Senior Application Security Engineer-I

2 Months ago • 4-6 Years • Cyber Security • Undisclosed

About the job

Job Description

As a Senior Application Security Engineer-I at Sumo Logic, you'll collaborate with development teams and the SOC to ensure product security and compliance. Responsibilities include applying secure coding best practices, performing security reviews and penetration tests, leading threat modeling exercises, leveraging Sumo Logic's product and other tools to build security into the software development lifecycle, integrating security solutions, participating in security research and audits, and driving operational excellence. On-call rotation is required. This role involves ensuring the operational excellence, security, and compliance of the entire cloud and technology stack.
Must have:
  • 4-6 years experience in applied software security
  • Strong in OWASP top 10 vulnerabilities
  • Experience with cloud security tools
  • Strong coding and debugging skills (Scala preferred)
  • Secure coding best practices for cloud applications
Good to have:
  • Security certifications
  • Bug bounty/CTF experience
  • Reported CVEs
  • Compliance frameworks and audits experience

About the job

  • This role can be remote - from anywhere in India.

Application Security SREs at Sumo Logic partner with our development teams, Security Operations Center (SOC), to ensure our products are secure and compliant. You will ensure operational excellence, security, and compliance of our entire cloud and technology stack!

What You Will Do

  • Ensure engineering teams develop secure applications by applying secure coding best practices for cloud applications and creating training and procedural materials
  • Perform security reviews and penetration tests - at design and implementation stages - and propose appropriate solutions for any security deficiencies
  • Lead teams in threat modeling exercises to pressure test technical designs
  • Leverage Sumo’s own product, and other third party tools to build security and “defense in depth” into our product and software development lifecycle.
  • Integrate and implement solutions improving Sumo Logic's security posture
  • Participate in security research, investigations, platform hardening, and audits
  • Drive continual improvement and operational excellence for our security tools.
  • Participate in on-call to provide coverage for security and platform components.

What You Already Have

  • B.S. or M.S. Computer Sciences or related discipline
  • Passion for Security: You care about the craft of software security, understand the various ways in which a system may be vulnerable, and know how to apply best practices to defend against attackers using industry standards and frameworks.
  • Operations Mindset: You understand how to leverage encryption, key management, monitoring, alerting, and automation to secure at scale while ensuring uptime.
  • Technical skills:
    • 4-6 years of professional experience in applied software security roles
    • Strong in OWASP top 10 security vulnerabilities, identifying security flaws in software, scoring the impact, and proposing a solution for developers.
    • Experience leveraging cloud security tools as part of software architecture.
    • Operational expertise in high scale, reliable 24/7, multi-tenant SaaS
    • Strong coding and debugging skills (Scala experience highly beneficial).
    • Security certifications, experience in bug bounty/CTFs, reported CVEs, and experience with compliance frameworks and audits are all pluses.
About Us

Sumo Logic, Inc. empowers the people who power modern, digital business. Sumo Logic enables customers to deliver reliable and secure cloud-native applications through its Sumo Logic SaaS Analytics Log Platform, which helps practitioners and developers ensure application reliability, secure and protect against modern security threats, and gain insights into their cloud infrastructures. Customers worldwide rely on Sumo Logic to get powerful real-time analytics and insights across observability and security solutions for their cloud-native applications. For more information, visit www.sumologic.com.

Sumo Logic Privacy Policy

View Full Job Description

Add your resume

80%

Upload your resume, increase your shortlisting chances by 80%

About The Company

Sumo Logic turns insights into action by enabling customers to deliver reliable and secure cloud-native applications through its Sumo Logic SaaS Log Analytics Platform.

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Noida, Uttar Pradesh, India (On-Site)

Bengaluru, Karnataka, India (Remote)

Bengaluru, Karnataka, India (Remote)

Hyderabad, Telangana, India (Remote)

Maharashtra, India (Remote)

Noida, Uttar Pradesh, India (On-Site)

View All Jobs

Get notified when new jobs are added by Sumo Logic

Similar Jobs

ION - Technical Lead Engineer, New York

ION, United States (On-Site)

Netflix - Data Engineer (L5) - Ads

Netflix, United States (Remote)

Unity - Senior Data Ops Engineer

Unity, Israel (On-Site)

Warner Bros Games - Principal Analytics Engineer (Data Platform)

Warner Bros Games, India (Hybrid)

Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation, United States (Hybrid)

Meta - Product Security Engineer

Meta, United States (On-Site)

Barbaricum - Information Systems Security Officer

Barbaricum, United States (Hybrid)

Varonis  - Cloud Security Researcher

Varonis , Israel (On-Site)

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Netflix - Research Scientist L5, Algorithms Engineering

Netflix, United States (On-Site)

N-iX - SENIOR PRODUCT MANAGER (#2660)

N-iX, Poland (Remote)

The Walt Disney Company - Sr Software Engineer

The Walt Disney Company, United States (On-Site)

Paypal - Staff Full Stack Engineer (GenAI)

Paypal, United States (Hybrid)

White Hat Gaming  - Scala Developer

White Hat Gaming , (Remote)

Playrix - Director of Engineering

Playrix, Ukraine (Remote)

Omnissa - Staff Engineer (Data Science)

Omnissa, India (Hybrid)

Get notifed when new similar jobs are uploaded

Jobs in Pune, Maharashtra, India

Pluralsight - Software QA Engineer

Pluralsight, India (Hybrid)

Likewize - Fullstack Developer

Likewize, India (On-Site)

Aristocrat Gaming - Offshore Resource Pool Manager

Aristocrat Gaming, India (Hybrid)

Assystems - Senior Hydraulic Engineer

Assystems, India (On-Site)

Aera Technology - Senior Software Engineer (Backend Java)

Aera Technology, India (On-Site)

Ubisoft - Senior Character Artist

Ubisoft, India (Hybrid)

Interactive Brokers - Technical Operations Specialist (TOPS)

Interactive Brokers, India (On-Site)

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Anthology  Inc  - Security Risk Analyst

Anthology Inc , India (On-Site)

Axinous - Android Software Engineer (Networking)

Axinous, United States (Hybrid)

Axinous - Technical Account Manager

Axinous, United States (Remote)

Experian - Senior Penetration Tester

Experian, India (Hybrid)

Microsoft - Senior Security Assurance Engineer

Microsoft, India (On-Site)

Alight Solutions - Senior Cloud Security Engineer

Alight Solutions, India (Remote)

ION - Cyber Security Analyst, Italy

ION, Italy (On-Site)

Get notifed when new similar jobs are uploaded