Talent.com
Security Engineer III
Security Engineer IIICME Group • vadodara, gujarat, in
No longer accepting applications
Security Engineer III

Security Engineer III

CME Group • vadodara, gujarat, in
7 days ago
Job description

The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application security assessments (application pentests) and communicating security findings to the developers and QA teams. Additionally, the individual will provide application design support and security best practice guidance, in the form of consultations, to various development teams and business stakeholders. This individual will also actively promote security through engaging interactive workshops and exercises, such as internal Capture The Flag (CTF) events.

Principal Accountabilities

  • Serve as the primary application security expert for development teams, offering security consulting and best practice guidance throughout the Software Development Life Cycle (SDLC).
  • Perform manual security assessments at key points in the SDLC.
  • Produce documentation (reports) and present findings of manual security assessments to various stakeholders, including senior leadership.
  • Participate in security architecture reviews and threat modelling.
  • Contribute to automation initiatives, including the integration of new security tools and processes (e.g., AI).
  • Demonstrate a commitment to continuous education and staying current within the application security domain, promoting collaboration and knowledge sharing.

Skills Requirements

  • 5+ years experience with industry standard penetration testing, or ability to demonstrate equivalent knowledge.
  • Expertise performing blackbox / greybox / whitebox security assessments of applications (e.g., web applications, APIs, thick clients, web sockets) which use HTTP and / or proprietary protocols.
  • Expert level skills with application security testing tools including : Burpsuite, sqlmap, nmap, etc.
  • Experience performing manual reviews of application source code for security vulnerabilities written in various languages including : Java, Javascript, .Net (C#), etc.
  • Experience with Cloud architectures, security principles and services. Google Cloud Platform (GCP) is preferred.
  • Experience with automating security testing and / or other relevant activities to streamline service delivery. Preferred scripting languages : Python, bash, Powershell, etc.
  • Experience with UNIX or Linux.
  • A self-starter who is highly motivated. Proactively seek answers, ask for help when needed, and communicate solutions.
  • Excellent Oral and Written communications skills. Ability to effectively communicate and interface with peers and stakeholders at all levels, including senior leadership.
  • Nice To Have

  • Experience in securing modern APIs, including knowledge of authentication / authorization standards like OAuth 2.0 and JWT, and understanding API-specific vulnerabilities.
  • Experience in conducting formal threat modeling using frameworks like STRIDE to identify potential security flaws in the design phase.
  • Experience with AI / ML security testing methodologies, including understanding of OWASP Top 10 for Large Language Models (LLMs) and common AI security vulnerabilities, and using AI to improve pentesting.
  • Experience with prior development work.
  • Experience with application reverse engineering and using tools such as : Java decompilers, .Net decompilers, IDAPro, etc.
  • Experience with Capture The Flag (CTF) competitions and bug bounty programs.
  • Relevant industry certifications such as OSCP, eWPTX, CCSP, GCP Professional Cloud Security Engineer, etc.
  • Create a job alert for this search

    Security Engineer • vadodara, gujarat, in

    Related jobs
    Senior Network Security Engineer

    Senior Network Security Engineer

    NanoInfomatrix • Anand, IN
    Nano Infomatrix LLC is seeking an experienced .Senior Network Security Engineer.The ideal candidate will have hands-on architect, and setup expertise in network and security technologies, including...Show more
    Last updated: 7 hours ago • Promoted • New!
    TAVS Tech Cyber Security Specialist / Engineer | Pune | Immediate

    TAVS Tech Cyber Security Specialist / Engineer | Pune | Immediate

    DigiHelic Solutions Pvt. Ltd. • Vadodara, IN
    Title : TAVS Tech Cyber Security Specialist.Vault & Privileged Access Management (Core Requirement).HashiCorp Enterprise Vault (preferred). Experience building, deploying, and maintaining Vault clust...Show more
    Last updated: 1 day ago • Promoted
    AI Security Lead

