Jobs
Interviews

1254 Application Security Jobs - Page 32

Setup a job Alert
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

4.0 - 9.0 years

6 - 11 Lacs

Kochi

Work from Office

Information and Data are some of the most important organizational assets in today’s businesses. As a Security Consultant, you will be a key advisor for IBM’s clients, analysing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling and securing the client's organization with the cognitive solutions that are making IBM the fastest growing enterprise security business in the world. The ability to be a team player, Strong communication collaboration Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise Application Security, Threat Modelling, Secure Code Review, Penetration Testing, Vulnerability Testing, SAST (Static Application Security Testing), DAST (Dynamic Application security Testing), DevSecOps Implemented Clean Code principles, JUnit’s * Java development, JavaScript, Python, Ruby, C++/C#, Perl etc Must have strong business acumen with ability to work with application development, QA and security teams. A strong understanding of application security frameworks The ability and skill to train other people in procedural and technical topics As a Security Consultant, you will be a key advisor for IBM’s clients, analysing business requirements to design and implement the best security solutions for their needs Preferred technical and professional experience Must have a solid understanding of application security code reviews and penetration testing & Experience with enterprise java technologiesSpring, JUnit, Hibernate 4+ years' experience in application development and security. Practical understanding and use of commercial application security tools

Posted 1 month ago

Apply

2.0 - 4.0 years

4 - 6 Lacs

Gurugram

Work from Office

Role is SAP subject matter expert/architect role for Security. Key responsibilities will involve working with Business Stakeholders, understanding requirements, translating user requirements into SAP IT scope, assessing impact on application & connected systems, estimating high level schedule and efforts to implement solution and ensure successful technical delivery Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise Candidate must have min. 2-4 years of solid SAP Security Implementation experience with focus on Role authorizations. Solid implementation and hands-on experience in ECC 6.0 role build. Experience in working with stakeholders and leading SAP security projects. Sound understanding of SOD - segregation of duties. Support technical requirement gathering, develop prototypes/PoCs/recommend solutions with limited information from the business, delivery quality technical specifications and documentation Preferred technical and professional experience SOX/GRC Control experience

Posted 1 month ago

Apply

2.0 - 5.0 years

4 - 7 Lacs

Kochi

Work from Office

Software developers at IBM are the backbone of our overall strategy, and software development is the essential activity that drives the success of IBM and our clients worldwide. At IBM, you will use the latest software development tools, techniques and technologies and work with leading minds in the industry to build products, path-breaking technologies, and solutions that you can be proud of. Do you have the skills and passion for building the futureIf yes, join a niche team at IBM Software Labs focused on building an AI-driven Digital Labor platform, Watson Orchestrate, an AI platform that offers digeys (aka digital employees) with custom skills that can automate today’s businesses. Look for more details athttps://www.ibm.com/products/watson-orchestrate We seek Frontend developers with hands-on experience developing and supporting software products and services on cloud platforms. The ideal candidate would have rich experience building SaaS products/services, and incrementally deploying them on cloud environments with a deep understanding of platform development, system design, associated tools, technologies, and best practices. Experience in Test-driven development, quality through automation, application security etc., would be a plus. Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise 2 - 5 years of hands on programming experience Robust system design and programming skills in FrontEnd application development with NodeJS, ReactJS with Typescript Experience with Containers, Docker, Kubernetes, Linux Experience building distributed and scalable SaaS offerings based on REST APIs, microservices, and containers. Experience in system design and supporting cloud services Ability to learn and be productive on new technologies independently & quickly Good communication skills Preferred technical and professional experience Experience with LLM Model Integration and knowledge in AI Space will be a plus

Posted 1 month ago

Apply

4.0 - 7.0 years

7 - 11 Lacs

Bengaluru

Work from Office

Information Security Consultant-II Job Description About Lumen Technologies Lumen Technologies is a global technology company that delivers innovative communication and network solutions. Our mission is to empower businesses and individuals to connect, grow, and thrive in the digital age. With a focus on customer experience and operational excellence, we strive to provide cutting-edge solutions that meet the evolving needs of our customers. Job Details: Experience Required: 6 to 9 years Location: Bengaluru Work Mode: Hybrid Mandatory Skills : VMware, Red Hat OpenStack, Linux, Unix Shell Scripting, Perl Roles and Responsibilities: Strong knowledge of Unix-based operating systems( Linux, Solaris) Experience with virtualization technologies (VMWare, Red Hat Openstack) Expert level knowledge of IP networking with Ipv6 and protocols. Extensive experience troubleshooting IP networks Programming /scripting abilities in Perl,Unix/Linux shell,PHP,Python,Java or similar programming languages. Extensive knowledge of web application security, browser security models and application security vulnerabilities such as OWASP Top Ten Mastery of security including confidentiality and integrity of data , authentication, authorization and cryptographic protocol Deep understanding of network attacks, Ddos, malware, phishing ,email security ,encryption, authentication, log and forensic analysis, IP and device reputation and security policies Hands on expertise operating managed security technologies: Firewalls( Cisco Asa,Check Point) ,IPS( Cisco),file Integrity Monitoring( Tripwire, Trend Micro Deep Security),SIEM,Web Application Firewalls( Imperva), Next-Generation Firewalls ( Palo Alto Networks, Cisco FTD),Security management tools. Understanding of REST API design concepts and standards. Experience with database technologies (MySQL/MariaDB,MSSQL,Postgres,NoSQL). Experience in creating tools to automate recurring tasks. Experience with log collection and analysis tools( Graylog ,Splunk) Excellent written and verbal communication skills. Strategic thinking and problem solving skills. Self-motivated, proactive attitude with a security mindset. Must be able to consistently deliver superior results with minimal supervision. Experience in creating tools to automate recurring tasks. Ability to review logs and other forensic data from a security standpoint and identify anomalies. Desired Candidate Profile : 6+years of experience in managed service or Internet settings Bachelor’s or master’s degree in Computer Science, Business ,Math or comparable field or comparable experience Experience with regulatory compliance audits, Business Continuity and Disaster Recovery efforts, etc. Desired Skills: Strong knowledge of Perl,PHP ,Java,Python Mobile application security expertise Development experience in Java, Javascript, Perl ,PHP and Python Special Skills : Must have demonstrated expertise related to some of the following: Cisco ASA and FTD Firewalls, including client-based VPN configuration and troubleshooting Check Point Firewall and Multi-Domain management platforms Cisco and Snort-based IPS technologies Imperva Web Application Firewalls Palo Alto Networks Firewalls and Panorama management platforms Tripwire Trend Micro Deep Security SIEM tools "We are an equal opportunity employer committed to fair and ethical hiring practices. We do not charge any fees or accept any form of payment from candidates at any stage of the recruitment process. If anyone claims to offer employment opportunities in our company in exchange for money or any other benefit, please treat it as fraudulent and report it immediately."

