Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Application Security Engineer @ Indiafilings

Home > IT Security

 Application Security Engineer

Job Description

We are looking for an experienced Application Security Engineer with 23 years of hands-on experience in security testing across web, mobile, API, and cloud environments. You will perform in-depth manual and automated testing, identify vulnerabilities using frameworks like OWASP and NIST, and provide actionable remediation guidance with clear PoCs. This role involves close collaboration with development and DevOps teams to integrate security into the SDLC, support secure coding practices, and contribute to threat simulations and R&D efforts. Strong knowledge of CVSS, MITRE ATT&CK, and scripting skills (Python, Bash) are essential, along with the ability to clearly communicate security findings to both technical and non-technical stakeholders


Key Responsibilities:

  • Conduct hands-on security testing of web applications, mobile apps, cloud environments, and APIs, identifying security vulnerabilities based on industry-standard methodologies (e.g., OWASP, SANS, NIST).
  • Evaluate the risk and severity of discovered vulnerabilities using frameworks such as CVSS and document findings with clear Proof-of-Concepts (PoCs), highlighting real-world business impact and custom remediation guidance.
  • Collaborate with development teams to explain vulnerabilities, answer technical queries, and recommend secure coding practices and mitigation strategies.
  • Participate in research and development (R&D) initiatives, including the discovery of new attack vectors, tooling improvements, and security automation.
  • Contribute to secure SDLC processes, including secure design reviews, code reviews alongside DevOps and architecture teams.
  • Assist in conducting threat simulations, adversary emulation, and red team exercises when required.
  • Maintain awareness of emerging threats, CVEs, and vulnerability trends affecting web, mobile, and cloud technologies.

Required Skills & Tools

  • 2-3 years of hands-on experience in security testing or penetration testing across web, mobile, API, and/or network layers.
  • Bachelors degree in Computer Science or a related technical field (or equivalent experience).
  • Having published CVEs is considered a strong advantage.
  • Solid knowledge of OWASP Top 10, MITRE ATT&CK, and Secure Coding Guidelines.
  • Strong understanding of manual testing approaches not just tool-assisted scans.
  • Hands-on experience with reporting, PoC generation, and remediation consulting.
  • Scripting or automation skills in Python, Bash for creating custom tools.
  • Effective communication skills to interact with both technical and non-technical stakeholders.

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Application Security Engineer
Employement Type: Full time

Contact Details:

Company: Indiafilings
Location(s): Chennai

+ View Contactajax loader


Keyskills:   Security Testing Nist Cyber Security Cvss Mitre Attack Bash Scripting SANS POC Penetration Testing OWASP Nist Security Python

 Job seems aged, it may have been expired!
 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Cyber Security Lead

  • Capgemini
  • 5 - 9 years
  • Chennai
  • 5 days ago
₹ Not Disclosed

Network and Security Engineer L2

  • Orange Business
  • 5 - 10 years
  • Bengaluru
  • 10 days ago
₹ Not Disclosed

Security Architect

  • Accenture
  • 8 - 13 years
  • Hyderabad
  • 18 days ago
₹ Not Disclosed

Security Architect

  • Accenture
  • 8 - 13 years
  • Hyderabad
  • 18 days ago
₹ Not Disclosed

Indiafilings

We are on a mission to make Entrepreneurship easier and affordable to millions. IndiaFilings provides a simple and intuitive platform for setting up a business and managing compliance. We started our journey in 2014 and bootstrapped the business till 2024, serving over 2 lakh businesses. In 2022, ...