Talent.com
No longer accepting applications
Security Engineer Iii

Security Engineer Iii

CME GroupErnākulam, Republic Of India, IN
3 days ago
Job description

The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application security assessments (application pentests) and communicating security findings to the developers and QA teams. Additionally, the individual will provide application design support and security best practice guidance, in the form of consultations, to various development teams and business stakeholders. This individual will also actively promote security through engaging interactive workshops and exercises, such as internal Capture The Flag (CTF) events.

Principal Accountabilities

  • Serve as the primary application security expert for development teams, offering security consulting and best practice guidance throughout the Software Development Life Cycle (SDLC).
  • Perform manual security assessments at key points in the SDLC.
  • Produce documentation (reports) and present findings of manual security assessments to various stakeholders, including senior leadership.
  • Participate in security architecture reviews and threat modelling.
  • Contribute to automation initiatives, including the integration of new security tools and processes (e.G., AI).
  • Demonstrate a commitment to continuous education and staying current within the application security domain, promoting collaboration and knowledge sharing.

Skills Requirements

  • 5+ years experience with industry standard penetration testing, or ability to demonstrate equivalent knowledge.
  • Expertise performing blackbox / greybox / whitebox security assessments of applications (e.G., web applications, APIs, thick clients, web sockets) which use HTTP and / or proprietary protocols.
  • Expert level skills with application security testing tools including : Burpsuite, sqlmap, nmap, etc.
  • Experience performing manual reviews of application source code for security vulnerabilities written in various languages including : Java, Javascript, .Net (C#), etc.
  • Experience with Cloud architectures, security principles and services. Google Cloud Platform (GCP) is preferred.
  • Experience with automating security testing and / or other relevant activities to streamline service delivery. Preferred scripting languages : Python, bash, Powershell, etc.
  • Experience with UNIX or Linux.
  • A self-starter who is highly motivated. Proactively seek answers, ask for help when needed, and communicate solutions.
  • Excellent Oral and Written communications skills. Ability to effectively communicate and interface with peers and stakeholders at all levels, including senior leadership.
  • Nice To Have

  • Experience in securing modern APIs, including knowledge of authentication / authorization standards like OAuth 2.0 and JWT, and understanding API-specific vulnerabilities.
  • Experience in conducting formal threat modeling using frameworks like STRIDE to identify potential security flaws in the design phase.
  • Experience with AI / ML security testing methodologies, including understanding of OWASP Top 10 for Large Language Models (LLMs) and common AI security vulnerabilities, and using AI to improve pentesting.
  • Experience with prior development work.
  • Experience with application reverse engineering and using tools such as : Java decompilers, .Net decompilers, IDAPro, etc.
  • Experience with Capture The Flag (CTF) competitions and bug bounty programs.
  • Relevant industry certifications such as OSCP, eWPTX, CCSP, GCP Professional Cloud Security Engineer, etc.
  • Create a job alert for this search

    Security Engineer • Ernākulam, Republic Of India, IN

    Related jobs
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    SpheraKochi, IN
    Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show moreLast updated: 8 days ago
    • Promoted
    L2 Security Analyst- SOC Advanced

    L2 Security Analyst- SOC Advanced

    Art Technology and SoftwareKochi, Kerala, India
    Job Title : Infosec L2 Security Analyst (Security Operations Center - Advanced).Location : From Kochi Office (Onsite).The L2 Security Analyst is responsible for performing advanced incident analysis,...Show moreLast updated: 30+ days ago
    • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India)ernakulam, kerala, in
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 30+ days ago
    • Promoted
    Art Technology and Software - Lead VAPT Engineer - Cyber Security & Risk Management

    Art Technology and Software - Lead VAPT Engineer - Cyber Security & Risk Management

