Application Security Engineer (hybrid) in Bengaluru, India - Jobeax
Vacancy description
Application Security Engineer (hybrid) in Bengaluru, India
Millennium
HybridMix of office and remote
On-siteWork from the office
India, Bengaluru
Application Security Engineer (hybrid) in Bengaluru, India is listed on Jobeax. Browse 30,000+ vacancies available.
The successful candidate will be a subject matter expert with direct experience in a wide range of security technologies, tools, and methodologies. The role is suited for an experienced Application Security engineer with proven understanding in enterprise security and AI security and will focus on building toolsets and processes to drive adoption of secure practices across the enterprise. The team fosters a collaborative environment and is building a best-in-class program to partner with the business to protect the Firm's information and computer systems. AI Security Strategy: Define and implement security guardrails for Generative AI, LLMs, and Agentic frameworks, ensuring safe enterprise adoption.
AI Risk Management: Conduct specialized threat modeling, red teaming, and risk assessments for AI/ML models (e.g., testing for prompt injection, model theft, and data poisoning).
Security Consulting: Lead risk management activities, including application risk assessments, design reviews, and mitigation strategies for IT projects.
Lifecycle Engagement: Engage throughout the SDLC to identify vulnerabilities, conduct code reviews/penetration testing, and enforce secure coding standards.
Evangelize AppSec and AI security best practices through developer education, training materials, and outreach.
Design robust security architectures and integrate automated security testing (SAST/DAST/SCA) into CI/CD pipelines.
Stakeholder Liaison: Partner with Technology, Trading, Legal, and Compliance to create policies and communicate technical risks to non-technical stakeholders.
Bachelor's degree or higher in Computer Science, Computer Engineering, IT Security or related field.
5+ years' experience working as an Application Security Engineer, Software Engineer, or similar role.
Deep understanding of AI-specific risks (OWASP Top 10 for LLMs) and experience securing applications utilizing LLMs.
Experience working with AI models, Agentic frameworks and security risks associated with AI.
Experience in working with global teams, collaborating on code and presentations.
Demonstrated work experience in hybrid on-premise and Public Cloud environments (AWS/GCP/Azure)
Strong understanding of security architectures, secure configuration principles/coding practices, cryptography fundamentals and encryption protocols.
Experience with common SCM & CI/CD technologies like GitHub, Jenkins, Artifactory, etc. and integrating Security Scanning and Vulnerability Management into the CI/CD Pipelines
Familiarity with static and dynamic security analysis tools, and SCA/SBOM solutions.
Hands on experience with Secrets Management & Password Vault technologies such as Delinea Secret Server and/or Hashicorp Vault, etc.
Strong experience in secure programming in languages such as Python, Java, C++, C#, or similar.
Familiarity with web application security testing tools and methodologies.
Knowledge of various security frameworks and standards such as ISO 27001, NIST, OWASP, etc.
Knowledge of Linux, OS internals and containers is a plus.
Certifications like CISSP, CISM, CompTIA Security+, or CEH are advantageous.
... testing, deploying, and ensuring scalability and performance on Azure using key technologies like Databricks. As a hands-on technologist with an extensive data engineering background using Databricks , you will be joining a group of Data Engineers who are passionate about building the best possible solutions for our business ...
... career into their own hands. DIVERSITY & INCLUSION We believe that diversity of people and perspective gives us a competitive advantage. Job Title: GCP Data Engineer Position: Data Engineer Experience: 5+ Years Work Mode: Hybrid (Capco Office) Design and develop scalable data pipelines using GCP and BigQuery. Build data ...
... Engineer , you will own and continuously mature capabilities across Attack Surface Management, Vulnerability Management, Zero Trust, Secrets and Credential Security, Detection Engineering, and Security Automation . This is a hands-on role requiring strong security engineering expertise combined with the ability to build ...
... policy https://jobeax.com/link/p1OBTLQZ6uwV3haN We're Looking For : Must-Have : - 4 - 5 years of hands-on experience in application security, infrastructure security, or a broad security engineering role.- Proven experience conducting vulnerability assessments and penetration tests across web applications, APIs, and cloud ...
