Talent.com
This job offer is not available in your country.
[Immediate Start] Application Security Engineer

[Immediate Start] Application Security Engineer

FoodsmartIndia
5 hours ago
Job description

About us :

Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians. Our platform is designed to foster healthier food choices, drive lasting behavior change, and deliver long-term health outcomes. Through our highly personalized, digital platform, we guide our 2.2 million members—including those in employer-sponsored health plans, regional and national Medicaid managed care organizations, Medicare Advantage plans, and commercial insurers—on a tailored journey to eating well while saving time and money.

Foodsmart seamlessly integrates dietary assessments and nutrition counseling with online food ordering and cost-effective meal planning for the entire family, optimizing ingredients both at home and on the go. We partner with national and regional retailers across the U.S., many of whom accept SNAP / EBT, making healthier food more accessible. Additionally, we assist members with SNAP enrollment and management, providing tangible access to nutritious food.In 2024, Foodsmart secured a $200 million investment from TPG’s Rise Fund, which supports entrepreneurs dedicated to achieving the United Nations’ Sustainable Development Goals. This investment will help us expand our reach, particularly to low-income workers who are disproportionately affected by diet-related diseases.

At Foodsmart, our mission is to make nutritious food accessible and affordable for everyone, regardless of economic status. We are committed to a set of core values that shape our culture and work environment :

⚖️ Measured : We make data-driven, truth-seeking decisions.

Impactful : We are fueled by achieving our mission and vision.

Collaborative : We help each other be better and create a positive environment.

Hungry : We maintain a healthy growth mindset, seeking to overcome challenges with courage.

Joyful : We take joy in each other, our work, and the privilege of doing this work.

Whether you're a dietitian, a commercial leader, or a technologist, working at Foodsmart means being part of a team that is passionate, supportive, and driven by a shared purpose. Join us in transforming the way people access and enjoy healthy food.

About the role :

We are seeking an Application Security Engineer who will work at the intersection of security, DevOps, and development to ensure security is embedded throughout our SDLC. This role requires deep technical expertise in secure code review, static and dynamic application security testing (SAST / DAST), and infrastructure governance, especially in the segregation of environments, separation of duties, and branch protection in source control systems.

You will :

Code & Application Security

  • Conduct manual and automated code reviews to identify security vulnerabilities (e.g., XSS, SQLi, logic flaws).
  • Define and implement SAST and DAST pipelines using tools such as SNYK, Checkmarx, Fortify, OWASP ZAP, or Burp Suite.
  • Collaborate with development teams to remediate vulnerabilities and educate on secure coding standards (e.g., OWASP Top 10).

DevSecOps & CI / CD Pipeline Security

  • Integrate security controls into CI / CD pipelines using tools like GitHub Actions, Jenkins, and GitLab CI.
  • Define and enforce branch protection rules, code signing, and commit validation policies (e.g., mandatory code reviews, signed commits).
  • Work closely with DevOps to ensure security-as-code is implemented across build, test, and deployment stages.
  • Infrastructure & Environment Segregation

  • Ensure proper segregation between development, staging, and production environments, following least privilege principles.
  • Collaborate with infra and cloud teams to enforce network and access segregation (e.g., VPC segmentation, IAM policies).
  • Governance & Policy Enforcement

  • Define and monitor separation of duties policies between developers, testers, and deployers.
  • Create security baselines and compliance checks (e.g., CIS Benchmarks, SOC 2 / ISO 27001 readiness).
  • Set up auditing and alerting for anomalous activities in source control and deployment platforms.
  • Tooling & Automation

  • Deploy and maintain security tools (e.g., GitGuardian, Aqua, Prisma Cloud) to detect hard coded secrets, policy violations, and misconfigurations.
  • Automate remediation workflows where possible (e.g., auto-patching vulnerable dependencies).
  • You have :

  • 7-10 years in Security Architecture, AppSec, or a combined development and security engineering role.
  • Strong hands-on experience in secure coding, application security testing, and source code analysis.
  • Solid knowledge of CI / CD pipelines, version control (especially GitHub / GitLab), and branch control strategies.
  • Familiarity with cloud platforms (AWS, Azure, GCP) and security practices for each.
  • In-depth understanding of network security, access controls, and zero trust architecture.
  • Practical knowledge of regulatory or compliance frameworks (e.g., ISO 27001, SOC 2, NIST).
  • Preferred Qualifications

  • Experience working with Infrastructure as Code (IaC) tools (e.g., Terraform, CloudFormation) with embedded security checks.
  • Familiarity with container security (Docker, Kubernetes, image scanning).
  • Certifications : OSCP, CSSLP, CEH, GSEC, or AWS Security Specialty.
  • Contributions to open-source security tools or projects is a plus.
  • Key KPIs / Metrics of Success

  • Time-to-remediate for identified vulnerabilities.
  • Percentage of pipelines with integrated SAST / DAST.
  • Number of policy violations prevented via branch rules and access controls.
  • Coverage of secure coding training among developers.
  • Create a job alert for this search