Posted 1 month ago

Apply

2.0 - 7.0 years

20 - 25 Lacs

Bengaluru

Work from Office

3 The Senior IT Cybersecurity Engineer is responsible for the technical design of IT cybersecurity architectural guidelines and standards, as well as the secure implementation of IT digital technologies across platforms and product lines in Chevron. The primary responsibility is to assure IT solutions are "secure by design", and continuously improving our defenses as threats and technologies change. Key responsibilities: Responsibilities include but are not limited to: Enable digital transformation by ensuring secure-by-design principles are incorporated in the IT digital capabilities across the enterprise. Establish cybersecurity governance for IT technologies across all technology functions Lead security research proposals and proofs of concept for emerging technologies Consult as a subject matter expert on cybersecurity risk assessments for IT technologies Define cybersecurity architectures for IT solutions Serve as a subject matter expert in one or more cybersecurity domains, including, but not limited to, Network Security, Cloud Security, Endpoint Security, Application Security, Data Security, and Identity and Access Management. Required Qualifications: Minimum 2 years related work experience in cybersecurity with increasing levels of responsibility. Technical experience in one or more cybersecurity domains, including, but are not limited to, Network Security, Cloud Security, Endpoint Security, Application Security, Data Security, and Identity and Access Management. General understanding of the cyber threat landscape, including cyber-criminal and cyber-espionage threats. Previous experience administering cybersecurity technologies and/or supporting cybersecurity operations. Preferred Qualifications: Knowledge of industry-accepted cyber security frameworks such as NIST 800-53, MITRE ATTCK, and the Cyber Kill Chain. Experience in conducting and/or leading cybersecurity assessments (risk, vulnerability) and creating a detailed mitigation plan and recommendations to address gaps identified Ability to influence and motivate teams, and work with a variety of disciplines, cultures, and environments. Demonstrated ability to work effectively, and communicate effectively at all levels with operations, design, projects, vendors, peers, etc. Communicates in a clear, concise, understandable manner both orally and in writing. Chevron participates in E-Verify in certain locations as required by law.

Posted 1 month ago

Apply

10.0 - 15.0 years

14 - 19 Lacs

Pune

Work from Office

Do you know how to make sure things run smoothlyAre you highly motivated and like to work in an ever changing environmentAre you interested in looking after and driving forward the systems that help protect UBSs applications from increasing cyber security threats The Application Security product manager will be responsible for managing the development and on-going operational effectiveness of controls within the Application Security service. You will be working with various stakeholders to ensure that the tools and processes are fit for purpose and meeting expectations of the banks application security framework. You ll be working in the Cyber Hygiene - Application Security team alongside other Service and Product Managers who cover other testing domains. This job will require you to work closely with senior Service Line managers, Risk Managers, IT Development and support teams as you ensure end to end operation of the Application Security product portfolio. at least 10 years experience in Technology, with 7 years+ in IT/Information Security experience with development of use-cases for SIEM platforms extensive experience and technical understanding of application security controls and remediation strategies experience with Secure Development and Testing processes and detection tools and products, e.g. Fortify, Nexus IQ, etc knowledge of secure coding concepts, OWASP and current and emerging threats experience working in heavily regulated environments, preferably in the finance sector excellent analytical, problem-solving and technical skills - strong written and verbal communication skills

Posted 1 month ago

Apply

4.0 - 7.0 years

9 - 14 Lacs

Bengaluru

Work from Office

Introduction We believe that every candidate brings something special to the table, including you! So, even if you feel that you re close but not an exact match, we encourage you to apply. We d be thrilled to receive applications from exceptional individuals like yourself. Gallagher, a global industry leader in insurance, risk management, and consulting services, boasts a team of over 50,000 professionals worldwide. Our culture, known as The Gallagher Way,is driven by shared values and a passion for excellence. At the heart of our global operations, the Gallagher Center of Excellence (GCoE) in India, founded in 2006, upholds the values of quality, innovation, and teamwork. With 10,000+ professionals across five India locations, GCoE is where knowledge-driven individuals make a significant impact and build rewarding, long-term careers. Overview The HRIS Project Lead will report to the Gallagher Global HRIS Leader. In this exciting and challenging role, the incumbent will have direct responsibility for leading technical initiatives and projects related to Oracle HCM Cloud including Core HR, ESS/MSS, Payroll, and Benefits related to Mergers and Acquisitions. This role is unique in that its duties cross many modules, and the role mandates a desire to acquire and augment knowledge in a variety of workstreams. This hands-on role is responsible for managing HRIS projects from inception to completion, including project planning and management, stakeholder communication, risk management, quality assurance, documentation and reporting, and technology integration. The HRIS Project Lead will be responsible for the day-to-day technical management of HRIS projects including Oracle HCM Cloud and integrated systems. This role will be responsible for designing solutions for Oracle HCM Cloud projects to meet business problems and requirements. While this role will not be responsible for extensive technical development, a comprehensive knowledge of technical concepts including Oracle HCM Cloud, Oracle Payroll Cloud, Data Migration, Oracle Alerts, BI Publisher, Application Security, HCM Integrations, and WalkMe/Digital Adoption Platforms will be required for optimal performance of duties. This role will work with project team members and technical developers, and the ideal candidate will have the ability to interpret business requirements into technical specifications. This role will work closely with business customers, their client groups, Functional Stakeholders, and HRIS team members. This role will partner with HRIS Module Leads to ensure that project work is integrated efficiently into existing system design and project solutions are scalable and enduring. The HRIS Project Lead will manage subordinate staff-offshore in the day-to-day performance of their jobs as it relates to specific projects. They will ensure that project/department milestones/goals are met and adhering to approved budgets. This role will require 4-7 years experience working with HRIS technologies. Project management experience is required. How youll make an impact Acts as key technical leader for assigned HRIS projects. Ensures requirements, fixes, and testing processes are clearly documented and outlined;appropriate digital adoption solutions are proposed, tested and implemented in a timely and cost\u0002effective manner. Develop detailed project plans, including scope, timelines, resource allocation, and budget. Coordinate internal resources and third parties/vendors for the flawless execution of projects. Ensure that all projects are delivered on time, within scope, and within budget. Communicate project status, risks, and issues to stakeholders and senior management. Facilitate meetings and presentations to update stakeholders on project progress. Identify potential risks and develop mitigation strategies. Monitor project risks and issues and implement corrective actions as needed. Assign tasks and responsibilities to project team members. Ensure that project deliverables meet quality standards and client expectations. Maintain comprehensive project documentation, including project plans, status reports, and post\u0002project evaluations. Stay updated on emerging technologies and industry trends to recommend innovative solutions. Partner effectively with HRIS staff to manage enhancements or system changes, produce solid documentation for all projects and ensure that the entire development cycle is documented from requirements to implementation. Ensure post go live support transitions are completed and ensure quality knowledge transfer. Ability to perform hands-on configuration for various proof of concept needs to assist business users in determining approach to HRIS solutions. Responsible for ensuring all technical deliverables moving to production are tested, have proper signoff, and are technically sound. Oversee and enforce governance processes for HRIS projects Communicate UAT testing plans, root cause analysis for issues, timelines, and production migration status to business users/stakeholders Understand functional requirements and convey to technical development team members in a detailed and accurate manner Coordinate across modules / integrations / application teams as needed to ensure production issue fixes or enhancements/projects are thoroughly tested and vetted. This role will manage resources and operations across Gallagher global locations and time zones as required. Additional responsibilities as needs and global business growth demand. About you Bachelors degree or equivalent years of experience 4- 7 years related experience Outstanding written and verbal communications; ability to communicate complex technical matters to all levels of leadership, aligning communication style to the needs of the customer. Ability to hold self and project resources accountable for deliverables Good judgment when addressing business requests, responding to inquiries, escalating matters, etc. Strong quantitative and analytical skills Proven experience as a Project Manager working with HRIS technologies Strong understanding of project management methodologies (e.g., Agile, Scrum, Waterfall). Excellent communication, leadership, and organizational skills. Ability to manage multiple projects simultaneously. Experience in risk management and quality assurance. Strong interpersonal skills and ability to work collaboratively with cross-functional teams Additional Information We value inclusion and diversity Inclusion and diversity (ID) is a core part of our business, and it s embedded into the fabric of our organization. For more than 95 years, Gallagher has led with a commitment to sustainability and to support the commu nities where we live and work. Gallagher embraces our employees diverse identities, experiences and talents, allowing us to better serve our clients and communities. We see inclusion as a conscious commitment and diversity as a vital strength. By embracing diversity in all its forms, we live out Th e Gallagher Way to its fullest. Gallagher believes that all persons are entitled to equal employment opportunity and prohibits any form of discrimination by its managers, employees, vendors or customers based on race, color , religion, creed, gender (including pregnancy status), sexual orientation, gender identity (which includes transgender and other gender non-conforming individuals), gender expression, hair expression, marital status, parental status, age, national origin, ancestry, disability, medical condition, genetic information, veteran or military status, citizenship status, or any other characteristic protected (herein referred to as protected characteristics ) by applicable federal, state, or local laws. Equal employment opportunity will be extended in all aspects of the employer-employee relationship, including, but not limited to, recruitment, hiring, training, promotion, transfer, demotion, compensation, benefits, layoff, and termination. In addition, Gallagher will make reasonable accommodations to known physical or mental limitations of an otherwise qualified person with a disability, unless the accommodation would impose an undue hardship on the operation of our business. ","

