Talent.com
Application Security Engineer

Application Security Engineer

FoodsmartDavanagere, IN
22 days ago
Job description

About us :

Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians. Our platform is designed to foster healthier food choices, drive lasting behavior change, and deliver long-term health outcomes. Through our highly personalized, digital platform, we guide our 2.2 million members—including those in employer-sponsored health plans, regional and national Medicaid managed care organizations, Medicare Advantage plans, and commercial insurers—on a tailored journey to eating well while saving time and money.

Foodsmart seamlessly integrates dietary assessments and nutrition counseling with online food ordering and cost-effective meal planning for the entire family, optimizing ingredients both at home and on the go. We partner with national and regional retailers across the U.S., many of whom accept SNAP / EBT, making healthier food more accessible. Additionally, we assist members with SNAP enrollment and management, providing tangible access to nutritious food.In 2024, Foodsmart secured a $200 million investment from TPG’s Rise Fund, which supports entrepreneurs dedicated to achieving the United Nations’ Sustainable Development Goals. This investment will help us expand our reach, particularly to low-income workers who are disproportionately affected by diet-related diseases.

At Foodsmart, our mission is to make nutritious food accessible and affordable for everyone, regardless of economic status. We are committed to a set of core values that shape our culture and work environment :

⚖️ Measured : We make data-driven, truth-seeking decisions.

💥 Impactful : We are fueled by achieving our mission and vision.

🙏 Collaborative : We help each other be better and create a positive environment.

📈 Hungry : We maintain a healthy growth mindset, seeking to overcome challenges with courage.

😊 Joyful : We take joy in each other, our work, and the privilege of doing this work.

Whether you're a dietitian, a commercial leader, or a technologist, working at Foodsmart means being part of a team that is passionate, supportive, and driven by a shared purpose. Join us in transforming the way people access and enjoy healthy food.

About the role :

We are seeking an Application Security Engineer who will work at the intersection of security, DevOps, and development to ensure security is embedded throughout our SDLC. This role requires deep technical expertise in secure code review, static and dynamic application security testing (SAST / DAST), and infrastructure governance, especially in the segregation of environments, separation of duties, and branch protection in source control systems.

You will :

Code & Application Security

  • Conduct manual and automated code reviews to identify security vulnerabilities (e.g., XSS, SQLi, logic flaws).
  • Define and implement SAST and DAST pipelines using tools such as SNYK, Checkmarx, Fortify, OWASP ZAP, or Burp Suite.
  • Collaborate with development teams to remediate vulnerabilities and educate on secure coding standards (e.g., OWASP Top 10).

DevSecOps & CI / CD Pipeline Security

  • Integrate security controls into CI / CD pipelines using tools like GitHub Actions, Jenkins, and GitLab CI.
  • Define and enforce branch protection rules, code signing, and commit validation policies (e.g., mandatory code reviews, signed commits).
  • Work closely with DevOps to ensure security-as-code is implemented across build, test, and deployment stages.
  • Infrastructure & Environment Segregation

  • Ensure proper segregation between development, staging, and production environments, following least privilege principles.
  • Collaborate with infra and cloud teams to enforce network and access segregation (e.g., VPC segmentation, IAM policies).
  • Governance & Policy Enforcement

  • Define and monitor separation of duties policies between developers, testers, and deployers.
  • Create security baselines and compliance checks (e.g., CIS Benchmarks, SOC 2 / ISO 27001 readiness).
  • Set up auditing and alerting for anomalous activities in source control and deployment platforms.
  • Tooling & Automation

  • Deploy and maintain security tools (e.g., GitGuardian, Aqua, Prisma Cloud) to detect hard coded secrets, policy violations, and misconfigurations.
  • Automate remediation workflows where possible (e.g., auto-patching vulnerable dependencies).
  • You have :

  • 7-10 years in Security Architecture, AppSec, or a combined development and security engineering role.
  • Strong hands-on experience in secure coding, application security testing, and source code analysis.
  • Solid knowledge of CI / CD pipelines, version control (especially GitHub / GitLab), and branch control strategies.
  • Familiarity with cloud platforms (AWS, Azure, GCP) and security practices for each.
  • In-depth understanding of network security, access controls, and zero trust architecture.
  • Practical knowledge of regulatory or compliance frameworks (e.g., ISO 27001, SOC 2, NIST).
  • Preferred Qualifications

  • Experience working with Infrastructure as Code (IaC) tools (e.g., Terraform, CloudFormation) with embedded security checks.
  • Familiarity with container security (Docker, Kubernetes, image scanning).
  • Certifications : OSCP, CSSLP, CEH, GSEC, or AWS Security Specialty.
  • Contributions to open-source security tools or projects is a plus.
  • Key KPIs / Metrics of Success

  • Time-to-remediate for identified vulnerabilities.
  • Percentage of pipelines with integrated SAST / DAST.
  • Number of policy violations prevented via branch rules and access controls.
  • Coverage of secure coding training among developers.
  • Sign on bonus offered for immediate joiners
  • Create a job alert for this search

