Talent.com
Application Security Engineer

Application Security Engineer

FoodsmartDehra Dun, Uttarakhand, India
2 days ago
Job description

About us :

Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians. Our platform is designed to foster healthier food choices, drive lasting behavior change, and deliver long-term health outcomes. Through our highly personalized, digital platform, we guide our 2.2 million members—including those in employer-sponsored health plans, regional and national Medicaid managed care organizations, Medicare Advantage plans, and commercial insurers—on a tailored journey to eating well while saving time and money.

Foodsmart seamlessly integrates dietary assessments and nutrition counseling with online food ordering and cost-effective meal planning for the entire family, optimizing ingredients both at home and on the go. We partner with national and regional retailers across the U.S., many of whom accept SNAP / EBT, making healthier food more accessible. Additionally, we assist members with SNAP enrollment and management, providing tangible access to nutritious food.In 2024, Foodsmart secured a $200 million investment from TPG’s Rise Fund, which supports entrepreneurs dedicated to achieving the United Nations’ Sustainable Development Goals. This investment will help us expand our reach, particularly to low-income workers who are disproportionately affected by diet-related diseases.

At Foodsmart, our mission is to make nutritious food accessible and affordable for everyone, regardless of economic status. We are committed to a set of core values that shape our culture and work environment :

⚖️ Measured :

We make data-driven, truth-seeking decisions.

Impactful :

We are fueled by achieving our mission and vision.

Collaborative :

We help each other be better and create a positive environment.

Hungry :

We maintain a healthy growth mindset, seeking to overcome challenges with courage.

Joyful :

We take joy in each other, our work, and the privilege of doing this work.

Whether you're a dietitian, a commercial leader, or a technologist, working at Foodsmart means being part of a team that is passionate, supportive, and driven by a shared purpose. Join us in transforming the way people access and enjoy healthy food.

About the role :

We are seeking an Application Security Engineer who will work at the intersection of security, DevOps, and development to ensure security is embedded throughout our SDLC. This role requires deep technical expertise in secure code review, static and dynamic application security testing (SAST / DAST), and infrastructure governance, especially in the segregation of environments, separation of duties, and branch protection in source control systems.

You will :

Code & Application Security

Conduct manual and automated code reviews to identify security vulnerabilities (e.g., XSS, SQLi, logic flaws).

Define and implement SAST and DAST pipelines using tools such as SNYK, Checkmarx, Fortify, OWASP ZAP, or Burp Suite.

Collaborate with development teams to remediate vulnerabilities and educate on secure coding standards (e.g., OWASP Top 10).

DevSecOps & CI / CD Pipeline Security

Integrate security controls into CI / CD pipelines using tools like GitHub Actions, Jenkins, and GitLab CI.

Define and enforce branch protection rules, code signing, and commit validation policies (e.g., mandatory code reviews, signed commits).

Work closely with DevOps to ensure security-as-code is implemented across build, test, and deployment stages.

Infrastructure & Environment Segregation

Ensure proper segregation between development, staging, and production environments, following least privilege principles.

Collaborate with infra and cloud teams to enforce network and access segregation (e.g., VPC segmentation, IAM policies).

Governance & Policy Enforcement

Define and monitor separation of duties policies between developers, testers, and deployers.

Create security baselines and compliance checks (e.g., CIS Benchmarks, SOC 2 / ISO 27001 readiness).

Set up auditing and alerting for anomalous activities in source control and deployment platforms.

Tooling & Automation

Deploy and maintain security tools (e.g., GitGuardian, Aqua, Prisma Cloud) to detect hard coded secrets, policy violations, and misconfigurations.

Automate remediation workflows where possible (e.g., auto-patching vulnerable dependencies).

You have :

7-10 years in Security Architecture, AppSec, or a combined development and security engineering role.

Strong hands-on experience in secure coding, application security testing, and source code analysis.

Solid knowledge of CI / CD pipelines, version control (especially GitHub / GitLab), and branch control strategies.

Familiarity with cloud platforms (AWS, Azure, GCP) and security practices for each.

In-depth understanding of network security, access controls, and zero trust architecture.

Practical knowledge of regulatory or compliance frameworks (e.g., ISO 27001, SOC 2, NIST).

Preferred Qualifications

Experience working with Infrastructure as Code (IaC) tools (e.g., Terraform, CloudFormation) with embedded security checks.

Familiarity with container security (Docker, Kubernetes, image scanning).

Certifications : OSCP, CSSLP, CEH, GSEC, or AWS Security Specialty.

Contributions to open-source security tools or projects is a plus.

Key KPIs / Metrics of Success

Time-to-remediate for identified vulnerabilities.

Percentage of pipelines with integrated SAST / DAST.

Number of policy violations prevented via branch rules and access controls.

Coverage of secure coding training among developers.