Posted 1 month ago

Apply

4.0 - 9.0 years

5 - 9 Lacs

Bengaluru

Work from Office

Introduction We believe that every candidate brings something special to the table, including you! So, even if you feel that you re close but not an exact match, we encourage you to apply. We d be thrilled to receive applications from exceptional individuals like yourself. Gallagher, a global industry leader in insurance, risk management, and consulting services, boasts a team of over 50,000 professionals worldwide. Our culture, known as The Gallagher Way,is driven by shared values and a passion for excellence. At the heart of our global operations, the Gallagher Center of Excellence (GCoE) in India, founded in 2006, upholds the values of quality, innovation, and teamwork. With 10,000+ professionals across five India locations, GCoE is where knowledge-driven individuals make a significant impact and build rewarding, long-term careers. Overview The HRIS Specialist - Journeys and Security . In this exciting and challenging role, the incumbent will have direct responsibility for supporting technical initiatives and projects related to Oracle HCM Journeys/Checklist Module, Oracle HCM (personalizations / customizations) and Application Security. The HRIS Specialist - Journeys and Security will be responsible for supporting Journeys and HCM customization projects and rollouts in addition to assisting in troubleshooting and resolution of production issues in these modules and supporting regression testing activities. This role will also support actioning security tickets for Oracle HCM and iCIMS applications, ensuring access is provisioned appropriately and in a timely manner. A comprehensive knowledge of technical concepts including Oracle Cloud HCM, Oracle Alerts, BI Publisher, Oracle Application Security, and HCM Integrations will be required for optimal performance of duties. This role will work with project team members and technical developers, and the ideal candidate will have the ability to translate business requirements into technical specifications. This role will work closely with business customers, their client groups, HRIS Leads, Functional Stakeholders, and technical team members. The HRIS Specialist - Journeys and Customization will coordinate with various onshore and offshore team members in the day-to-day performance of their jobs. They will ensure that project/department milestones/goals are met and adhere to approved budgets. This role will require 4+ years experience working with HRIS technologies. Some supervisory/project management experience is beneficial . How youll make an impact Support Oracle Cloud HCM Checklists/Journeys, and Customization/Personalization initiatives by ensuring functional requirements are conveyed clearly into technical deliverables and project milestones are achieved. Effectively and appropriately provision roles to users in Oracle HCM and iCIMS Applications Assist business users with security related questions, directing them to the appropriate resources or escalating issues to the appropriate team Ensures requirements, fixes, and testing processes are clearly documented and outlined; appropriate digital adoption solutions are proposed, tested and implemented in a timely and cost effective manner. Partners effectively with HRIS staff to manage enhancements or system changes, produces solid documentation for all projects and ensure that the entire development cycle is documented from requirements to implementation. Ensure post go live support transitions are completed and ensure quality knowledge transfer. Ability to perform hands-on configuration for Journeys and Security in order to support proofs of concept for new functionality, creation of new roles, or troubleshooting of security issues. Interacts with team and development resources to facilitate enhancements or changes to global processes and interfaces related to Checklists and Journeys, including Oracle Self Service initiatives, system integrations, year-end planning, patching and deployment activities and annual benefits enrollment activities. Responsible for ensuring all technical deliverables moving to production are tested, have proper signoff, and are technically sound. Work with the Managed Services Providers for the HCM and ATS (recruitment) systems as needed. Support Resolution and Escalation of Daily Production issues/tickets across Checklist/Journeys, Core HR Customizations, and Application Security. Follow all appropriate HRIS Governance processes to ensure changes and fixes are tested and appropriately approved prior to production migration. Communicate testing plans, root cause analysis for issues, timelines, and production migration status to business users/stakeholders Summarize and communicate technical changes and updates to functional users and technical project managers in a clear and comprehensive manner Support Quarterly patching activities for these modules including reviewing automated testing scenarios, resolving any issues, exploring new enhancements, and gathering UAT signoff from stakeholders. Understand functional requirements and convey to technical development team members in a detailed and accurate manner Review Production Issue Fixes/Enhancement requests for impacts to existing functionality in these modules. Coordinate across modules / integrations / application teams as needed to ensure production issue fixes or enhancements/projects are thoroughly tested and vetted. Ensure that security for these areas is appropriate and compliant as demanded by varying access requirements. This role will coordinate with resources and operations across Gallagher global locations and time zones as required. Additional responsibilities as needs and global business growth demand. About you Bachelors degree or equivalent years of experience 4+ years related experience Outstanding written and verbal communications; ability to communicate complex technical matters to all levels of leadership, aligning communication style to the needs of the customer Excellent project management skills with detailed understanding of SDLC methodologies, with ability to hold self and project resources accountable for deliverables Good judgment when addressing business requests, responding to inquiries, escalating matters, etc. Strong quantitative and analytical skills Additional Information We value inclusion and diversity Inclusion and diversity (ID) is a core part of our business, and it s embedded into the fabric of our organization. For more than 95 years, Gallagher has led with a commitment to sustainability and to support the commu nities where we live and work. Gallagher embraces our employees diverse identities, experiences and talents, allowing us to better serve our clients and communities. We see inclusion as a conscious commitment and diversity as a vital strength. By embracing diversity in all its forms, we live out Th e Gallagher Way to its fullest. Gallagher believes that all persons are entitled to equal employment opportunity and prohibits any form of discrimination by its managers, employees, vendors or customers based on race, color , religion, creed, gender (including pregnancy status), sexual orientation, gender identity (which includes transgender and other gender non-conforming individuals), gender expression, hair expression, marital status, parental status, age, national origin, ancestry, disability, medical condition, genetic information, veteran or military status, citizenship status, or any other characteristic protected (herein referred to as protected characteristics ) by applicable federal, state, or local laws. Equal employment opportunity will be extended in all aspects of the employer-employee relationship, including, but not limited to, recruitment, hiring, training, promotion, transfer, demotion, compensation, benefits, layoff, and termination. In addition, Gallagher will make reasonable accommodations to known physical or mental limitations of an otherwise qualified person with a disability, unless the accommodation would impose an undue hardship on the operation of our business. ","

