Talent.com
This job offer is not available in your country.
Application Security Engineer

Application Security Engineer

FoodsmartHyderabad, India
5 days ago
Job description

About us :

Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians. Our platform is designed to foster healthier food choices, drive lasting behavior change, and deliver long-term health outcomes. Through our highly personalized, digital platform, we guide our 2.2 million members—including those in employer-sponsored health plans, regional and national Medicaid managed care organizations, Medicare Advantage plans, and commercial insurers—on a tailored journey to eating well while saving time and money.

Foodsmart seamlessly integrates dietary assessments and nutrition counseling with online food ordering and cost-effective meal planning for the entire family, optimizing ingredients both at home and on the go. We partner with national and regional retailers across the U.S., many of whom accept SNAP / EBT, making healthier food more accessible. Additionally, we assist members with SNAP enrollment and management, providing tangible access to nutritious food.In 2024, Foodsmart secured a $200 million investment from TPG’s Rise Fund, which supports entrepreneurs dedicated to achieving the United Nations’ Sustainable Development Goals. This investment will help us expand our reach, particularly to low-income workers who are disproportionately affected by diet-related diseases.

At Foodsmart, our mission is to make nutritious food accessible and affordable for everyone, regardless of economic status. We are committed to a set of core values that shape our culture and work environment :

⚖️ Measured : We make data-driven, truth-seeking decisions.

Impactful : We are fueled by achieving our mission and vision.

Collaborative : We help each other be better and create a positive environment.

Hungry : We maintain a healthy growth mindset, seeking to overcome challenges with courage.

Joyful : We take joy in each other, our work, and the privilege of doing this work.

Whether you're a dietitian, a commercial leader, or a technologist, working at Foodsmart means being part of a team that is passionate, supportive, and driven by a shared purpose. Join us in transforming the way people access and enjoy healthy food.

About the role :

We are seeking an Application Security Engineer who will work at the intersection of security, DevOps, and development to ensure security is embedded throughout our SDLC. This role requires deep technical expertise in secure code review, static and dynamic application security testing (SAST / DAST), and infrastructure governance, especially in the segregation of environments, separation of duties, and branch protection in source control systems.

You will :

Code & Application Security

Conduct manual and automated code reviews to identify security vulnerabilities (e.g., XSS, SQLi, logic flaws).

Define and implement SAST and DAST pipelines using tools such as SNYK, Checkmarx, Fortify, OWASP ZAP, or Burp Suite.

Collaborate with development teams to remediate vulnerabilities and educate on secure coding standards (e.g., OWASP Top 10).

DevSecOps & CI / CD Pipeline Security

Integrate security controls into CI / CD pipelines using tools like GitHub Actions, Jenkins, and GitLab CI.

Define and enforce branch protection rules, code signing, and commit validation policies (e.g., mandatory code reviews, signed commits).

Work closely with DevOps to ensure security-as-code is implemented across build, test, and deployment stages.

Infrastructure & Environment Segregation

Ensure proper segregation between development, staging, and production environments, following least privilege principles.

Collaborate with infra and cloud teams to enforce network and access segregation (e.g., VPC segmentation, IAM policies).

Governance & Policy Enforcement

Define and monitor separation of duties policies between developers, testers, and deployers.

Create security baselines and compliance checks (e.g., CIS Benchmarks, SOC 2 / ISO 27001 readiness).

Set up auditing and alerting for anomalous activities in source control and deployment platforms.

Tooling & Automation

Deploy and maintain security tools (e.g., GitGuardian, Aqua, Prisma Cloud) to detect hard coded secrets, policy violations, and misconfigurations.

Automate remediation workflows where possible (e.g., auto-patching vulnerable dependencies).

You have :

5-8 years in Security Architecture, AppSec, or a combined development and security engineering role.

Strong hands-on experience in secure coding, application security testing, and source code analysis.

Solid knowledge of CI / CD pipelines, version control (especially GitHub / GitLab), and branch control strategies.

Familiarity with cloud platforms (AWS, Azure, GCP) and security practices for each.

In-depth understanding of network security, access controls, and zero trust architecture.

Practical knowledge of regulatory or compliance frameworks (e.g., ISO 27001, SOC 2, NIST).

Preferred Qualifications

Experience working with Infrastructure as Code (IaC) tools (e.g., Terraform, CloudFormation) with embedded security checks.

Familiarity with container security (Docker, Kubernetes, image scanning).

Certifications : OSCP, CSSLP, CEH, GSEC, or AWS Security Specialty.

Contributions to open-source security tools or projects is a plus.

Key KPIs / Metrics of Success

Time-to-remediate for identified vulnerabilities.

Percentage of pipelines with integrated SAST / DAST.

Number of policy violations prevented via branch rules and access controls.

Coverage of secure coding training among developers.

