Vacancy description
Millennium
India, Bengaluru
Application Security Engineer (hybrid) in Bengaluru, India is listed on Jobeax. Browse 30,000+ vacancies available.
The successful candidate will be a subject matter expert with direct experience in a wide range of security technologies, tools, and methodologies. The role is suited for an experienced Application Security engineer with proven understanding in enterprise security and AI security and will focus on building toolsets and processes to drive adoption of secure practices across the enterprise. The team fosters a collaborative environment and is building a best-in-class program to partner with the business to protect the Firm's information and computer systems. AI Security Strategy: Define and implement security guardrails for Generative AI, LLMs, and Agentic frameworks, ensuring safe enterprise adoption.
AI Risk Management: Conduct specialized threat modeling, red teaming, and risk assessments for AI/ML models (e.g., testing for prompt injection, model theft, and data poisoning).
Security Consulting: Lead risk management activities, including application risk assessments, design reviews, and mitigation strategies for IT projects.
Lifecycle Engagement: Engage throughout the SDLC to identify vulnerabilities, conduct code reviews/penetration testing, and enforce secure coding standards.
Evangelize AppSec and AI security best practices through developer education, training materials, and outreach.
Design robust security architectures and integrate automated security testing (SAST/DAST/SCA) into CI/CD pipelines.
Stakeholder Liaison: Partner with Technology, Trading, Legal, and Compliance to create policies and communicate technical risks to non-technical stakeholders.
Bachelor's degree or higher in Computer Science, Computer Engineering, IT Security or related field.