Posted 1 month ago

Apply

5.0 - 10.0 years

22 - 27 Lacs

Bengaluru

Work from Office

1 The Lead IT Cybersecurity Engineer is responsible for the technical design of IT cybersecurity architectural guidelines and standards, as well as the secure implementation of IT digital technologies across platforms and product lines in Chevron. The primary responsibility is to assure IT solutions are "secure by design", with a high focus on delivering secure digital capabilities and retiring legacy technology when possible. Key Responsibilities: Responsibilities include but are not limited to: Enable digital transformation by ensuring secure-by-design principles are incorporated in the IT digital capabilities across the enterprise Establish cybersecurity governance for IT technologies across all technology functions Lead security research proposals and proofs of concept for emerging technologies Consult as a subject matter expert on cybersecurity risk assessments for IT technologies Define cybersecurity architectures for IT solutions Serve as a subject matter expert in one or more cybersecurity domains, including, but not limited to, Network Security, Cloud Security, Endpoint Security, Application Security, Data Security, and Identity and Access Management Required Qualifications: Minimum 5 years related work experience in cybersecurity with increasing levels of responsibility Technical experience in one or more cybersecurity domains, including, but are not limited to, Network Security, Cloud Security, Endpoint Security, Application Security, Data Security, and Identity and Access Management General understanding of the cyber threat landscape, including cyber-criminal and cyber-espionage threats Previous experience administering cybersecurity technologies and/or supporting cybersecurity operations Preferred Education: Bachelor s degree or master s degree in Cybersecurity, Information Technology, Information Systems, or Computer Science Certifications in IT Cybersecurity are highly preferred (e.g., GISP, GREM, ISSEP, OSCP or other similar certification) Certifications in SAFe Scaled Agile or related scrum/agile project management framework is desirable Preferred Qualifications: Knowledge of industry-accepted cyber security frameworks such as NIST 800-53, MITRE ATTCK, and the Cyber Kill Chain Experience in conducting and/or leading cybersecurity assessments (risk, vulnerability) and creating a detailed mitigation plan and recommendations to address gaps identified Ability to influence and motivate teams, and work with a variety of disciplines, cultures, and environments Demonstrated ability to work effectively, and communicate effectively at all levels with operations, design, projects, vendors, peers, etc Communicates in a clear, concise, understandable manner both orally and in writing Chevron participates in E-Verify in certain locations as required by law.

Posted 1 month ago

Apply

5.0 - 10.0 years

15 - 19 Lacs

Bengaluru

Work from Office

1 Chevron invites applications for the role of Operational Technology (OT) Cloud Engineer within our OT Edge Compute team in India. This position has responsibility for the critical platforms, tools, and capabilities that provide on and off-premises Cloud infrastructure services to every Chevron business units and sites. This position will provide broad exposure to the application of technology to enable business with many opportunities for growth and professional development for the candidate. Key Responsibilities: Identify the most optimal cloud-based solutions for our digital platforms and maintain cloud infrastructures in accordance with best practices and company security policies Understand the nuances of different cloud solutions (hybrid, public, private, multi-cloud, on-prem) and implications for solution design Apply excellent troubleshooting skills, stay current with industry trends, and must be a team player Maintain and troubleshoot Azure/On-prem environments and services Design and implement application security for Azure cloud and On-prem native solutions Collaborate with software engineering and development teams to evaluate and identify optimal cloud solutions Develop a deep understanding of the needs and pain points of our connected workers and use this knowledge to drive product development Work with cross-functional teams, including OT product teams, surface product teams, etc. to define and prioritize product requirements Scale and support products such as tablets/phones, lone worker monitoring devices, push-to-talk (PTToB) deployments, and Real Time Location Services (RTLS) Act as the deployment coordinator for products such as PTToB and RTLS, including system setup, training, and monitoring deployment activities Work directly with stakeholders to understand RTLS requirements and help deploy new solutions to capture data and analyze for efficiencies Define and execute the XR Immersive Tech product vision, strategy, and roadmap Gather and prioritize customer and stakeholder requirements Define and deliver product features and functionality Coordinate with the XR development team to ensure successful delivery of the product Act as the main point of contact for the XR product portfolio Required Qualifications: Bachelor s degree in computer science engineering or related field Total year of experience 5+ years with Cloud experience on Azure Must have Microsoft AZ900 Certification Ability to create and communicate a clear product vision that aligns with business objectives and addresses the needs of connected workers Experience in deploying solutions in on-premises and cloud-based environments In-depth knowledge of digital tools, IoT devices, and software platforms used in connected worker solutions, including Azure DevOps and Microsoft O365/M365 services Skills in deploying and supporting products such as tablets/phones, lone worker monitoring devices, push-to-talk (PTToB) deployments, and Real Time Location Services (RTLS) Ability to collect, analyze, and utilize data from connected devices to drive product development and improve performance In-depth knowledge of Mixed Reality (MR), Augmented Reality (AR), and Virtual Reality (VR) technologies, including tools like Unity, Blender, and remote rendering Ability to define and execute the product vision, strategy, and roadmap for XR technologies Expertise in deploying and configuring AR/MR/VR devices and software applications Demonstrated knowledge and experience with Microsoft Azure IaaS, storage, and networking Ability to translate business requirements into technical solutions and manage service delivery through IT managed service providers. Proficiency in automation and scripting languages such as PowerShell, Python, or Bash to automate cloud operations Experience with integration of XR Immersive technologies into Field Operations Chevron participates in E-Verify in certain locations as required by law.

Posted 1 month ago

Apply

8.0 - 13.0 years

20 - 25 Lacs

Bengaluru

Work from Office

Introduction: Lifestyle We re a global, multi-disciplinary team that s putting the innovative power of technology to work and transforming tomorrow. As a member of HARMAN Lifestyle, you connect consumers with the power of superior sound. Contribute your talents to high-end, esteemed brands like JBL, Mark Levinson and Revel Unite your passion for audio innovation with high-tech product development Create pitch-perfect, cutting-edge technology that elevates the listening experience About the Role The person will be responsible for the end-to-end General Trade business of the defined territory. They will implement the overall strategic sales plan, targets, and tools to monitor sales achievements. What You Will Do Design, develop, and maintain microservices-based eCommerce applications using Java and Hybris. Lead technical design discussions and create low-level technical designs. Write clean, efficient, and maintainable code adhering to API standardization. Participate in code reviews and contribute to the development of coding standards. Mentor junior engineers and foster a strong engineering culture within the team. Design and develop APIs to support digital experiences using open source and cloud technology. Collaborate with Product Owners, Business Analysts, and Solution Architects. Conduct design reviews to ensure solutions adhere to our architecture, security, scalability, and maintainability guidelines. Provide squad-level engineering leadership and contribute to our engineering community and standards. Ensure solutions are fit for purpose, performant, secure, accessible, and conform to our architectural principles. Implement a test-first approach and clean architecture principles. What You Need 8+ years of experience in software engineering, focusing on large-scale, complex systems. 5+ years of experience in the SAP Hybris Commerce platform. Strong experience with Java 11, 17, and Spring Boot. Strong experience with unit testing and integration testing. Experience in developing microservices-based applications. Experience with API standardization. Experience building RESTful web services and GraphQL. Development experience using TDD in Java. Experience designing microservices architecture. Good understanding of CI/CD pipelines using tools like Jenkins. Good understanding of Agile software development methodologies. Experience with AWS, Azure. Experience with frontend development, including React, JavaScript, Flutter. Knowledge of web security, application security, web services security, common vulnerability remediation, and certificate management. DevOps experience. Good knowledge of different testing suites. What We Offer Flexible work environment, allowing for full-time remote work globally for positions that can be performed outside a HARMAN or customer location Access to employee discounts on world-class Harman and Samsung products (JBL, HARMAN Kardon, AKG, etc.) Extensive training opportunities through our own HARMAN University Competitive wellness benefits Tuition Reimbursement Access to HARMAN Campus Fitness Center and Cafeteria An inclusive and diverse work environment that fosters and encourages professional and personal development You Belong Here . About HARMAN: Where Innovation Unleashes Next-Level Technology . . ! HARMAN is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or Protected Veterans status. HARMAN offers a great work environment, challenging career opportunities, professional training, and competitive compensation. ( www.harman.com )