    AI Security Lead

    Delphi Consulting Middle East • Vadodara, IN
    Join Delphi - Where Innovation meets transformation.At Delphi, we believe in creating an environment where our people thrive. We are committed to supporting your personal goals, family, and overall ...Show more
    Last updated: 5 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Sphera • Vadodara, IN
    Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show more
    Last updated: 11 days ago • Promoted
    Security Compliance Engineer

    Security Compliance Engineer

    ImageKit.io • Vadodara, IN
    As long as you have a stable internet connection, you can work from anywhere in the world.We do meet up if you are in Delhi NCR or on our company trips. Have you ever ordered with Swiggy or BigBaske...Show more
    Last updated: 5 days ago • Promoted
    Sap Security

    Sap Security

    TalentBridge • Vadodara, IN
    Sap Security – Finance (SAP S / 4HANA Security).Months of Contract (With high possibility of Full Time).We are seeking an experienced SAP S / 4 Security Specialist with strong expertise in designing, b...Show more
    Last updated: 1 day ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcana • Vadodara, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
    Last updated: 30+ days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.ai • Vadodara, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    CareerUS Solutions • Nadiad, IN
    Cyber Security Engineer – Job Description.The Cyber Security Engineer is responsible for designing, implementing, and maintaining security systems to protect the organization’s computer networks, a...Show more
    Last updated: 11 days ago • Promoted
    Security (DevSecOps)and QA (Automation)

    Security (DevSecOps)and QA (Automation)

    PioVation GmbH • Vadodara, IN
    If you care about European-grade safety, quality, and compliance, read on.Senior Security Engineer (DevSecOps).Application & cloud security (threat modeling, secure SDLC).Kubernetes security (netwo...Show more
    Last updated: 21 days ago • Promoted
    AKS Container Security Engineer

    AKS Container Security Engineer

    Xsell Resources • Vadodara, IN
    We are urgently seeking a Certified CKA / CKS Senior AKS Container Security Engineer for our healthcare client.Open to Immediate joiners only. We are seeking a highly skilled AKS (Azure Kubernetes Ser...Show more
    Last updated: 1 day ago • Promoted
    CipherTrust Engineer

    CipherTrust Engineer

    Capgemini • Vadodara, IN
    We are seeking a skilled and experienced professional in.Encryption, Key Management, and Cryptography.Vormetric Data Security Manager (DSM). Onboard applications, databases, and storage platforms in...Show more
    Last updated: 21 days ago • Promoted
    Engineer - ELV

    Engineer - ELV

    L&T Construction • Vadodara, IN
    To supervise and execute ELV system installation work at the project site including CCTV, fire alarm, public address, access control, and data networking systems. The role involves managing skilled ...Show more
    Last updated: 9 days ago • Promoted
    Associate Engineer - Managed Security Services

    Associate Engineer - Managed Security Services

    Indus face Private Limited • Vadodara
    Description : As an Associate Engineer, Managed Security Services you will be responsible for the delivery of Security Management and Monitoring se...Show more
    Last updated: 14 days ago • Promoted
    Cyber Security Engineer with Splunk

    Cyber Security Engineer with Splunk

    IntraEdge • Anand, IN
    This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show more
    Last updated: 30+ days ago • Promoted
    Security Operations Engineer

    Security Operations Engineer

    ITPeopleNetwork • Nadiad, IN
    We are looking for a junior to mid-level.Saviynt Identity Access Management (IAM / IGA).CyberArk Endpoint Privilege Manager (EPM). The ideal candidate will assist in user access governance, email thre...Show more
    Last updated: 3 days ago • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India) • vadodara, gujarat, in
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show more
    Last updated: 30+ days ago • Promoted
    Azure Security Trainer

    Azure Security Trainer

    Vindal Tech • Vadodara, IN
    Vindal Tech powered by SSMTS Company is hiring a high-impact Azure Cloud & Security Trainer to lead advanced, industry-aligned training programs that prepare learners for real-world cloud security ...Show more
    Last updated: 1 hour ago • Promoted • New!