Percentage of pipelines with integrated SAST / DAST.

Number of policy violations prevented via branch rules and access controls.

Coverage of secure coding training among developers.

  • Sign on bonus offered for immediate joiners
Create a job alert for this search

Application Security Engineer • Secunderabad, Telangana, India

Related jobs
Senior Application Security Engineer

Senior Application Security Engineer

Sphera • Hyderabad, IN
Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show more
Last updated: 18 days ago • Promoted
Cyber Security Analyst

Cyber Security Analyst

DraconX • Hyderabad, IN
DraconX is at the forefront of transforming cutting-edge ideas into intelligent, scalable digital solutions.As pioneers in AI business automation and AI-driven SaaS platforms, we specialize in crea...Show more
Last updated: 18 days ago • Promoted
Application Security Architect

Application Security Architect

QualiZeal • Hyderabad, Republic Of India, IN
Application Security Architect.This role will collaborate with engineering, DevOps, Operations, InfoSec teams to embed security into the software development lifecycle (SDLC), define secure archite...Show more
Last updated: 28 days ago • Promoted
Contract - Product Security Engineer (Polaris / BlackDuck)

Contract - Product Security Engineer (Polaris / BlackDuck)

KPG99 INC • Hyderabad, Telangana, India
Greater Hyderabad area – will be remote but once converted they will need to go onsite once or a couple times a week but that is also flexible. MUST HAVE EXPERIENCE WITH “PRE MARKET” SECURITY TESTIN...Show more
Last updated: 4 hours ago • Promoted • New!
Lead Security Engineer

Lead Security Engineer

Arcana • Hyderabad, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
Last updated: 30+ days ago • Promoted
Security Engineer for Structured Data Protection | Pune | Immediate

Security Engineer for Structured Data Protection | Pune | Immediate

DigiHelic Solutions Pvt. Ltd. • Hyderabad, IN
Job Title : Security Engineer for Structured Data Protection.Solid experience in Ms Azure Cloud Security and AKS (Azure Kubernetes Service). Hands-on work with containerized platforms (Kubernetes, Do...Show more
Last updated: 1 day ago • Promoted
Security Operations Engineer

Security Operations Engineer

ITPeopleNetwork • Hyderabad, IN
We are looking for a junior to mid-level.Saviynt Identity Access Management (IAM / IGA).CyberArk Endpoint Privilege Manager (EPM). The ideal candidate will assist in user access governance, email thre...Show more
Last updated: 10 days ago • Promoted
Security Engineer - OSCP Certified

Security Engineer - OSCP Certified

Hashira • Hyderabad, Telangana, India
Hashira is an R&D studio focused on solving complex infrastructure challenges in blockchain and AI.Our work supports projects like Ren, KeeperDAO (Rook), Catalog, and Garden, which have collectivel...Show more
Last updated: 26 days ago • Promoted
Security Test Engineer

Security Test Engineer

ValueLabs • Hyderabad, Telangana, India
We at ValueLabs have an Opening for Senior Security Test Engineer Role.Role : Senior Security Test Engineer.Relevant Experience : 10+ Years. We are seeking a highly skilled and experienced Senior Secu...Show more
Last updated: 4 hours ago • Promoted • New!
Sap Security

Sap Security

TalentBridge • Hyderabad, IN
Sap Security – Finance (SAP S / 4HANA Security).Months of Contract (With high possibility of Full Time).We are seeking an experienced SAP S / 4 Security Specialist with strong expertise in designing, b...Show more
Last updated: 9 days ago • Promoted
AKS Container Security Engineer

AKS Container Security Engineer

Xsell Resources • Hyderabad, IN
We are urgently seeking a Certified CKA / CKS Senior AKS Container Security Engineer for our healthcare client.Open to Immediate joiners only. We are seeking a highly skilled AKS (Azure Kubernetes Ser...Show more
Last updated: 8 days ago • Promoted
Application Security Engineer

Application Security Engineer

ValueLabs • Hyderabad, Republic Of India, IN
We at ValueLabs have an Opening for Senior Security Test Engineer Role.Role : Senior Security Test Engineer.Relevant Experience : 10+ Years. We are seeking a highly skilled and experienced Senior Secu...Show more
Last updated: 30+ days ago • Promoted
Sr Application Security Engineer

Sr Application Security Engineer

ServiceNow • Hyderabad, Telangana, India
What you get to do in this role : .Identify the important strategic product security focus areas for the team .Help lead security discussions with the other engineering teams .Participate i...Show more
Last updated: 25 days ago • Promoted
Offensive Security Engineer

Offensive Security Engineer

Careers at Tide • Hyderabad, Telangana, India
At Tide we help SMEs save time (and money) in the running of their businesses by not only offering business accounts and related banking services but also a comprehensive set of highly usable and c...Show more
Last updated: 30+ days ago • Promoted
Cyber Security Engineer

Cyber Security Engineer

CareerUS Solutions • Hyderabad, IN
Cyber Security Engineer – Job Description.The Cyber Security Engineer is responsible for designing, implementing, and maintaining security systems to protect the organization’s computer networks, a...Show more
Last updated: 18 days ago • Promoted
Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

Senior Security Engineer - SIEM, DevSecOps, IPS / IDS

Emburse • Hyderabad, Telangana, India
Emburse software engineers contribute to the development of an engaging and interconnected set of system solutions.As an engineer, you will enhance the experiences of your customers, solve interest...Show more
Last updated: 30+ days ago • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

Photon • Hyderabad, Telangana, India
Application Security Engineer (Senior Officer).Reporting to the Global Head of Security, the Application Security Engineer plays a crucial role in leading our Application Security program, ensuring...Show more
Last updated: 7 days ago • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

SpeedMart • hyderabad, India
Our client is a global IT services company that helps businesses with digital transformation with offices in India and the United States. It helps businesses with digital transformation, provide IT ...Show more
Last updated: 10 hours ago • Promoted • New!