Posted 1 month ago

Apply

8.0 - 13.0 years

25 - 40 Lacs

Pune

Work from Office

What You'll Do Join us in building a secure, scalable, and experienced platform to support Avalara's expanding business and global customer base. As a Senior Application Security Engineer , you'll work with world-class engineers and architects to ensure security is embedded in everything we buildboth in today's systems and the future of our architecture. This role is perfect for someone passionate about automation, cloud-native security, and AI-driven application defense . You'll help shape the future of Avalara Security , driving security as code, ensuring automation-first practices, and integrating modern AI tooling into security workflows. You understand the value of developer empathy, moves quickly without sacrificing quality, and excels in an environment that combines startup energy with enterprise scale. You will report to security leadership at Avalara. This is a remote position. What Your Responsibilities Will Be Job Responsibilities You will build, maintain, and continuously improve an automated security pipeline framework integrated into our CI/CD environments. You will lead development of Infrastructure-as-Code and Policy-as-Code for application security enforcement and consistency across environments. You will evaluate and integrate security tools (SAST, DAST, SCA, CSPM, EDR) and AI-based solutions into engineering workflows and CI/CD pipelines. You will provide applicable guidance and mentorship to development and Avalara Security engineering teams on secure development best practices. Investigate, prototype, and apply AI/ML-based solutions for application behavior analysis, anomaly detection, and threat hunting. Promote security by design across the organization, and help foster a security-first culture. Contribute to the continuous refinement of the SDLC to ensure security is smooth, consistent, and measurable. What You'll Need to be Successful Required Qualifications 8+ years of experience in application security, secure software development , or security engineering. Strong programming proficiency in Python and GoLang (hands-on). Experience with secure SDLC practices and CI/CD pipeline integration. Strong hands-on experience with Kubernetes , container security, and cloud infrastructure security preferably AWS and GCP . Experience with Infrastructure-as-Code (IaC) tools like Terraform or CloudFormation. Working knowledge of cryptographic protocols and standards: TLS, OAuth, SAML, JWT , etc. Familiarity with Git , modern source control practices, and agile development methodologies. Experience working with a broad range of security tools , including: Tenable , Wiz (Cloud Security Posture Management) Checkmarx , Mend (SAST, SCA) Acunetix , Burp Suite (DAST) CrowdStrike (EDR/XDR) Bachelor's Degree in Computer Science, Engineering, or a related field. Proven experience contributing to security automation efforts within a security organization like Avalara Security . Experience with AI/ML tools and frameworks applied to application security or behavior analytics. Security certifications such as OSWE, CSSLP, AWS Security Specialty, or Kubernetes Security Specialist. Passion for enabling developer-friendly security solutions and maximum automation.

Posted 1 month ago

Apply

8.0 - 13.0 years

11 - 12 Lacs

Bengaluru

Work from Office

IT Principal Software Engineer The Software Engineering team delivers next-generation software application enhancements and new products for a changing world. Working at the cutting edge, we design and develop software for platforms, peripherals, applications and diagnostics all with the most advanced technologies, tools, software engineering methodologies and the collaboration of internal and external partners. Join us to do the best work of your career and make a profound social impact as a IT Principal Software Engineer on our Information Security Technology Team in Bangalore What you ll achieve Dell provides the technology that transforms the way we all work and live and always including Information Security as a very important aspect in everything we do. In this position, as an IT Principal Software Engineer , you ll be responsible for developing tools and automation used internally to maintain and enhance Dells information security posture. You will work with global security and software development teams on projects to enhance Dell s infrastructure and vulnerability remediation processes." You will: Implement automated vulnerability remediation strategies using modern technologies like Python, Java and infrastructures tools like SCCM, Tenable, AWS, and so on Work with IT and Cybersecurity partners to establish communication plans and develop remediation solutions. Develop effective strategies to orchestrate vulnerability remediation. Provide critical input into the selection, configuration, and implementation of new and existing solutions. Take the first step towards your dream career Every Dell Technologies team member brings something unique to the table. Here s what we are looking for with this role: Essential Requirements Proficient in software development with hands-on experience using Java, Angular, React.js, and Spring Boot frameworks. Strong foundation in secure development life cycle, scripting including expertise in Linux shell scripting, Python, and Windows PowerShell. Skilled in writing and optimizing SQL queries for data retrieval and manipulation. Experienced in implementing and maintaining CI/CD pipelines within DevOps environments. Experience developing Web UI (front end) applications Desirable Requirements Knowledge of Information security topics such as Cybersecurity, Pen testing and vulnerability scan, Application security, Web security, CVSS Scoring, CVE classification. 8+ years of validated experience.Bachelor s degree in computing engineering or computer science Application closing date: 30-June-25

Posted 1 month ago

Apply

8.0 - 13.0 years

14 - 15 Lacs

Bengaluru

Work from Office

Job Title Senior Specialist I - Product Security & Privacy Job Description Job title: Senior Specialist I - Product Security & Privacy Your role: The Product Security & Services Office (PSSO) at Philips helps implement security by design and achieve operational excellence for our products and services. By protecting customer systems and data, we ensure our products are resilient to cyberattacks, reinforcing customer trust. We seek product security risk assessors to conduct security assessments. This role involves engaging with architects and R&D teams to integrate security and privacy considerations early in the product development cycle. Assessors will review and approve design documentation before development begins. Youre the right fit if: Bachelors/ Masters Degree in Computer Science, Cybersecurity, Information Security or equivalent. Minimum 8 Years of experience as a specialist role, including responsibility for the security of a software application and IT infrastructure, including defining the product security roadmap Application Security Expertise : Strong knowledge of security domains across all phases of Secure SDLC, including API security and microservices security. Risk & Threat Management : Experience in risk assessment, threat modelling & Secure Architecture Identity & Access Management (IAM ): Hands-on experience in designing access management architectures using OAuth 2.0, OIDC, SAML 2.0, and XACML authorization policies. Cryptography & Certificate Management : Strong knowledge of symmetric and asymmetric cryptography, PKI, TLS, and certificate management. Cloud Security : Experience with AWS, Azure, and familiarity with virtual machines, Docker, and Kubernetes. Familiarity with OWASP Top 10, SANS security vulnerabilities, and open-source vulnerability handling. Programming & Scripting : Proficiency in Java/JavaScript, Bash scripting, Python etc. Multi-Tenancy Architecture : Understanding of multi-tenant security architecture. How we work together We believe that we are better together than apart. For our office-based teams, this means working in-person at least 3 days per week. Onsite roles require full-time presence in the company s facilities. Field roles are most effectively done outside of the company s main facilities, generally at the customers or suppliers locations. Indicate if this role is an office/field/onsite role. About Philips We are a health technology company. We built our entire company around the belief that every human matters, and we wont stop until everybody everywhere has access to the quality healthcare that we all deserve. Do the work of your life to help the lives of others. Learn more about our business . Discover our rich and exciting history . Learn more about our purpose . If you re interested in this role and have many, but not all, of the experiences needed, we encourage you to apply. You may still be the right candidate for this or other opportunities at Philips. Learn more about our culture of impact with care here .

