Talent.com
This job offer is not available in your country.
Application Security Engineer

Application Security Engineer

ConfidentialHyderabad / Secunderabad, Telangana
12 days ago
Job description

Job description

What You'll Do

  • Research, identify and analyze and triage vulnerabilities that could affect Phenom ITX Platform and its supporting infrastructure, and determine its severity, exploitability and corrective action recommendations, summarizing and reporting results.
  • Collaborate with engineering / development teams to evolve software assurance processes to address security risks, and help teams learn and adopt shift-security-to-left practices.
  • Work on implementing the required fixes to remediate the vulnerabilities in collaboration with the engineering team
  • Deploy, improve and utilize SAST / DAST / SCA and other cybersecurity solutions to identify and communicate security vulnerabilities to Phenom production teams
  • Maintain and report progress on the state of application vulnerabilities and escalate as necessary to ensure vulnerability issues are closed and handled in a manner consistent with Phenom standards
  • Work closely with the business, support and production teams to provide input and guidance on development of planned remediation plans and strategies to solve identified vulnerabilities
  • Use technical writing and effective communications to prepare and deliver vulnerability assessment result reports to all levels of audiences (peers and or leadership).
  • Drive compliance support and improvements over time through the management, analysis and tracking of vulnerabilities discovered through audits, products or collaborations.
  • Perform research and analytics and stay apprised on new security vulnerability, threats, risks, attack tools and techniques to contribute and improve Phenom's Threat model and collaborate with senior engineering and product management staff to incorporate effective security standards and controls into product design.
  • Help in the deployment of Phenom Secure Architecture & Software Development program to support the best cybersecurity development practice, and ensure Phenom ITX Platform is highly secure, resilient and aligned with business and product development strategy.
  • Continuously review and identify security improvement opportunities in existing processes, services, and workflows to ensure Phenom ITX platform is robust against current and future cybersecurity threats.
  • Support cybersecurity process activities including security requirements definition, threat modelling, code reviews and cyber risk assessment.
  • Support on development and maintenance of a 'security by default' standard to be used in the development, infrastructure, or any other technology project.
  • Deliver training on Security Development Lifecycle to engineering / development teams
  • ​​Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement and automation.
  • Drive continuous improvement activities to define, measure, visualize and improve key cyber security metrics related to Application Security.
  • Provide analytic support to answer questions about vulnerabilities, and general threat intelligence trends

Work Experience

  • Experience with Amazon Web Services cloud environments and its security controls and their corresponding challenges.
  • Experience with microservices architectures & distributed Platforms especially in the SaaS businesses
  • Experience using Agile software development
  • Coding Experience in Scripting & programming languages (such as Terraform, Java, Python, Ruby, etc.)
  • Knowledge of information security principles (Confidentiality, Integrity, Availability Authentication & Public Key Infrastructure (PKI), Data Security or Cryptography), and understanding of common exploitation techniques and mitigation.
  • Experience implementing, managing, and supporting a vulnerability management program (process and technology).
  • Experience and well-known understanding of Dynamic and Static Application Security Testing (DAST & SAST) and  infrastructure automation / development utilizing APIs.
  • Understanding of the main cybersecurity tools (SIEM, IPS, XDR, etc.) and how they help to protect an application.
  • Experience working with Threat modeling (e.g., STRIDE, PASTA, FAIR, Security Cards) and vulnerability frameworks standards (e.g., OWASP, CVSS, CWE) with a good understanding of the Cyber Kill Chain and pervasive threat attack methods and remediation.
  • Thought leadership, critical thinking, strong organizational skills, report writing skills to senior level, ability to prioritize and multitask
  • Skills Required

    Java, Terraform, Saas, Ruby, Python

    Create a job alert for this search

    Application Security Engineer • Hyderabad / Secunderabad, Telangana

    Related jobs
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiHyderabad, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 26 days ago
    • Promoted
    NetEnrich - Security Implementation Engineer - SIEM Solutions

    NetEnrich - Security Implementation Engineer - SIEM Solutions

    NetEnrichHyderabad
    About company : Netenrich boosts the effectiveness of organizations security and digital operations so they can avoid disruption and manag...Show moreLast updated: 11 days ago
    • Promoted
    Principal Security Engineer - SIEM