    Application Engineer • India

    Related jobs
    • Promoted
    ▷ Apply Now! Application Security Engineer

    ▷ Apply Now! Application Security Engineer

    DezervIndia
    Dezerv is a house of investing solutions for high-net-worth and affluent Indians.Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth manag...Show moreLast updated: 3 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.ainagpur, maharashtra, in
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    AtomicworkIndia
    About Atomicwork Atomicwork is reimagining IT and workplace operations by putting employees at the center of the experience. With a strong emphasis on automation, integration, and security, Atomicwo...Show moreLast updated: 14 days ago
    • Promoted
    • New!
    Immediate Start! Application Engineer (Principal) - Enterprise Risk

    Immediate Start! Application Engineer (Principal) - Enterprise Risk

    Flyers SoftIndia
    Experience : Must have at least 12 years or more experience in systems implementation of which at least 4 years is in leading technical team. Excellent knowledge of programming languages like.Strong ...Show moreLast updated: 1 hour ago
    • Promoted
    • New!
    Apply in 3 Minutes! Application Security Engineer

    Apply in 3 Minutes! Application Security Engineer

    Castellum LabsIndia
    Castellum Labs is a Next Gen Cyber Security Technology Venture that started in 2018, from Hyderabad, India with global ambitions, to change the cybersecurity service model.The company's vision is t...Show moreLast updated: 1 hour ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    Castellum LabsIndia
    The Company Castellum Labs is a Next Gen Cyber Security Technology Venture that started in 2018, from Hyderabad, India with global ambitions, to change the cybersecurity service model.The compan...Show moreLast updated: 4 days ago
    • Promoted
    Senior Application Security Engineer (AI)

    Senior Application Security Engineer (AI)

    BackbaseIndia
    The Job in short Backbase has ushered in a new era of digital banking with the global launch of its AI-powered Banking Platform, recently lighting up Times Square. This milestone marks a bold step i...Show moreLast updated: 14 days ago
    • Promoted
    • New!
    Immediate Start! Lead Security Engineer, Web Development

    Immediate Start! Lead Security Engineer, Web Development

    QualysIndia
    Come work at a place where innovation and teamwork come together to build products that make the world safe.Qualys helps organizations simplify security operations and lower the cost of compliance ...Show moreLast updated: 1 hour ago
    • Promoted
    • New!
    (3 Days Left) Enterprise Applications Security Engineer

    (3 Days Left) Enterprise Applications Security Engineer

    AviatrixIndia
    For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security.Where current cybersecurity approaches focus on securing entry points to a trus...Show moreLast updated: 1 hour ago
    • Promoted
    Lead Application Security Engineer

    Lead Application Security Engineer

    InMobi AdvertisingIndia
    About Us InMobi is the leading provider of content, monetization, and marketing technologies that fuel growth for industries around the world. Our end-to-end advertising software platform, connected...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    DezervIndia
    Dezerv is a house of investing solutions for high-net-worth and affluent Indians.Dezerv is co-founded by Sandeep Jethwani, Vaibhav Porwal, and Sahil Contractor. They have led successful wealth manag...Show moreLast updated: 4 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartNagpur, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 2 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Paramount Computer SystemsNagpur, IN
    Identity Governance and Administration (IGA).The role involves designing, implementing, and supporting enterprise-grade IGA solutions to ensure secure, efficient, and compliant identity lifecycle m...Show moreLast updated: 15 days ago
    • Promoted
    • New!
    ▷ [Immediate Start] Senior Application Security Engineer

    ▷ [Immediate Start] Senior Application Security Engineer

    MOURI TechIndia
    We are seeking a highly skilled DevSecOps Engineer with a strong background in application security, penetration testing, and secure development practices. The ideal candidate will bring hands-on ex...Show moreLast updated: 1 hour ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    MOURI TechIndia
    We are seeking a highly skilled DevSecOps Engineer with a strong background in application security, penetration testing, and secure development practices. The ideal candidate will bring hands-on ex...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaIndia, India
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    QualiZealIndia
    Conduct Static Application Security Testing (SAST) and Software Composition Analysis (SCA) - Perform Dynamic Application Security Testing (DAST) and Interactive Application Security Testing (IAST) ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    [Immediate Start] Principal AI Security Engineer

    [Immediate Start] Principal AI Security Engineer

    Sennovate Inc.India
    Position : Principal AI Security Engineer.Sennovate is a global Managed Security Services Provider (MSSP) specializing in Identity and Access Management (IAM), Cybersecurity, and Cloud Security.We h...Show moreLast updated: 1 hour ago
    • Promoted
    Enterprise Applications Security Engineer

    Enterprise Applications Security Engineer

    AviatrixIndia
    WHO WE ARE : For enterprises struggling to secure cloud workloads, Aviatrix® offers a single solution for pervasive cloud security. Where current cybersecurity approaches focus on securing entry poin...Show moreLast updated: 4 days ago
    • Promoted
    • New!
    ▷ Apply Now! Product Security Engineer

    ▷ Apply Now! Product Security Engineer

    TravelokaIndia
    Product Security Engineer at Traveloka will be required to ensure that our products and services are shipped with high security standards through application security testing, hardening, and secure...Show moreLast updated: 1 hour ago