Posted 1 month ago

Apply

0.0 - 2.0 years

6 - 7 Lacs

Chennai

Work from Office

Job Purpose : This position will report to the CBTS Security organization and support company applications, systems, and vendors with security operations, administration, and general maintenance. This is a shift-based position and will have well-defined working hours. The position supports CBTS and its security strategy and objectives by providing security monitoring and remediation. It provides services to mitigate cyber risks to CBTS and protects company information, systems, products, facilities, and assets. Essential Functions: (70%) Security Implementation and Operations - Monitor security alerts and events and follow playbooks to respond to and escalate security incidents. Communicate with employees to remediate discovered risks. Support Security applications and infrastructure. Review systems and applications. Assist with vulnerability scans. Perform maintenance activities for applications and infrastructure. Perform incident/event response. Assist with documentation and policy creation. (10%) Innovative Solutions - Designs creative solutions that use technologies and processes to mitigate risks to information, systems, products, facilities, and assets. (10%) Risk Management - Identifies and facilitates remediation of potential security risks. (10%) Technical Training - A SOC analyst I is expected to keep up to date on the latest security trends and technologies. Time will be available for continued training. Education Four years of college resulting in a bachelor s degree or equivalent Certifications, Accreditations, Licenses N/A Experience 0-2 Years Special Knowledge, Skills, and Abilities Technical knowledge (security and compliance) - working experience with network, compute, and/or application security technologies. Strong knowledge of the OSI model Good communication, documentation, and presentation skills Inquisitive, motivated, and creative Planning and organizing Self-starter and takes initiative.

Posted 1 month ago

Apply

3.0 - 7.0 years

4 - 8 Lacs

Pune

Work from Office

Join Strategy s IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategy s software applications while using modern security and AI tooling. In this position, you will be responsible for integrating security practices throughout the software development lifecycle, ensuring that our software products are resilient against vulnerabilities. Secure SDLC Integration: Work closely with development teams to integrate security into the SDLC, including threat modeling, secure code reviews, and security testing . Vulnerability Management: Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA ) tools. Security Assessments Penetration Testing: Conduct manual and automated penetration testing of web, mobile, and cloud applications to detect security flaws. Secure Code Review: Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices. Threat Modeling Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture. DevSecOps Enablement: Support and enhance DevSecOps initiatives by integrating security automation within CI/CD pipelines. Incident Response Remediation: Assist in investigating security incidents related to applications and work with engineering teams to remediate threats. Security Awareness Training: Educate and mentor developers on OWASP Top 10, SANS 25, and other security best practices . Job Location Application Security Engineer Pune, India Full-time in person from Strategy Office Bachelor s degree in Computer Science, Engineering, or related field Minimum 2 years of software development or software security experience in an agile environment Hands-on experi

Posted 1 month ago

Apply

3.0 - 6.0 years

8 - 11 Lacs

Pune

Work from Office

Job Description Join Strategy s IT Security group as an Application Security Engineer and play a crucial role in safeguarding Strategy s software applications while using modern security and AI tooling. In this position, you will be responsible for integrating security practices throughout the software development lifecycle, ensuring that our software products are resilient against vulnerabilities. Secure SDLC Integration: Work closely with development teams to integrate security into the SDLC, including threat modeling, secure code reviews, and security testing . Vulnerability Management: Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA ) tools. Security Assessments Penetration Testing: Conduct manual and automated penetration testing of web, mobile, and cloud applications to detect security flaws. Secure Code Review: Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices. Threat Modeling Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture. DevSecOps Enablement: Support and enhance DevSecOps initiatives by integrating security automation within CI/CD pipelines. Incident Response Remediation: Assist in investigating security incidents related to applications and work with engineering teams to remediate threats. Security Awareness Training: Educate and mentor developers on OWASP Top 10, SANS 25, and other security best practices . Job Location Application Security Engineer Pune, India Full-time in person from Strategy Office Qualifications Bachelor s degree in Computer Science, Engineering, or related field Minimum 2 years of software development or software security experience in an agile environment

Posted 1 month ago

Apply

5.0 - 10.0 years

11 - 13 Lacs

Bengaluru

Work from Office

YASH Technologies is a leading technology integrator specializing in helping clients reimagine operating models, enhance competitiveness, optimize costs, foster exceptional stakeholder experiences, and drive business transformation. At YASH, we re a cluster of the brightest stars working with cutting-edge technologies. Our purpose is anchored in a single truth - bringing real positive changes in an increasingly virtual world and it drives us beyond generational gaps and disruptions of the future. We are looking forward to hire Cyber Security Professionals in the following areas : Job Description: Experience required - 5+ years Security Defect Management - Analyzing, validating, communicating, and consulting on security defects identified by both automated and manual sources such as CodeQL, Rapid7 Web Application Security, penetration testing, bug bounty, etc. In other words, our security engineers are partners to software engineers who require accurate information on why a vulnerability exists and what they can do about it. Engineering Consulting - Serving as a best friend to software engineers, architects, product owners, and leaders, provide contextually-aware guidance to help these groups make good decisions when implementing new features and remediating existing issues. Tool Enablement - Enabling and monitoring automated defect detection tooling (CodeQL, Rapid7, etc.) at the repository or application level according to established process. Security Test Onboarding Management - Collecting and communicating required scope and access information for penetration testing and security assurance assessments, as well as handling the output of these assessments via our Defect Management Process. Maturity Measurement - Consulting with software engineers on practices which will improve their application s security maturity according to scorecards and maturity models established by Cat Digital. Correction of Error - Authoring, in close partnership with software engineers, correction of error reports which help engineers and architects across Cat Digital avoid similar mistakes in their own applications. Basic Qualifications Two of three: 5+ years of experience as a software engineer (in any language or framework) or software engineering manager 5+ years of experience as a software development-focused cybersecurity professional 5+ years of experience working on a major cloud platform (AWS, Azure, GCP, or Salesforce) as a software engineer, cloud/DevOps engineer, security engineer, or architect. As well as: Experience analyzing and remediating security findings from automated and manual sources such as Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), penetration testing, Software Composition Analysis (SCA), etc. Experience leveraging one or more of the following resources to support secure coding and decision-making: OWASP Top 10 MITRE Common Weakness Enumeration (CWE) Top 25 OWASP Application Security Verification Standard (ASVS) Other industry-standard best practice guides or frameworks Experience building or supporting web applications and API s including Single Page Applications (SPA) and RESTful API s. Proficiency in one or more programming languages. Candidates must also demonstrate the following attributes: Decision-Making Ability - Our engineers make sound, justifiable, customer-first decisions to determine which security issues to raise to software engineers/leaders and support work prioritization decisions. Strong Communication - Our engineers relate complex technical concepts to non-technical audiences and technical audiences without a security background. Additionally, the Cat Digital team spans the globe, and our engineers must collaborate effectively with engineers from a number of locations and cultural backgrounds. Active Participation - Software engineering is not a spectator sport . The input and experience our engineers bring to the table are valued and should be shared freely. Similarly, engineers are relied upon to complete complex assignments at a high level of quality with limited supervision. At YASH, you are empowered to create a career that will take you to where you want to go while working in an inclusive team environment. We leverage career-oriented skilling models and optimize our collective intelligence aided with technology for continuous learning, unlearning, and relearning at a rapid pace and scale. Our Hyperlearning workplace is grounded upon four principles Flexible work arrangements, Free spirit, and emotional positivity Agile self-determination, trust, transparency, and open collaboration All Support needed for the realization of business goals, Stable employment with a great atmosphere and ethical corporate culture