... That means AI security isn't a side topic here. It's adjacent to the product, and it's the environment we operate in every day. The Role We're hiring a Sr. Security Operations Engineer to join Couchbase's global Information Security team as our second dedicated SecOps engineer. We think the interesting work in security ...
... services, including DNS configuration, troubleshooting, zone management, DNS traffic optimization, and availability management. Diagnose complex network and security issues related to Routing, Policy, VPN and DNS across WAN, LAN, and Internet-facing environments. Lead end-to-end security project, including planning, design, ...
... manufacturing, automotive). Identify vulnerabilities and cybersecurity risks in SCADA systems, PLCs, HMIs, DCS, and sensor networks. Work closely with IT, engineering, and plant operations teams to ensure risk remediation and security control implementation. Support the development and assessment of Business Continuity ...
... :Sonata Software is looking for an experienced Entra ID Customer Engineer with strong expertise in Microsoft Entra ID, Identity and Access Management, Azure security, authentication, governance, and enterprise identity architecture. As a Customer Engineer, you will work directly with enterprise customers and their technical ...
... people to deliver exceptional customer service. Apply today and help us shape the future of work—together Position: Network Engineer Bangalore / Hyderabad (Hybrid - Work from office) Employment Type: Permanent | Full-Time Experience: 7+ Years We are seeking a motivated and detail-oriented Core Network Engineer with 5-7 ...
... device manufacturers, research agencies, and consultancy firms. As we transition from a service-oriented model to a product-driven platform, we are expanding our hybrid Bengaluru team. We are looking for an experienced data engineer to contribute to our mission by deep-diving into business problems, building out our data lakehouse ...
... including designs, code, and tests, are completed in a timely manner, while remaining aligned with industry and organizational standards. Provides support to the Engineering teams, with a high attention to detail Designs, builds, and maintains large-scale production services, web applications, data pipelines, and streaming systems ...
... maintain CI/CD pipelines for cloud and edge deployments using Azure DevOps, GitHub Actions, and similar platforms. Ensure high availability, performance, and security across Azure, AWS, and hybrid environments. Build and maintain monitoring, alerting, and observability for edge-to-cloud services (Prometheus, Grafana, Azure ...
... Microsoft Teams) - Must have solid engineering knowledge of routing, switching (VLANs), Azure networking, firewalls, and traffic management. - Update network security based on VNETs and Subnets, with traffic monitoring, etc. - Knowledgeable with Azure Application Gateways, Front Door, and other security tools. - Network security ...
... Drive remediation of cloud and infrastructure security findings, partnering with Cloud Security and Engineering teams to track, prioritize, and address AWS security vulnerabilities, misconfigurations, container security findings, and infrastructure security risks.- Operate security automation capabilities, including automated ...
... and providing recommendations to mitigate security risks to acceptable levels as defined by the team. Key Responsibilities Primary Responsibilities Review application and IT architecture and integrations for any cybersecurity or information security vulnerabilities. Engage and guide business units to define secure business ...
... and POCs and establish a path for taking successful experiments into production.- Establish practices for AI application evaluation, testing, observability, security, reliability, and cost management.- Mentor SDE3 and SDE2 engineers and raise engineering standards across the team.- Partner with Product, Backend Engineering, ...
... processes. Understands application deployment from development to production. Can independently investigate and resolve infrastructure problems. Understands security as an integral part of infrastructure engineering. Takes ownership of systems and production environments. Values documentation and operational discipline. ...
Key Responsibilities & Requirements :- 4 - 6 years of experience in testing web, mobile, and backend applications.- Good understanding of STLC and experience working in Agile teams.- Hands-on experience in web application automation using Selenium.- Expertise in mobile testing and automation using Appium.- Experience in ...
... backbone for Netskope’s continued growth. As the technical steward of our enterprise HR systems, you will go beyond standard administration to focus on the full engineering lifecycle of our business-critical applications. In this role, you will own the IT security, disaster recovery, backend and integrations for Workday and ...