    Art Technology and Software India (PVT) Ltd.Cochin
    Description : Senior offensive security professional responsible for leading end-to-end VAPT programs and executing advanced red-team exercises to assess organization...Show moreLast updated: 1 day ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    CareerUS SolutionsKottayam, IN
    Cyber Security Engineer – Job Description.The Cyber Security Engineer is responsible for designing, implementing, and maintaining security systems to protect the organization’s computer networks, a...Show moreLast updated: 8 days ago
    • Promoted
    Senior Security Operations Centre Engineer

    Senior Security Operations Centre Engineer

    ConfidentialIndia, Cochin / Kochi / Ernakulam
    Senior Security Operations Centre Engineer / Technical Manager (L3).SOC operations for a global enterprise client.The role involves advanced incident handling, detection engineering, automation, an...Show moreLast updated: 22 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiKottayam, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer – Cloud, AI & Application Security

    Senior Security Engineer – Cloud, AI & Application Security

    Symosis SecurityKochi, IN
    Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise wi...Show moreLast updated: 13 days ago
    • Promoted
    CipherTrust Engineer

    CipherTrust Engineer

    CapgeminiKottayam, IN
    We are seeking a skilled and experienced professional in.Encryption, Key Management, and Cryptography.Vormetric Data Security Manager (DSM). Onboard applications, databases, and storage platforms in...Show moreLast updated: 18 days ago
    • Promoted
    • New!
    Security Operations Engineer

    Security Operations Engineer

    ITPeopleNetworkKochi, IN
    We are looking for a junior to mid-level.Saviynt Identity Access Management (IAM / IGA).CyberArk Endpoint Privilege Manager (EPM). The ideal candidate will assist in user access governance, email thre...Show moreLast updated: 18 hours ago
    • Promoted
    Senior Cloud Security Specialist

    Senior Cloud Security Specialist

    ACL Digitalmount, kerala, in
    We are a leading organization in the field of information security, dedicated to protecting our clients' data and ensuring their digital safety. Our mission is to provide innovative security solutio...Show moreLast updated: 17 days ago
    • Promoted
    Security Compliance Engineer

    Security Compliance Engineer

    ImageKit.ioKochi, IN
    As long as you have a stable internet connection, you can work from anywhere in the world.We do meet up if you are in Delhi NCR or on our company trips. Have you ever ordered with Swiggy or BigBaske...Show moreLast updated: 2 days ago
    • Promoted
    IP / SOC Verification Engineer

    IP / SOC Verification Engineer

    ACL DigitalKochi, IN
    IP / SS / SoC Verification Engineer (Hybrid – Bangalore / Hyderabad).The role involves hands-on contribution to.IP, Sub-system, and SoC-level verification. SystemVerilog / UVM-based verification environme...Show moreLast updated: 18 days ago
    • Promoted
    • New!
    Forward-Deployed Cybersecurity Software Engineer

    Forward-Deployed Cybersecurity Software Engineer

    Arambh Labskochi, kerala, in
    Cybersecurity is broken — slow response, legacy tools, and disconnected systems leave enterprises blind to threats.We’re building something different : . Forward-Deployed Cybersecurity Software Engine...Show moreLast updated: 15 hours ago
    • Promoted
    Cisco ISE Engineer

    Cisco ISE Engineer

    StarOne ITKochi, Kerala, India
    Cisco Identity Services Engine (ISE).If you have a strong background in network security and a passion for solving complex challenges, this role is for you!. This is a full-time, in-office role base...Show moreLast updated: 3 days ago
    • Promoted
    AI Security Lead

    AI Security Lead

    Delphi Consulting Middle EastKochi, IN
    Join Delphi - Where Innovation meets transformation.At Delphi, we believe in creating an environment where our people thrive. We are committed to supporting your personal goals, family, and overall ...Show moreLast updated: 2 days ago
    • Promoted
    Security Analyst - VAPT

    Security Analyst - VAPT

    Soffit Infrastructure Services (P) LtdKochi, Kerala, India
    The Security Testing Engineer will be responsible for executing end-to-end security testing assignments, including vulnerability assessment, penetration testing, secure code reviews, and configurat...Show moreLast updated: 18 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaKochi, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago