Application Security Engineer

4 Months ago • All levels
Cyber Security

Job Description

As an Application Security Engineer, you will be responsible for ensuring the security of software development lifecycles and products by validating secure coding practices, penetration testing, and managing application security vulnerabilities. Your responsibilities will include reviewing application security, conducting penetration testing, facilitating vulnerability management, advising development teams on application security, and improving existing processes and tooling. You will need to stay updated on evolving threats and security vulnerabilities, assess risks, and identify gaps in security and tooling functionality. You will also define, lead, and implement solutions to problems.
Good To Have:
  • Bachelor's degree in Cybersecurity or related field.
  • Three years of information security experience.
  • Experience in at least one programming language.
  • Proficiency with SQL, Python, and/or JAVA.
  • Relevant certifications (e.g., CEH, OSCP).
Must Have:
  • Prior experience in Application Security.
  • Hands-on experience with security tools like Burp Suite and OWASP ZAP.
  • Working knowledge of OWASP Top 10 for web applications and APIs.
  • Understanding of security best practices at an enterprise level.
  • Basic understanding of networking concepts and protocols.
  • Knowledge of secure coding principles and code review processes.
  • Familiarity with DAST methodologies and tools.
  • Strong analytical and problem-solving skills.
  • Basic coding skills: SQL, Python, other scripting languages.
  • Strong written and oral communication skills.
  • Strong organizational and interpersonal skills.

Add these skills to join the top 1% applicants for this job

communication
risk-management
risk-assessment
game-texts
ethical-hacking
security-testing
owasp-zap
networking
linux
burp-suite
python
sql
java

Responsible for working with Clearwater Analytics development teams to ensure security is injected into the software development lifecycle and products are secure. This role will focus on validating secure coding practices, penetration testing and ownership over application security vulnerability management.

Responsibilities:

  • Engage in reviews of applications security, including code review as well as dynamic and manual penetration testing of products.
  • Ongoing facilitation of application vulnerability management
  • Advise and support development teams in the area of application security
  • Ability to suggest improvements to existing processes/tooling.
  • Demonstrate professional application of information security, compliance, assurance and/or other security practices and principles.
  • Up to date on evolving threats and security vulnerabilities
  • Ability to assess risk based on a given risk assessment framework
  • Actively seeks out opportunities to improve key systems, does not need to be directed on a daily basis.
  • Can help organize a group and coordinate projects or penetration test engagement.
  • Assists in definition, documentation, and evolution of best practices for application security program
  • Goes above and beyond basic requirements to support their own team and others.
  • Helps to identify key gaps in security and tooling functionality that will drive significant improvement in application security
  • Has the ability to take an assignment, project or problem and define, lead and implement a solution to completion.

Requirements:  

  • Prior experience working in Application Security.
  • Proven hands-on experience with security tools such as Burp Suite, OWASP ZAP, and Kali Linux.
  • Working knowledge of the OWASP Top 10 for web applications and APIs and how to apply the standard to minimize security risk.
  • Understanding of security best practices and how to implement them at an enterprise level.
  • Basic understanding of networking concepts and protocols.
  • Knowledge of secure coding principles and experience with code review processes.
  • Familiarity with dynamic application security testing (DAST) methodologies and tools.
  • Strong analytical and problem-solving skills with a keen attention to detail.
  • Basic coding skills – SQL, Python, other scripting languages.
  • Strong written and oral communication skills with the ability to convey complex security concepts to non-technical stakeholders
  • Strong organizational and interpersonal skill

Desired Experience or Skills:

  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related area of study
  • Three years of information security experience
  • Experience in at least one programming language
  • Proficiency with SQL, Python, and/or JAVA
  • Relevant certifications (e.g., Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), etc.) are a plus

Set alerts for more jobs like Application Security Engineer
Set alerts for new jobs by Clearwater Analytics
Set alerts for new Cyber Security jobs in India
Set alerts for new jobs in India
Set alerts for Cyber Security (Remote) jobs

Contact Us
hello@outscal.com
Made in INDIA 💛💙