Posted 1 month ago

Apply

5.0 - 10.0 years

6 - 10 Lacs

Pune

Work from Office

Job Location Pune, India Full-time in person from Strategy Office European Hours Job Description Join Strategy s IT Security group as a Senior Application Security Engineer and play a crucial role in safeguarding Strategy s software applications while using modern security and AI tooling. In this position, you will be responsible for establishing innovative security practices throughout the software development lifecycle, ensuring that our software products are resilient against novel threats and vulnerabilities. Security Architecture: Design and implement application security architecture and processes, ensuring they align with industry best practices and regulatory requirements. Secure SDLC: Manage a risk-balanced SDLC by integrating threat modeling, secure code reviews, and security testing. Vulnerability Management: Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA ) tools. Security Assessments Penetration Testing: Perform advanced penetration testing and red teaming across web, mobile, and cloud applications. Leverage exploit development techniques to identify high-risk vulnerabilities and collaborate with engineering teams for effective remediation. Secure Code Review: Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices. Threat Modeling Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture on complex or cross-functional components DevSecOps Enablement: Lead and enhance DevSecOps initiatives by identifying gaps and integrating security automation within CI/CD pipelines. Incident Response Remediation: Lead security incident response related to applications and work with engineering teams to remediate threats. Security Awareness Training: Develop and lead customized security training programs for engineering teams, focusing on OWASP Top 10, threat modeling, AI security risks, and secure coding principles. Qualifications Bachelors degree in Computer Science, Engineering, or related field Minimum 5 years of software development or software security experience in an agile environment with strong expertise in software secure coding practices, threat modeling, and vulnerability assessment. Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., GitHub Advanced Security, Checkmarx, Fortify, Veracode, SonarQube, Burp Suite, ZAP). Deep knowledge of API security (e.g., OWASP API Top 10, GraphQL security). Experience in securing containerized applications (Docker, Kubernetes). Knowledge of supply chain security risks (e.g., SBOM, software dependency management). Familiarity with AI/ML security risks and adversarial machine learning techniques. Experience with Infrastructure as Code (IaC) security (Terraform, CloudFormation). Fluent in one or more programming languages, such as Python, Java, JavaScript Strong knowledge of secure coding principles and application security frameworks. Familiarity with security tools (e.g., static and dynamic analysis tools, vulnerability scanners). Understanding of security standards and regulations (e.g., OWASP, NIST). Hands-on experience securing AI/ML applications, understanding adversarial attacks, model poisoning, and data privacy risks. Strong eagerness to learn and contribute to AI security advancements. Experience with cloud security best practices in AWS, Azure, or GCP. Experience with AI security best practices and implementations. Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues. Effective interpersonal skills; ability to collaborate successfully with both technical and non-technical stakeholders. Strong ability to balance security risk with business impact and communicate trade-offs effectively. Experience mentoring junior engineers and leading security champions within development teams. Ability to articulate complex technical concepts with clarity, supported by effective written and verbal communication skills.

Posted 1 month ago

Apply

5.0 - 10.0 years

9 - 13 Lacs

Pune

Work from Office

Job Description Job Location Pune, India Full-time in person from Strategy Office European Hours Job Description Join Strategy s IT Security group as a Senior Application Security Engineer and play a crucial role in safeguarding Strategy s software applications while using modern security and AI tooling. In this position, you will be responsible for establishing innovative security practices throughout the software development lifecycle, ensuring that our software products are resilient against novel threats and vulnerabilities. Security Architecture: Design and implement application security architecture and processes, ensuring they align with industry best practices and regulatory requirements. Secure SDLC: Manage a risk-balanced SDLC by integrating threat modeling, secure code reviews, and security testing. Vulnerability Management: Identify, triage, and remediate security vulnerabilities through static and dynamic application security testing (SAST/DAST) and software composition analysis (SCA ) tools. Security Assessments Penetration Testing: Perform advanced penetration testing and red teaming across web, mobile, and cloud applications. Leverage exploit development techniques to identify high-risk vulnerabilities and collaborate with engineering teams for effective remediation. Secure Code Review: Analyze source code and provide security recommendations to developers to ensure adherence to secure coding best practices. Threat Modeling Risk Analysis: Perform threat modeling to anticipate potential attack vectors and improve security architecture on complex or cross-functional components DevSecOps Enablement: Lead and enhance DevSecOps initiatives by identifying gaps and integrating security automation within CI/CD pipelines. Incident Response Remediation: Lead security incident response related to applications and work with engineering teams to remediate threats. Security Awareness Training: Develop and lead customized security training programs for engineering teams, focusing on OWASP Top 10, threat modeling, AI security risks, and secure coding principles. Qualifications Bachelors degree in Computer Science, Engineering, or related field Minimum 5 years of software development or software security experience in an agile environment with strong expertise in software secure coding practices, threat modeling, and vulnerability assessment. Hands-on experience with SAST, DAST, IAST, and SCA tools (e.g., GitHub Advanced Security, Checkmarx, Fortify, Veracode, SonarQube, Burp Suite, ZAP). Deep knowledge of API security (e.g., OWASP API Top 10, GraphQL security). Experience in securing containerized applications (Docker, Kubernetes). Knowledge of supply chain security risks (e.g., SBOM, software dependency management). Familiarity with AI/ML security risks and adversarial machine learning techniques. Experience with Infrastructure as Code (IaC) security (Terraform, CloudFormation). Fluent in one or more programming languages, such as Python, Java, JavaScript Strong knowledge of secure coding principles and application security frameworks. Familiarity with security tools (e.g., static and dynamic analysis tools, vulnerability scanners). Understanding of security standards and regulations (e.g., OWASP, NIST). Hands-on experience securing AI/ML applications, understanding adversarial attacks, model poisoning, and data privacy risks. Strong eagerness to learn and contribute to AI security advancements. Experience with cloud security best practices in AWS, Azure, or GCP. Experience with AI security best practices and implementations. Strong work ethic with a commitment to meeting business needs and effectively collaborating with global colleagues. Effective interpersonal skills; ability to collaborate successfully with both technical and non-technical stakeholders. Strong ability to balance security risk with business impact and communicate trade-offs effectively. Experience mentoring junior engineers and leading security champions within development teams. Ability to articulate complex technical concepts with clarity, supported by effective written and verbal communication skills.

