Talent.com
Application Security Specialist

Application Security Specialist

ValueLabsHyderabad, Republic Of India, IN
10 days ago
Job description
  • This is a deeply technical, hands-on leadership role for a seasoned penetration tester. You will not just run scans;
  • you will architect our security testing strategy from the ground up, conduct sophisticated manual penetration tests, and serve as the expert consultant to all engineering teams on how to build secure code. You will be responsible for breaking our systems before the bad guys do, safeguarding our assets, our clients' assets, and our reputation.

    ## 2. Key Responsibilities

    • Lead Offensive Security and Penetration Testing :
    • Architect and own the end-to-end security testing strategy, including manual penetration testing, dynamic application security testing (DAST), and static application security testing (SAST).
    • Conduct hands-on, expert-level penetration tests against our web applications, APIs, mobile apps, and cloud infrastructure, focusing on the OWASP Top 10 and financial-specific attack vectors.
    • Cloud and Infrastructure Security Assessment :
    • Lead security reviews and configuration audits of our cloud environment (AWS / GCP / Azure) and our Kubernetes (K8s) infrastructure.
    • Analyze our Infrastructure as Code (Terraform) for security misconfigurations and vulnerabilities.
    • Smart Contract Security Review :
    • Collaborate with the blockchain engineering team to conduct internal security reviews of smart contracts, identifying potential vulnerabilities before they go to external audit.
    • Review systems for financial logic flaws, such as reward-spoofing or withdrawal validation issues.
    • Vulnerability Management and Remediation Guidance :
    • Triage, validate, and prioritize vulnerabilities discovered through testing.
    • Work directly with development teams to provide clear, actionable guidance on remediation and re-test fixes to ensure they are effective.
    • Automate and Integrate Security Testing :
    • Lead the effort to integrate automated security testing tools and checks into our CI / CD pipelines, enabling a DevSecOps culture.
    • ## 3. Required Qualifications

      ###

    • Must-Have :
    • Professional Experience :
    • 4+ years of experience in a dedicated cybersecurity role, with a minimum of 4+ years focused on hands-on offensive security and penetration testing.
    • Penetration Testing Mastery :
    • Expert-level proficiency with industry-standard penetration testing tools (e.G., Burp Suite Pro, Metasploit, Nmap) and methodologies.
    • Application Security Expertise :
    • Deep knowledge of web and mobile application security, API security, and the OWASP Top 10 vulnerabilities.
    • Cloud & Container Security :
    • Proven experience performing security assessments of cloud environments and containerized / Kubernetes workloads.
    • Offensive Security Certification :
    • At least one high-level offensive security certification is required, such as
    • OSCP, OSCE, GXPN, or GPEN
    • Systems Thinking :
    • A strong ability to understand complex, distributed systems and reason about where security weaknesses are likely to exist.
    • ###

    • Nice-to-Have (Highly Desirable) :
    • Financial Services / FinTech Experience :
    • Direct experience testing banking, trading, or payment platforms, with an understanding of financial fraud and attack vectors.
    • Smart Contract Auditing :
    Create a job alert for this search

    Application Specialist • Hyderabad, Republic Of India, IN

    Related jobs
    • Promoted
    Web Application Security Specialist

    Web Application Security Specialist

    Tata Consultancy ServicesHyderabad, Republic Of India, IN
    WAF (Web Application Firewall).Primary Skills – Expert level experience in Web Application Firewall (F5 or Cloudflare).Secondary Skills-Firewall administration & Management (Palo alto, FortiGate, C...Show moreLast updated: 21 days ago
    Senior Application Security Engineer

    Senior Application Security Engineer

    Practical DevSecOpsHyderabad, India, India
    Remote
    Quick Apply
    Permanent(Full Time / Full-Time).We are seeking an Application Security Engineer to join our team and help maintain, enhance, and develop security training exercises for our renowned DevSecOps, API S...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Architect

    Application Security Architect

    ValueLabsHyderabad, Republic Of India, IN
    We have an urgent requirement for a ".Please find below the job description for your reference.As the Senior Security Test Engineer, you will be the lead offensive security expert responsible for p...Show moreLast updated: 9 days ago
    • Promoted
    Senior Application Security Engineer (Ai)

    Senior Application Security Engineer (Ai)

    BackbaseHyderabad, Republic Of India, IN
    Backbase has ushered in a new era of digital banking with the global launch of its AI-powered Banking Platform, recently lighting up Times Square. This milestone marks a bold step in reshaping the d...Show moreLast updated: 30+ days ago
    • Promoted
    Workday Security and QA Specialist