Create a job alert for this search

Application Security Engineer • Hyderabad, India

Related jobs
  • Promoted
Lead Security Engineer

Lead Security Engineer

interface.aiHyderabad, IN
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 26 days ago
  • Promoted
  • New!
Security Engineer (Remote)

Security Engineer (Remote)

DigiHelic Solutions Pvt. Ltd.Hyderabad, IN
Remote
We are looking for a proactive and experienced.In this role, you will design, implement, and maintain.The ideal candidate will have deep. Monitor cloud environments for.AWS-native and third-party to...Show moreLast updated: 4 hours ago
  • Promoted
NetEnrich - Security Implementation Engineer - SIEM Solutions

NetEnrich - Security Implementation Engineer - SIEM Solutions

NetEnrichHyderabad
About company : Netenrich boosts the effectiveness of organizations security and digital operations so they can avoid disruption and manag...Show moreLast updated: 11 days ago
  • Promoted
Principal Security Engineer - SIEM

Principal Security Engineer - SIEM

Cornerstone OnDemand Services India Pvt LtdHyderabad
Principal Security Engineer India Cybersecurity Engineering : The Principal Security Engineer is a hands-on role that blends cloud security engineering with securit...Show moreLast updated: 25 days ago
Senior Application Security Engineer

Senior Application Security Engineer

Practical DevSecOpsHyderabad, India, India
Remote
Quick Apply
Permanent(Full Time / Full-Time).We are seeking an Application Security Engineer to join our team and help maintain, enhance, and develop security training exercises for our renowned DevSecOps, API S...Show moreLast updated: 30+ days ago
  • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

QualiZealhyderabad, telangana, in
Conduct Static Application Security Testing (SAST) and Software Composition Analysis (SCA).Perform Dynamic Application Security Testing (DAST) and Interactive Application Security Testing (IAST) fo...Show moreLast updated: 30+ days ago
  • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

NopalCyberhyderabad, telangana, in
NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Su...Show moreLast updated: 7 days ago
  • Promoted
Security Engineer (Detection and Response)

Security Engineer (Detection and Response)

Foodsmarthyderabad, telangana, in
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 26 days ago
  • Promoted
SquareShift - Security Engineer - DevSecOps

SquareShift - Security Engineer - DevSecOps

SQUARESHIFT TECHNOLOGIES PRIVATE LIMITEDHyderabad
We are seeking a talented Security Engineer to join our team.The ideal candidate should have a strong background in production security, DevSecOps, and extensive experience with SDLC practices and ...Show moreLast updated: 18 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

ArcanaHyderabad, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Application Security Engineer

Application Security Engineer

ConfidentialHyderabad / Secunderabad, Telangana
Research, identify and analyze and triage vulnerabilities that could affect Phenom ITX Platform and its supporting infrastructure, and determine its severity, exploitability and corrective action r...Show moreLast updated: 12 days ago
  • Promoted
Product Security Engineer

Product Security Engineer

Horizontal Talenthyderabad, telangana, in
We are seeking a skilled and motivated Medical Device Product Security Engineer to join our cross-functional product development team. This role is responsible for ensuring that our medical devices ...Show moreLast updated: 7 days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

YASH Technologieshyderabad, telangana, in
The AppSec Engineer is a specialized cybersecurity role focused on DevOps engineering principles.While the expectation of their sibling role – SAE – is to have practical working security knowledge,...Show moreLast updated: 24 days ago
  • Promoted
Principal Application Security Consultant - Vulnerability Assessment

Principal Application Security Consultant - Vulnerability Assessment

PRUDENT GLOBALTECH SOLUTIONS PRIVATE LIMITEDHyderabad
Job Description : Prudent Technologies and Consulting is seeking an experienced Principal Application Security Engineer to lead our rapidly expandi...Show moreLast updated: 25 days ago
  • Promoted
Senior Infrastructure Security Engineer I

Senior Infrastructure Security Engineer I

Anzy Global.Hyderabad
Job Description : Function : IT Operations and Support / DevOps / Cloud, IT Security Vulnerability Security < / p&...Show moreLast updated: 30+ days ago
  • Promoted
Appen - Staff Engineer - Application Security

Appen - Staff Engineer - Application Security

AppenHyderabad
About Appen : Appen is a leader in AI enablement for critical tasks such as model improvement, supervision, and evaluation.To do this we l...Show moreLast updated: 4 days ago
  • Promoted
Application Security Engineer

Application Security Engineer

Foodsmarthyderabad, telangana, in
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 26 days ago
  • Promoted
DevSecOps / AppSecOps Staff Engineer

DevSecOps / AppSecOps Staff Engineer

First American (India)hyderabad, telangana, in
Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 7 days ago
  • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

ZORTECH SOLUTIONS PRIVATE LIMITEDHyderabad
Application Security Engineer Experience : 7+ Years Location : Ahmedabad / Hyderabad (Hybrid Work mode) <...Show moreLast updated: 26 days ago
  • Promoted
Security Engineer

Security Engineer

NexionProHyderabad
Key Responsibilities : - Perform vulnerability assessments across cloud platforms and workloads using Wiz, Tenable, and SonarQube. Classify vulnerabilities by severity...Show moreLast updated: 11 days ago