Talent.com
This job offer is not available in your country.
Senior Application Security Engineer

Senior Application Security Engineer

CventGurugram, Haryana, India
16 hours ago
Job description

Overview :

You are an experienced, hands-on Application Security Engineer who’s passionate about building secure products, automating security workflows, and influencing development teams to embed security into the product development lifecycle. Whether you're ready to take ownership or growing your deep technical skills as a Senior Engineer , you're ready to make a measurable impact. You are required to be in the office for 2 days / week.

You excel at the core of Application Security—from secure design reviews, threat modeling to vulnerability discovery via penetration tests and remediation—and bring an engineering mindset that enhances your impact. You’re also passionate about building internal tools, scripting automation, and scaling security practices across diverse tech stacks as part of Cvent’s Application Security Research & Engineering (ASRE) program

In This Role, You Will :

  • Integrate and scale security across the SDLC, embedding tools like SAST, DAST, and SCA within CI / CD pipelines.
  • Perform threat modeling, secure code and design reviews, penetration testing and risk assessments for new and existing features—including cloud-native and AI / ML systems.
  • Develop internal tools to automate security testing, support securing cloud-native applications using AWS CDK (CDF), and governance processes using scripting languages like Python, JavaScript, TypeScript, or similar.
  • Collaborate with engineering teams to remediate vulnerabilities identified via scans, manual testing, or external assessments.
  • Partner with product and engineering teams to improve the security posture of APIs, web apps, mobile apps, and infrastructure.
  • Communicate risks clearly to technical and non-technical audiences and support compliance efforts with ISO 27001, SOC2, and PCI.

Why You’ll Love This Role

  • You’ll build and automate security programs that scale across hundreds of apps and services.
  • You’ll join the ASRE team to innovate at the forefront of Application Security.
  • You’ll work with teams who take security seriously and give you the support to make meaningful change.
  • You’ll grow in a role that offers both technical depth and leadership opportunities , depending on your experience and ambition.
  • Here's What You Need :

  • 6+ years of hands-on experience in application security or secure software development.
  • Strong scripting / programming skills—able to automate tasks and build internal tools using Python, JavaScript, Bash , or similar.
  • Experience with CI / CD toolchains and integration of security tools in SDLC.
  • Strong familiarity with cloud platforms (AWS-preferred, GCP, or Azure) and principles of cloud-native security.
  • Proficiency in security testing tools (e.g., BurpSuite, Checkmarx, Mend, Veracode, Fortify, ZAP, etc.).
  • Strong grasp of OWASP Top 10, CWE, SANS Top 25, secure coding practices, and web application vulnerabilities.
  • Bonus If You Have

  • Experience securing AI / ML pipelines and understanding of adversarial ML or model privacy concerns.
  • Exposure to DevSecOps , SBOMs, IaC security, or supply chain risk management
  • Security certifications such as AWS Certified Security – Specialty , AWS Certified Solutions Architect – Associate / Professional , CSSLP , OSWE , GWAPT , CISSP , OSCP
  • Integrate and scale security across the SDLC, embedding tools like SAST, DAST, and SCA within CI / CD pipelines.
  • Perform threat modeling, secure code and design reviews, penetration testing and risk assessments for new and existing features—including cloud-native and AI / ML systems.
  • Develop internal tools to automate security testing, support securing cloud-native applications using AWS CDK (CDF), and governance processes using scripting languages like Python, JavaScript, TypeScript, or similar.
  • Collaborate with engineering teams to remediate vulnerabilities identified via scans, manual testing, or external assessments.
  • Partner with product and engineering teams to improve the security posture of APIs, web apps, mobile apps, and infrastructure.
  • Communicate risks clearly to technical and non-technical audiences and support compliance efforts with ISO 27001, SOC2, and PCI.
  • Why You’ll Love This Role

  • You’ll build and automate security programs that scale across hundreds of apps and services.
  • You’ll join the ASRE team to innovate at the forefront of Application Security.
  • You’ll work with teams who take security seriously and give you the support to make meaningful change.
  • You’ll grow in a role that offers both technical depth and leadership opportunities , depending on your experience and ambition.
  • 6+ years of hands-on experience in application security or secure software development.
  • Strong scripting / programming skills—able to automate tasks and build internal tools using Python, JavaScript, Bash , or similar.
  • Experience with CI / CD toolchains and integration of security tools in SDLC.
  • Strong familiarity with cloud platforms (AWS-preferred, GCP, or Azure) and principles of cloud-native security.
  • Proficiency in security testing tools (e.g., BurpSuite, Checkmarx, Mend, Veracode, Fortify, ZAP, etc.).
  • Strong grasp of OWASP Top 10, CWE, SANS Top 25, secure coding practices, and web application vulnerabilities.
  • Bonus If You Have

  • Experience securing AI / ML pipelines and understanding of adversarial ML or model privacy concerns.
  • Exposure to DevSecOps , SBOMs, IaC security, or supply chain risk management
  • Security certifications such as AWS Certified Security – Specialty , AWS Certified Solutions Architect – Associate / Professional , CSSLP , OSWE , GWAPT , CISSP , OSCP
  • Create a job alert for this search