    Workday Security and QA Specialist

    Tekshiras Software Services Private LimitedHyderabad, Republic Of India, IN
    Job Title : Workday Security Analyst (with QA Experience).Shift Timing : 2 PM IST – 11 PM IST.We are looking for talented professionals with hands-on experience in Workday Security and QA processes.T...Show moreLast updated: 8 days ago
    • Promoted
    VP, Application Security & Penetration Testing

    VP, Application Security & Penetration Testing

    NopalCyberHyderabad, Republic Of India, IN
    As VP / AVP – Offensive security services, you will provide strategic and technical leadership for NopalCyber’s Offensive Security practice. You will lead and evolve core services such as Penetration ...Show moreLast updated: 21 days ago
    • Promoted
    Workday Security Analyst (with QA Experience)

    Workday Security Analyst (with QA Experience)

    Tekshiras Software Services Private LimitedHyderabad, Telangana, India
    Job Title : Workday Security Analyst (with QA Experience).Shift Timing : 2 PM IST – 11 PM IST.We are looking for talented professionals with hands-on experience in Workday Security and QA processes.T...Show moreLast updated: 7 days ago
    • Promoted
    Application Security Engineer II - SAST / DAST

    Application Security Engineer II - SAST / DAST

    PhenomHyderabad
    About the job : What Youll Do : - Research, identify and analyze and triage vulnerabilities that could affect Phenom ITX Platf...Show moreLast updated: 21 days ago
    • Promoted
    Workday Security Analyst (With Qa Experience)

    Workday Security Analyst (With Qa Experience)

    Tekshiras Software Services Private LimitedHyderabad, Republic Of India, IN
    Job Title : Workday Security Analyst (with QA Experience).Shift Timing : 2 PM IST – 11 PM IST.We are looking for talented professionals with hands-on experience in Workday Security and QA processes.T...Show moreLast updated: 7 days ago
    • Promoted
    Zensar Technologies - Application Security Risk Architect - SAST / DAST

    Zensar Technologies - Application Security Risk Architect - SAST / DAST

    Zensar TechnologiesHyderabad
    Job Title : Application Security Risk Architect Experience : 7 - 9 Job Description <...Show moreLast updated: 30+ days ago
    • Promoted
    Offensive Security Lead

    Offensive Security Lead

    ValueLabsHyderabad, Republic Of India, IN
    This is a deeply technical, hands-on leadership role for a seasoned penetration tester.You will be responsible for breaking our systems before the bad guys do, safeguarding our assets, our clients'...Show moreLast updated: 10 days ago
    • Promoted
    YASH Technologies - Application Security Engineer - SIEM

    YASH Technologies - Application Security Engineer - SIEM

    YASH TechnologiesHyderabad
    Description : We are looking forward to hire Application Security Professionals in the following areas : <...Show moreLast updated: 22 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartHyderabad, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 19 days ago
    • Promoted
    Application Security Engineer II - SAST / DAST

    Application Security Engineer II - SAST / DAST

    Phenompeople Private LimitedHyderabad
    Job Requirements : What Youll Do : - Resear...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Application Security Engineer - AI

    Lead Application Security Engineer - AI

    BackbaseHyderabad, Republic Of India, IN
    Backbase has ushered in a new era of digital banking with the global launch of its AI-powered Banking Platform, recently lighting up Times Square. This milestone marks a bold step in reshaping the d...Show moreLast updated: 30+ days ago
    • Promoted
    Workday Security Configuration and QA Analyst

    Workday Security Configuration and QA Analyst

    Tekshiras Software Services Private LimitedHyderabad, Republic Of India, IN
    Job Title : Workday Security Analyst (with QA Experience).Shift Timing : 2 PM IST – 11 PM IST.We are looking for talented professionals with hands-on experience in Workday Security and QA processes.T...Show moreLast updated: 8 days ago
    • Promoted
    Senior Application Security Engineer (AI)

    Senior Application Security Engineer (AI)

    BackbaseHyderabad, Telangana, India
    Backbase has ushered in a new era of digital banking with the global launch of its AI-powered Banking Platform, recently lighting up Times Square. This milestone marks a bold step in reshaping the d...Show moreLast updated: 30+ days ago
    • Promoted
    SonarQube Security Specialist

    SonarQube Security Specialist

    ValueLabsHyderabad, Republic Of India, IN
    Experience with SonarQube installation, upgrades, and administration Strong knowledge of quality gates, rule management, and coding standards enforcement. Expertise in integrating SonarQube with CI / ...Show moreLast updated: 14 days ago