
Application Security Engineer 2
- Bangalore, Karnataka
- Permanent
- Full-time
- Design and develop secure application components and libraries.
- Collaborate with engineering teams to integrate security into CI/CD pipelines.
- Conduct secure code reviews and contribute to application architecture decisions.
- Build internal tools and scripts to automate security testing and monitoring.
- Lead threat modeling sessions and provide actionable remediation guidance.
- Deliver hands-on secure coding workshops and training (e.g., OWASP Top 10).
- Investigate and remediate application vulnerabilities in collaboration with developers.
- Bachelor’s degree in Computer Science, Engineering, or related field.
- 3+ years of software development experience (Python, JavaScript, TypeScript, Go, or similar).
- Strong understanding of application security principles and secure coding practices.
- Familiarity with web, mobile, and API security testing.
- Experience developing secure cloud-native applications (AWS preferred).
- Experience with security tools (SAST, DAST, SCA) and integrate them into CI/CD.
- Knowledge of DevSecOps practices and infrastructure-as-code security.
- Experience with threat modeling, fuzzing, and penetration testing.
- Contributions to open-source security tools or frameworks.
- Working knowledge of microservices, container security, and modern deployment architectures.