Talent.com
No longer accepting applications
Security Engineer III

Security Engineer III

CME GroupDelhi, Delhi, India
1 day ago
Job description

The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application security assessments (application pentests) and communicating security findings to the developers and QA teams. Additionally, the individual will provide application design support and security best practice guidance, in the form of consultations, to various development teams and business stakeholders. This individual will also actively promote security through engaging interactive workshops and exercises, such as internal Capture The Flag (CTF) events.

Principal Accountabilities

Serve as the primary application security expert for development teams, offering security consulting and best practice guidance throughout the Software Development Life Cycle (SDLC).

Perform manual security assessments at key points in the SDLC.

Produce documentation (reports) and present findings of manual security assessments to various stakeholders, including senior leadership.

Participate in security architecture reviews and threat modelling.

Contribute to automation initiatives, including the integration of new security tools and processes (e.g., AI).

Demonstrate a commitment to continuous education and staying current within the application security domain, promoting collaboration and knowledge sharing.

Skills Requirements

5+ years experience with industry standard penetration testing, or ability to demonstrate equivalent knowledge.

Expertise performing blackbox / greybox / whitebox security assessments of applications (e.g., web applications, APIs, thick clients, web sockets) which use HTTP and / or proprietary protocols.

Expert level skills with application security testing tools including : Burpsuite, sqlmap, nmap, etc.

Experience performing manual reviews of application source code for security vulnerabilities written in various languages including : Java, Javascript, .Net (C#), etc.

Experience with Cloud architectures, security principles and services. Google Cloud Platform (GCP) is preferred.

Experience with automating security testing and / or other relevant activities to streamline service delivery. Preferred scripting languages : Python, bash, Powershell, etc.

Experience with UNIX or Linux.

A self-starter who is highly motivated. Proactively seek answers, ask for help when needed, and communicate solutions.

Excellent Oral and Written communications skills. Ability to effectively communicate and interface with peers and stakeholders at all levels, including senior leadership.

Nice To Have

Experience in securing modern APIs, including knowledge of authentication / authorization standards like OAuth 2.0 and JWT, and understanding API-specific vulnerabilities.

Experience in conducting formal threat modeling using frameworks like STRIDE to identify potential security flaws in the design phase.

Experience with AI / ML security testing methodologies, including understanding of OWASP Top 10 for Large Language Models (LLMs) and common AI security vulnerabilities, and using AI to improve pentesting.

Experience with prior development work.

Experience with application reverse engineering and using tools such as : Java decompilers, .Net decompilers, IDAPro, etc.

Experience with Capture The Flag (CTF) competitions and bug bounty programs.

Relevant industry certifications such as OSCP, eWPTX, CCSP, GCP Professional Cloud Security Engineer, etc.

Create a job alert for this search

Security Engineer • Delhi, Delhi, India

Related jobs
  • Promoted
Security Engineer

Security Engineer

InfogainDelhi, India
Title : Security Engineer (6+ Years).Job Description : Use CrowdStrike reports to evaluate all security vulnerabilities on both Windows and Linux systems. Analyze the requirements to remediate the sec...Show moreLast updated: 28 days ago
  • Promoted
Security Engineer [T500-20670]

Security Engineer [T500-20670]

Delta Air LinesDelhi, India
About Delta Tech Hub : Delta Air Lines (NYSE : DAL) is the U.Powered by our employees around the world, Delta has for a decade led the airline industry in operational excellence while maintaining our...Show moreLast updated: 30+ days ago
  • Promoted
Security (DevSecOps)and QA (Automation)

Security (DevSecOps)and QA (Automation)

PioVation GmbHDelhi, IN
If you care about European-grade safety, quality, and compliance, read on.Senior Security Engineer (DevSecOps).Application & cloud security (threat modeling, secure SDLC).Kubernetes security (netwo...Show moreLast updated: 16 days ago
  • Promoted
Engineer I - Security [T500-21027]

Engineer I - Security [T500-21027]

lululemonDelhi, India
Setting the bar in technical fabrics and functional design, we create transformational products and experiences that support people in moving, growing, connecting, and being well.We owe our success...Show moreLast updated: 26 days ago
  • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

SpheraDelhi, IN
Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show moreLast updated: 5 days ago
  • Promoted
  • New!
Senior Security Engineer

Senior Security Engineer

RazorpayDelhi, India
Title : Senior Product Security Security Engineer.Razorpay is looking for a Senior Application Security Engineer with solid experience in AppSec fundamentals—secure code review, vulnerability discov...Show moreLast updated: 9 hours ago
  • Promoted
Senior Security Engineer – Cloud, AI & Application Security

Senior Security Engineer – Cloud, AI & Application Security

Symosis SecurityMeerut, IN
Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise wi...Show moreLast updated: 10 days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

ArcanaDelhi, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
  • Promoted
Lead Security Engineer

Lead Security Engineer

interface.aiMeerut, IN
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
  • Promoted
Product Security Engineer II

Product Security Engineer II

FICODelhi, India
Join our world-class team today and fulfill your career potential!.The Opportunity "As a Product Security Engineer II in Cyber Security, you will be supporting security governance for a wide set of...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer with Splunk

Cyber Security Engineer with Splunk

IntraEdgeDelhi, IN
This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show moreLast updated: 30+ days ago
  • Promoted
SecOps Engineer

SecOps Engineer

JosysDelhi, India
Security Operations (SecOps) Engineer Location : .Security & Compliance Reports to : .Engineering Manager – Platform & Security. About Josys Josys is on a mission to redefine enterprise IT operations th...Show moreLast updated: 15 days ago
  • Promoted
Information Security Engineer

Information Security Engineer

SodexoNew Delhi, Delhi, India
Operational security automation is the process of automating some or all aspects of SOC or VOC operations.Replacing manual workflows with automated ones. A fundamental building block of automation i...Show moreLast updated: 30+ days ago
  • Promoted
Cyber Security Engineer

Cyber Security Engineer

CareerUS SolutionsDelhi, IN
Cyber Security Engineer – Job Description.The Cyber Security Engineer is responsible for designing, implementing, and maintaining security systems to protect the organization’s computer networks, a...Show moreLast updated: 5 days ago
  • Promoted
  • New!
Security Engineer

Security Engineer

Tata Consultancy ServicesDelhi, India
Company : TCS Skill : PKI Experience : 5 to 12 Years Location : Hyderabad, Chennai, Bengaluru.Will be responsible for supporting public key infrastructure systems, both internally and externally Re...Show moreLast updated: 9 hours ago
  • Promoted
Security Engineer III

Security Engineer III

CME GroupDelhi, India
The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application securi...Show moreLast updated: 1 day ago
  • Promoted
Application Security Engineer

Application Security Engineer

FoodsmartDelhi, IN
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Security Engineer

Senior Security Engineer

First American (India)gurugram, uttar pradesh, in
The Senior Security Engineer will be responsible for designing and implementing the Database Activity Monitoring (DAM) function to ensure the security, integrity, and compliance of enterprise data ...Show moreLast updated: 15 hours ago