Talent.com
This job offer is not available in your country.
Application Security Testing Engineer

Application Security Testing Engineer

Human HorizonBangalore
30+ days ago
Job description

Position : Application Security Testing Engineer

Experience : 6 - 11 years

Job Description :

We are seeking a highly experienced and technically proficient Application Security Testing Engineer to join our security team. The ideal candidate will be responsible for conducting comprehensive security assessments of our applications, identifying vulnerabilities, and working closely with development teams to ensure the secure delivery of software. This role requires a deep understanding of application security principles, various testing methodologies, and the ability to provide actionable remediation guidance.

Key Responsibilities :

  • Lead and execute various types of application security testing, including Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), Interactive Application Security Testing (IAST), and manual penetration testing.
  • Identify, analyze, and prioritize security vulnerabilities in web, mobile, and API applications using both automated tools and manual techniques.
  • Conduct in-depth analysis of application architecture and design to identify potential security weaknesses and attack vectors.
  • Develop and maintain security testing methodologies, processes, and best practices.
  • Generate detailed security assessment reports, clearly articulating findings, risks, and recommended remediation steps for technical and non-technical audiences.
  • Collaborate closely with development, QA, and DevOps teams to integrate security testing into the SDLC (Secure Software Development Lifecycle) and provide guidance on secure coding practices.
  • Validate the effectiveness of implemented security controls and retest vulnerabilities to ensure proper remediation.
  • Stay current with the latest application security threats, vulnerabilities, attack techniques, and industry trends.
  • Participate in security code reviews and provide expert advice on secure design patterns.
  • Contribute to the selection, implementation, and optimization of application security testing tools and platforms.

Requirements :

  • 6 to 11 years of dedicated experience in application security testing and penetration testing.
  • Strong hands-on experience with leading SAST tools (Checkmarx, Fortify, SonarQube), DAST tools (Burp Suite Pro, OWASP ZAP, Acunetix, Qualys WAS), and IAST solutions.
  • In-depth knowledge of common web application vulnerabilities (OWASP Top 10, SANS Top 25) and their exploitation techniques.
  • Proficiency in understanding and analyzing source code in at least one major programming language (Java, .NET, Python, Node.js).
  • Solid understanding of secure coding principles and best practices.
  • Experience with API security testing and understanding of REST / SOAP protocols.
  • Familiarity with security frameworks and standards such as OWASP ASVS, NIST, ISO 27001.
  • Experience with cloud security concepts, particularly in an Azure environment, is a plus.
  • Ability to script or automate tasks using languages like Python, PowerShell, or Bash.
  • Excellent analytical, problem-solving, and critical thinking skills.
  • Strong written and verbal communication skills, with the ability to present complex technical information clearly and concisely.
  • Relevant industry certifications (OSCP, OSWE, GWAPT, CEH, CSSLP) are highly desirable.
  • Experience working in an Agile / DevSecOps environment.
  • ref : hirist.tech)

    Create a job alert for this search

    Application Security Engineer • Bangalore

    Related jobs
    • Promoted
    Mobile Application Tester - Security Testing

    Mobile Application Tester - Security Testing

    HireloBangalore
    We are looking for a skilled Mobile Application Tester with a strong focus on mobile application security testing and reverse engineering. The ideal candidate must have hands-on experience with tool...Show moreLast updated: 30+ days ago
    • Promoted
    Tosca Automation Engineer - Application Testing

    Tosca Automation Engineer - Application Testing

    intellics globalBangalore
    Job Title : T&T - Engineering - Tosca Automation - Bangalore - Consultant Location : Bengaluru Designation : Consultant Entity : &...Show moreLast updated: 10 days ago
    Security Engineer I (Application Security)

    Security Engineer I (Application Security)

    coinswitchINDIA
    PeepalCo is a house for brands serving India with tailored wealth-tech products, Making Money Equal for All.Founded by Ashish Singhal, Govind Soni, and Vimal Sagar Tiwari, PeepalCos products includ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer - Vulnerability Management

    Senior Application Security Engineer - Vulnerability Management

    Hire AlphaBangalore
    We are seeking a Senior Application Security Engineer with 67+ years of experience in application security, secure code review, and vulnerability management. The ideal candidate should have deep exp...Show moreLast updated: 6 days ago
    • Promoted
    Application Security Lead