    Principal Security Engineer - SIEM

    Cornerstone OnDemand Services India Pvt LtdHyderabad
    Principal Security Engineer India Cybersecurity Engineering : The Principal Security Engineer is a hands-on role that blends cloud security engineering with securit...Show moreLast updated: 25 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    QualiZealhyderabad, telangana, in
    Conduct Static Application Security Testing (SAST) and Software Composition Analysis (SCA).Perform Dynamic Application Security Testing (DAST) and Interactive Application Security Testing (IAST) fo...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    NopalCyberhyderabad, telangana, in
    NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Su...Show moreLast updated: 7 days ago
    • Promoted
    Security Engineer (Detection and Response)

    Security Engineer (Detection and Response)

    FoodsmartHyderabad, Telangana, India
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 26 days ago
    • Promoted
    Application Security Architect

    Application Security Architect

    ConfidentialHyderabad / Secunderabad, Telangana
    Expected to be an SME, collaborate and manage the team to perform.Responsible for team decisions.Engage with multiple teams and contribute on key decisions. Provide solutions to problems for their i...Show moreLast updated: 30+ days ago
    • New!
    SecOps Analyst - Enterprise Security

    SecOps Analyst - Enterprise Security

    ATLAS CONSOLIDATED PTE. LTD.Hyderabad, Telangana, IN
    Quick Apply
    We are seeking a skilled SecOps Engineer to join our Enterprise Security team.In this role, you will be responsible for maintaining and enhancing our security posture through incident response, sec...Show moreLast updated: 3 hours ago
    • Promoted
    Principal Application Security Consultant - Vulnerability Assessment

    Principal Application Security Consultant - Vulnerability Assessment

    PRUDENT GLOBALTECH SOLUTIONS PRIVATE LIMITEDHyderabad
    Job Description : Prudent Technologies and Consulting is seeking an experienced Principal Application Security Engineer to lead our rapidly expandi...Show moreLast updated: 25 days ago
    • Promoted
    Security Engineer

    Security Engineer

    ConfidentialHyderabad / Secunderabad, Telangana
    Build and implement new security controls, processes and tools.Identify organizational risks to confidentiality, integrity, and availability, and determine appropriate mitigations.Leverage native A...Show moreLast updated: 30+ days ago
    • Promoted
    Security Platform Engineer

    Security Platform Engineer

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Join a company that is pushing the boundaries of what is possible.We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society.Our wo...Show moreLast updated: 9 days ago
    • Promoted
    Security and Application Associate Manager

    Security and Application Associate Manager

    ConfidentialHyderabad / Secunderabad, Telangana
    Develop plans to safeguard computer files and intellectual property against accidental or unauthorized modifications.Develop plans to safeguard computer files and intellectual property against acci...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcanasecunderabad, telangana, in
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security Engineer (Remote)

    Security Engineer (Remote)

    DigiHelic Solutions Pvt. Ltd.secunderabad, telangana, in
    Remote
    We are looking for a proactive and experienced.In this role, you will design, implement, and maintain.The ideal candidate will have deep. Monitor cloud environments for.AWS-native and third-party to...Show moreLast updated: 4 hours ago
    • Promoted
    Application Security Engineer III

    Application Security Engineer III

    ConfidentialHyderabad / Secunderabad, Telangana
    We're looking for a full-time phenomenal Application Security Engineer III to architect and lead the implementation of the security-related aspects of our ITX platform. This will include evaluating ...Show moreLast updated: 12 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    Foodsmarthyderabad, telangana, in
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 26 days ago
    • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India)hyderabad, telangana, in
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 7 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    ZORTECH SOLUTIONS PRIVATE LIMITEDHyderabad
    Application Security Engineer Experience : 7+ Years Location : Ahmedabad / Hyderabad (Hybrid Work mode) <...Show moreLast updated: 26 days ago
    • Promoted
    Security Engineer

    Security Engineer

    NexionProHyderabad
    Key Responsibilities : - Perform vulnerability assessments across cloud platforms and workloads using Wiz, Tenable, and SonarQube. Classify vulnerabilities by severity...Show moreLast updated: 11 days ago
    • Promoted
    Application Security Testing Engineer

    Application Security Testing Engineer

    ConfidentialHyderabad / Secunderabad, Telangana
    ENGINEERJob Profile Details : Execute complex Application Security Code Review projects for different types of applications including mobile, web services, web apps and thick-client.Execute Applicat...Show moreLast updated: 5 days ago