    Application Security Engineer • Davanagere, IN

    Related jobs
    • Promoted
    Cyber Security Engineer with Splunk

    Cyber Security Engineer with Splunk

    IntraEdgeShimoga, IN
    This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show moreLast updated: 30+ days ago
    • Promoted
    Illumio- Zero Trust Microsegmentation

    Illumio- Zero Trust Microsegmentation

    CareerXperts ConsultingDavanagere, IN
    Hiring : Manager - Zero Trust Microsegmentation.Bengaluru | 💼 5+ Years Experience.Lead Illumio microsegmentation implementations. Design & deploy Zero Trust policies.Analyze network infrastructure &...Show moreLast updated: 14 days ago
    • Promoted
    CipherTrust Engineer

    CipherTrust Engineer

    CapgeminiShimoga, IN
    We are seeking a skilled and experienced professional in.Encryption, Key Management, and Cryptography.Vormetric Data Security Manager (DSM). Onboard applications, databases, and storage platforms in...Show moreLast updated: 3 days ago
    • Promoted
    Security & Compliance IT Specialist / Engineer

    Security & Compliance IT Specialist / Engineer

    aecc - digital innovation hubShimoga, IN
    Support the organisation’s security posture through monitoring, incident response coordination, and compliance activities. Work closely with IT operations, engineering, and leadership to ensure syst...Show moreLast updated: 14 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiDavanagere, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    DevSecOps / AppSecOps Staff Engineer

    DevSecOps / AppSecOps Staff Engineer

    First American (India)Shimoga, IN
    Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design. If you're driven by impact, thrive in...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartShimoga, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 22 days ago
    • Promoted
    Technical Security Expert - Contract - Leading IT Consultancy

    Technical Security Expert - Contract - Leading IT Consultancy

    MRP GroupShimoga, IN
    Technical Security Expert / Engineer (Client-Facing).India or Malaysia (Hybrid / Remote).We are seeking a highly skilled Technical Security Expert / Engineer to support our enterprise customers in s...Show moreLast updated: 3 days ago
    • Promoted
    Sr Threat Detection Engineer

    Sr Threat Detection Engineer

    Insight GlobalShimoga, IN
    Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimizat...Show moreLast updated: 16 days ago
    • Promoted
    Security Engineer – Structured Data Protection | Pune

    Security Engineer – Structured Data Protection | Pune

    DigiHelic Solutions Pvt. Ltd.Shimoga, IN
    Security Engineer – Structured Data Protection.Data Confidentiality and Structured Data Protection.Microsoft Azure Cloud Security. Azure Kubernetes Service (AKS).Possess hands-on experience with.Imp...Show moreLast updated: 2 days ago
    • Promoted
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc.Shimoga, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 30+ days ago
    • Promoted
    IP / SOC Verification Engineer

    IP / SOC Verification Engineer

    ACL DigitalShimoga, IN
    IP / SS / SoC Verification Engineer (Hybrid – Bangalore / Hyderabad).The role involves hands-on contribution to.IP, Sub-system, and SoC-level verification. SystemVerilog / UVM-based verification environme...Show moreLast updated: 3 days ago
    • Promoted
    • New!
    Senior Security Engineer – AI, Cloud & Application Security

    Senior Security Engineer – AI, Cloud & Application Security

    Symosis SecurityDavanagere, IN
    Symosis is a cybersecurity consulting firm purpose-built for the AI-native, cloud-first era.We help public-sector and enterprise clients mature their security operations through managed services, o...Show moreLast updated: 8 hours ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    DautomShimoga, IN
    Security Monitoring and Incident Response.Monitor networks and systems for potential security breaches.Investigate and respond to security incidents and anomalies. Conduct forensic analysis to deter...Show moreLast updated: 2 days ago
    • Promoted
    Contractor Security Engineer Level 3 – GRC Tech Solutions

    Contractor Security Engineer Level 3 – GRC Tech Solutions

    MindlanceDavanagere, IN
    Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 16 days ago
    • Promoted
    • New!
    Checkpoint L3 Security Engineer (Hybrid : Bangalore)

    Checkpoint L3 Security Engineer (Hybrid : Bangalore)

    DigiHelic Solutions Pvt. Ltd.Davanagere, IN
    A Checkpoint L3 Security Engineer job description typically involves serving as a senior specialist and an escalation point for complex issues, leading design, configuration, and advanced troublesh...Show moreLast updated: 8 hours ago
    • Promoted
    Application Specialist

    Application Specialist

    ReparioDavanagere, IN
    We are seeking a highly skilled Application Specialist to provide first-call resolution support for hosted eDiscovery applications and infrastructure services. Primary duties include providing clien...Show moreLast updated: 3 days ago
    • Promoted
    Network Security Engineer

    Network Security Engineer

    Tata Consultancy ServicesShimoga, IN
    Role : Network Security - Firewall Palo Alto.Hands on experience on Palo Alto network firewalls including Configuration, Firewall rules management. Panorama Management : Proficiency in managing Palo A...Show moreLast updated: 30+ days ago