    Application Security Lead

    Oak TitaniumBangalore, IN
    Job Title : Application Security Lead .We are a rapidly growing cybersecurity firm delivering advanced security solutions to enterprises across the Middle East, Europe, and the United States.Our mis...Show moreLast updated: 16 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    ZeptoBengaluru, Karnataka, India
    Job Description : Product Security Engineer.Zepto is revolutionizing e-commerce in India.As the country's fastest-growing quick-commerce company, we deliver groceries and essentials in 10 minutes fl...Show moreLast updated: 12 days ago
    Quality Engineer- Mobile Application testing

    Quality Engineer- Mobile Application testing

    Talent WorxBengaluru, KA, IN
    Quick Apply
    Job Title : Quality Engineer- Mobile Application testing.Bachelor’s degree in computer science, Information Technology, or a related field. We are looking for an experienced Quality Engineer with a s...Show moreLast updated: 30+ days ago
    Application Security Engineer

    Application Security Engineer

    Flexera Software India LLPBangalore
    Flexera saves customers billions of dollars in wasted technology spend.A pioneer in Hybrid ITAM and FinOps, Flexera provides award-winning, data-oriented SaaS solutions for technology value optimiz...Show moreLast updated: 16 days ago
    • Promoted
    • New!
    Lead Application Security Engineer

    Lead Application Security Engineer

    Condé Nast Technology LabBengaluru, Karnataka, India
    Condé Nast is a global media company, home to iconic brands including Vogue, The New Yorker, GQ, Glamour, AD, Vanity Fair and Wired, among many others. The company's award-winning content reaches 84...Show moreLast updated: 13 hours ago
    Security Engineer, Application Security

    Security Engineer, Application Security

    ADCI - KarnatakaBengaluru, Karnataka, IND
    In Amazon Stores, we ship some of the widest arrays of technology found at any company.Innovative digital healthcare to no-checkout retail, we push the boundaries of technology in every direction u...Show moreLast updated: 30+ days ago
    • Promoted
    MPL Gaming - Security Engineer - Penetration Testing

    MPL Gaming - Security Engineer - Penetration Testing

    MPL GamingBangalore
    Roles and responsibilities : - Perform regular pentest of organizational assets - Managing a bug bounty program - Prioritize...Show moreLast updated: 30+ days ago
    • New!
    Application Security Engineer IV

    Application Security Engineer IV

    Condé NastMARKSQUARE, Bengaluru, IN
    Condé Nast is a global media company, home to iconic brands including Vogue, The New Yorker, GQ, Glamour, AD, Vanity Fair and Wired, among many others. The company's award-winning content reaches 84...Show moreLast updated: 9 hours ago
    • Promoted
    • New!
    Application Security Engineer

    Application Security Engineer

    TELUS DigitalBangalore, IN
    We are a Digital Customer Experience organization, with a comprehensive coverage of IT Services from Traditional Services to Next Gen Digital Services. At TELUS Digital, we focus on lean, agile, hum...Show moreLast updated: 14 hours ago
    • Promoted
    Quality Assurance Engineer - Application Testing

    Quality Assurance Engineer - Application Testing

    BoomiBangalore
    Responsibilities : - Experience in developing and maintaining software quality assurance framework and tools - Experience wit...Show moreLast updated: 2 days ago
    Senior Application Security Engineer I

    Senior Application Security Engineer I

    RSA CareerBangalore, Karnataka, India
    Outseer Fraud Manageris an advanced omnichannel fraud detection hub that provides riskbased multifactor authentication for organizations seeking to protect their consumers from fraud across digital...Show moreLast updated: 30+ days ago
    • Promoted
    Anko - Automation Engineer - Application Testing

    Anko - Automation Engineer - Application Testing

    KAS ServicesBangalore
    About the Role : Anko GCC is seeking a talented and proactive Automation Engineer to join our Quality Assurance team.In ...Show moreLast updated: 24 days ago
    • Promoted
    C# Desktop Automation Engineer - Application Testing

    C# Desktop Automation Engineer - Application Testing

    AATRAL HR CONSULTING LLPBangalore
    Key Responsibilities : - Develop, maintain, and execute automation scripts for desktop applications using C#.Implement and optimize test automation frameworks (e.FlaUI, WinAppDr...Show moreLast updated: 18 days ago
    Application Security Engineer II

    Application Security Engineer II

    Zeta Services Inc.Bangalore
    It was founded by and Ramki Gaddipati in 2015.Our flagship processing platform - Zeta Tachyon - is the industry’s first modern, cloud-native, and fully API-enabled stack that brings together issuan...Show moreLast updated: 16 days ago