  • Sign on bonus offered for immediate joiners
Create a job alert for this search

Application Security Engineer • Dehra Dun, Uttarakhand, India

Related jobs
  • Promoted
Senior Application Support Engineer

Senior Application Support Engineer

Zellerdehradun, India
At Zeller, we’re champions for businesses of all sizes, and proud to be a fast-growing Australian scale-up taking on the ambitious goal of reimagining business banking and payments.We believe in a ...Show moreLast updated: 9 days ago
  • Promoted
AppScan Product _Sr. Performance Engineer _Remote Location

AppScan Product _Sr. Performance Engineer _Remote Location

HCLSoftwaredehradun, India
Remote
HCL Software” : - Is a Product Development Division of HCL Tech : That operates its primary Software business.At HCL Software we Develop, Market, Sell and Support over 20 Product families in the area...Show moreLast updated: 9 days ago
  • Promoted
Security & Compliance IT Specialist / Engineer

Security & Compliance IT Specialist / Engineer

aecc - digital innovation hubdehradun, India
Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 6 days ago
  • Promoted
Sr. Lead - Cloud Security

Sr. Lead - Cloud Security

Sycamore Informatics Inc.dehradun, India
Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 7 days ago
  • Promoted
Procurement Officer

Procurement Officer

V-GuardHaridwar, Uttarakhand, India
The role is responsible for ensuring the.The position also involves handling.MRO, asset purchases, and factory-based procurement requirements. Vendor Management & Expediting.Engage proactively with ...Show moreLast updated: 16 days ago
  • Promoted
Mobile Application Developer

Mobile Application Developer

Vaisesikadehradun, India
Vaisesika is Hiring : Mobile Application Developer.Vaisesika is looking for a skilled Mobile Application Developerto design, develop, and maintain high-quality mobile applications.The ideal candidat...Show moreLast updated: 9 days ago
  • Promoted
Applications Engineer

Applications Engineer

Sikich Indiadehradun, India
Sikich India is seeking an Applications Engineer who will be responsible for the design, development, and continuous improvement of Oracle Cloud applications and related systems.This role works und...Show moreLast updated: 9 days ago
  • Promoted
Contractor Security Engineer Level 3 – GRC Tech Solutions

Contractor Security Engineer Level 3 – GRC Tech Solutions

Mindlancedehradun, India
Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 8 days ago
  • Promoted
Cyber Security Architect

Cyber Security Architect

Tata Consultancy Servicesdehradun, India
In depth knowledge of IAM for AWS.Architect and automate the management of AWS Cloud IAM services.Support the Identity and Access Management team within the Technology Risk & Information Security O...Show moreLast updated: 9 days ago
  • Promoted
Lead Network Engineer (Azure & On-premise, Network Security, 8+ years Exp, Remote Job)

Lead Network Engineer (Azure & On-premise, Network Security, 8+ years Exp, Remote Job)

Client of Prasha Consultancy Services Private Limiteddehradun, India
Remote
Immediate or Early Joiners Only.A US Based IT MNC is looking for Lead Network Engineer for one of their Banking Client.Client is looking for an expert in Manage / Support – firewalls, Checkpoint secu...Show moreLast updated: 9 days ago
  • Promoted
Desktop Support Engineer - Haridwar

Desktop Support Engineer - Haridwar

ITC InfotechHaridwar, Uttarakhand, India
Location : Haridwar, Uttarakhand.Installation and configuration of Windows 10 / 11 OS.Troubleshooting and resolving OS-related issues. User support and issue resolution.Provide first-level support for ...Show moreLast updated: 16 days ago
  • Promoted
Mobile Application Developer

Mobile Application Developer

Auzmordehradun, India
We are looking for a passionate and skilled professional with.The ideal candidate should have strong technical expertise in Flutter development, a creative approach to problem-solving, and excellen...Show moreLast updated: 3 days ago
  • Promoted
Sr Threat Detection Engineer

Sr Threat Detection Engineer

Insight Globaldehradun, uttarakhand, in
Exact compensation may vary based on several factors, including skills, experience, and education.Benefit packages for this role will start on the 31st day of employment and include medical, dental...Show moreLast updated: 8 days ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

CBTSdehradun, India
Senior level roles as IT Security Architect, IT Security Engineer, IT Security Auditor, Cyber-Security Analyst, Cyber-Intelligence Analyst. Certifications, Accreditations, Licenses.One or more of th...Show moreLast updated: 7 days ago
  • Promoted
Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

Lead Network & Security Engineer (Hyperscalers – OCI / GCP)

Cloud4C Servicesdehradun, India
Gartner’s Magic Quadrant (2021), is a leading automation-driven Cloud Managed Services Provider (MSP).We specialize in multi-cloud migration, management, and disaster recovery with zero data loss g...Show moreLast updated: 9 days ago
  • Promoted
Senior Security Architect

Senior Security Architect

Dautomdehradun, India
Role : Senior Security Architect.Location : Offshore, India (Remote).You’ll drive end-to-end security design across platforms, lead threat modeling and control gap assessments, oversee IT security r...Show moreLast updated: 5 days ago
  • Promoted
Mission Design Engineer

Mission Design Engineer

Dhruva SpaceDehradun, Uttarakhand, India
Role overview and responsibilities : .Dhruva Space is seeking a skilled Mission Design Engineer to design and optimize satellite missions for next-generation space applications.The role involves work...Show moreLast updated: 4 days ago
  • Promoted
OT Device and App Survey consultant

OT Device and App Survey consultant

TESTQ TechnologiesRoorkee, Uttarakhand, India
Job Description : - Contract Duration : 4 weeks, starting from 1 December 2025.Open Positions : 4 (2 Senior | 2 Junior) Pay Rate : ₹4000 per day + Travel & Accommodation Provided Position Summary Th...Show moreLast updated: 13 days ago