    Application Engineer • Gurugram, Haryana, India

    Related jobs
    • Promoted
    Security Engineer

    Security Engineer

    TAC SecurityDelhi, India, India
    As a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies.Leveraging y...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Consultant

    Senior Security Consultant

    Claranet IndiaDelhi, IN
    Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 27 days ago
    • Promoted
    Engineer

    Engineer

    Nextbridge IT SolutionsDelhi, IN
    We are seeking an experienced subject matter expertise in the Fortinet.This critical role is centered on high-severity incident management, complex security troubleshooting, and architectural impro...Show moreLast updated: 3 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    YASH Technologiesghaziabad, uttar pradesh, in
    The AppSec Engineer is a specialized cybersecurity role focused on DevOps engineering principles.While the expectation of their sibling role – SAE – is to have practical working security knowledge,...Show moreLast updated: 27 days ago
    • Promoted
    American Express - System Security Analyst - Oracle HCM

    American Express - System Security Analyst - Oracle HCM

    American ExpressGurgaon, India
    At American Express, our culture is built on a 175-year history of innovation, shared values and Leadership Behaviors, and an unwavering commitment to back our customers, communities, and colleague...Show moreLast updated: 22 days ago
    • Promoted
    Senior DevOps Security Engineer

    Senior DevOps Security Engineer

    JRD SystemsDelhi, IN
    We are seeking a highly skilled Senior DevOps / Platform Engineer to join our dynamic team.The ideal candidate will have extensive experience in managing and automating infrastructure, improving depl...Show moreLast updated: 8 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Vista Applied Solutions Group IncDelhi, IN
    Hiring Sr Cyber Security Engineer | Long Term Contract | Remote.Job Title : Sr Cyber Security Engineer – Product Security. Location : Mostly Indian business hours, some cross over with US and EU teams...Show moreLast updated: 11 days ago
    • Promoted
    Cloud Security Engineer

    Cloud Security Engineer

    AquanowGhaziabad, IN
    Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our te...Show moreLast updated: 30+ days ago
    • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India)faridabad, haryana, in
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 11 days ago
    • Promoted
    SERVICENOW SECOPS

    SERVICENOW SECOPS

    Tata Consultancy Servicesgurugram, uttar pradesh, in
    Greetings from TATA CONSULTANCY SERVICES LIMITED!!!.Thank you for exploring career opportunities with Asia's largest IT company. Exciting # Job Opportunities for # Experienced Professionals.Total Ex...Show moreLast updated: 3 days ago
    • Promoted
    Senior Applications Security Manager

    Senior Applications Security Manager

    DEUTSCHE TELEKOM DIGITAL LABS PRIVATE LIMITEDGurugram
    We are seeking a highly skilled and experienced Senior Manager Application Security to lead our application security strategy, governance, and execution. This role will oversee secure software devel...Show moreLast updated: 8 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiDelhi, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Security Engineer (Remote)

    Security Engineer (Remote)

    DigiHelic Solutions Pvt. Ltd.Delhi, IN
    Remote
    We are looking for a proactive and experienced.In this role, you will design, implement, and maintain.The ideal candidate will have deep. Monitor cloud environments for.AWS-native and third-party to...Show moreLast updated: 3 days ago
    • Promoted
    Cyber Security Engineer with Splunk

    Cyber Security Engineer with Splunk

    IntraEdgefaridabad, haryana, in
    This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show moreLast updated: 11 days ago
    • Promoted
    Senior Manager - Applications Security

    Senior Manager - Applications Security

    QuesthiringGurugram
    Job Description : About the job : We are seeking a highly skilled and experienced Senior Manager Application Security to lead ...Show moreLast updated: 22 days ago
    • Promoted
    Staff Application Security Engineer - Vulnerability Management

    Staff Application Security Engineer - Vulnerability Management

    questhiringDelhi, IN
    Role : Staff Application Security Engineer Location : New Delhi, India As a Staff Application Security Engineer , you will shape how security integrates in...Show moreLast updated: 11 days ago
    • Promoted
    Cloud Security Architect

    Cloud Security Architect

    CloudThatfaridabad, haryana, in
    Strategic role ensuring secure cloud design by reviewing infrastructure, tools, and practices across full cloud lifecycle. Own end-to-end security in project life cycle.Perform security design revie...Show moreLast updated: 29 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaGhaziabad, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    CUS TechDelhi, IN
    We are seeking a highly skilled and detail-oriented.The ideal candidate will have strong technical expertise in security tools, frameworks, and compliance standards, along with a proactive approach...Show moreLast updated: 29 days ago
    • Promoted
    Senior Cloud Security Engineer - CASB / CSPM

    Senior Cloud Security Engineer - CASB / CSPM

    Digihelic Solutions Private LimitedDelhi, IN
    Remote
    We are seeking a highly skilled and experienced Senior Cloud Security Engineer with a specialization in Cloud Access Security Broker (CASB) environments. The ideal candidate will have deep subject m...Show moreLast updated: 18 days ago