Posted 1 month ago

Apply

5.0 - 10.0 years

25 - 30 Lacs

Bengaluru

Work from Office

Total Number of Openings 1 About the position: Chevron invites applications for the role of Operational Technology (OT) Cloud Engineer within our OT Edge Compute team in India. This position has responsibility for the critical platforms, tools, and capabilities that provide on and off-premise Cloud infrastructure services to every Chevron business units and sites. This position will provide broad exposure to the application of technology to enable business with many opportunities for growth and professional development for the candidate. Key Responsibilities: Identify the most optimal cloud-based solutions for our digital platforms and maintain cloud infrastructures in accordance with best practices and company security policies Understand the nuances of different cloud solutions (hybrid, public, private, multi-cloud, on-prem) and implications for solution design Apply excellent troubleshooting skills, stay current with industry trends, and must be a team player Maintain and troubleshoot Azure/On-prem environments and services Design and implement application security for Azure cloud and On-prem native solutions Collaborate with software engineering and development teams to evaluate and identify optimal cloud solutions Develop a deep understanding of the needs and pain points of our connected workers and use this knowledge to drive product development Work with cross-functional teams, including OT product teams, surface product teams, etc. to define and prioritize product requirements Scale and support products such as tablets/phones, lone worker monitoring devices, push-to-talk (PTToB) deployments, and Real Time Location Services (RTLS) Act as the deployment coordinator for products such as PTToB and RTLS, including system setup, training, and monitoring deployment activities Work directly with stakeholders to understand RTLS requirements and help deploy new solutions to capture data and analyze for efficiencies Define and execute the XR Immersive Tech product vision, strategy, and roadmap Gather and prioritize customer and stakeholder requirements Define and deliver product features and functionality Coordinate with the XR development team to ensure successful delivery of the product Act as the main point of contact for the XR product portfolio Required Qualifications: Bachelor s degree in computer science engineering or related field Total year of experience 5+ years with Cloud experience on Azure. 5 - 10 years of experience Must have Microsoft AZ900 Certification Ability to create and communicate a clear product vision that aligns with business objectives and addresses the needs of connected workers Experience in deploying solutions in on-premises and cloud-based environments In-depth knowledge of digital tools, IoT devices, and software platforms used in connected worker solutions, including Azure DevOps and Microsoft O365/M365 services Skills in deploying and supporting products such as tablets/phones, lone worker monitoring devices, push-to-talk (PTToB) deployments, and Real Time Location Services (RTLS) Ability to collect, analyze, and utilize data from connected devices to drive product development and improve performance In-depth knowledge of Mixed Reality (MR), Augmented Reality (AR), and Virtual Reality (VR) technologies, including tools like Unity, Blender, and remote rendering Ability to define and execute the product vision, strategy, and roadmap for XR technologies Expertise in deploying and configuring AR/MR/VR devices and software applications Demonstrated knowledge and experience with Microsoft Azure IaaS, storage, and networking Ability to translate business requirements into technical solutions and manage service delivery through IT managed service providers Proficiency in automation and scripting languages such as PowerShell, Python, or Bash to automate cloud operations Experience with integration of XR Immersive technologies into Field Operations Chevron ENGINE supports global operations, supporting business requirements across the world. Accordingly, the work hours for employees will be aligned to support business requirements. The standard work week will be Monday to Friday. Working hours are 8:00am to 5:00pm or 1.30pm to 10.30pm. Chevron participates in E-Verify in certain locations as required by law.

Posted 1 month ago

Apply

5.0 - 10.0 years

10 - 20 Lacs

Dubai, Chennai, Bengaluru

Work from Office

We're Hiring! I am excited to share some amazing career opportunities at Happiest Minds. Take your Security career to the next level with Happiest Minds, ! Join a dynamic team, where Security Meets Innovation, and grow with us. Be recognized in a Great Place to Work Certified environment Interested professionals can directly reach out to me ankita.patari@happiestminds.com or can apply in below post Primary Skills : Manual Penetration Testing using OWASP checklists, Penetration Testing, Cloud Security Assessment, Cybersecurity, Security Configuration Review, Source Code Review Job Description: 4 to 6 years of experience conducting Application Security assessments Experienced in conducting Manual and Automated DAST for Web, API & Thick client covering OWASP Top 10 Experienced in conducting Manual code review Experienced in Mobile VAPT (Both static and Dynamic) Knowledge of Infra VAPT or at least VA and configuration review Knowledge in Container / Docker security / Cloud Audit is a plus Certifications suck as CEH, CRTP, OSCP is preferred Good communication skills, ability to explain vulnerabilities to business users in simple terms. Notice: Immediate to 15 days Location: ENBD Bangalore or ENBD Chennai or Dubai Location: Bangalore/Chennai/Dubai Experience: 4-6 Years Thanks & Regards, Ankita Ghosh

Posted 1 month ago

Apply

5.0 - 10.0 years

7 - 17 Lacs

Bengaluru

Work from Office

Educational Requirements Master Of Engineering,Master Of Technology,MCA,MSc,Bachelor of Engineering,Bachelor Of Technology,BCA,BSc Service Line Cyber Security Responsibilities A day in the life of an Infoscion As part of the Infosys consulting team, your primary role would be to get to the heart of customer issues, diagnose problem areas, design innovative solutions and facilitate deployment resulting in client delight. You will develop a proposal by owning parts of the proposal document and by giving inputs in solution design based on areas of expertise. You will plan the activities of configuration, configure the product as per the design, conduct conference room pilots and will assist in resolving any queries related to requirements and solution design You will conduct solution/product demonstrations, POC/Proof of Technology workshops and prepare effort estimates which suit the customer budgetary requirements and are in line with organizations financial guidelines Actively lead small projects and contribute to unit-level and organizational initiatives with an objective of providing high quality value adding solutions to customers. If you think you fit right in to help our clients navigate their next in their digital transformation journey, this is the place for you! Additional Responsibilities: Ability to develop value-creating strategies and models that enable clients to innovate, drive growth and increase their business profitability Good knowledge on software configuration management systems Awareness of latest technologies and Industry trends Logical thinking and problem solving skills along with an ability to collaborate Understanding of the financial processes for various types of projects and the various pricing models available Ability to assess the current processes, identify improvement areas and suggest the technology solutions One or two industry domain knowledge Client Interfacing skills Project and Team management Technical and Professional Requirements: Primary skills:Technology->Application Security->Access Management,Technology->Identity Management->IDAM-Design , work flow , Implementation,Technology->Identity Management->Identity Governance Framework, Attestation,Access Cert, Role Mgmt,Auditing,Entitlement Mgmt, XACML,Technology->Identity Management->Identity Management - ALL,Technology->Identity Management->Identity,Account Provisioning and Reconciliation, SPML,Technology->Identity Management->Privileged User Management Preferred Skills: Technology->Identity Management->Identity Governance Framework Attestation/Access Cert Role Mgmt Auditing Entitlement Mgmt XACML->SailPoint identity now Technology->Identity Management->Identity Management - ALL Technology->Identity Management->Identity/Account Provisioning and Reconciliation SPML->Forgerock Identity Manager Technology->Identity Management->Privileged User Management->CyberArk Technology->Application Security->Access Management->Sailpoint Technology->Identity Management->IDAM-Design work flow Implementation->Ping Identity

Posted 1 month ago

Apply

4.0 - 9.0 years

10 - 20 Lacs

Chennai

Work from Office

Job Summary: We are hiring an experienced Application Security Engineer specializing in Java ADF and Jasper Reports, with a strong track record of resolving Vulnerability Assessment and Penetration Testing (VAPT) findings. The ideal candidate must have secured complex enterprise applications, including online payments and eCommerce systems, particularly on legacy stacks such as Java 1.7, MySQL 5.5, and JBoss 7.1. This role is hands-on and remediation-focused, requiring deep understanding of secure development and hardening in deprecated environments. Key Responsibilities: Lead remediation of high-priority VAPT findings in large-scale enterprise systems. Secure passwords and PII data at all stages: At view/input: masking, form validation, secure front-end patterns In transit: TLS, secure headers, HTTPS enforcement At rest: encryption, proper salting and hashing (e.g., bcrypt, SHA-256) Fix injection attacks (SQLi, XSS, LDAPi, command injection), CSRF, clickjacking, IDOR, and other OWASP Top 10 issues. Apply secure API integration practices: auth tokens, rate limiting, input validation. Harden session and cookie management (HttpOnly, Secure, SameSite attributes, session fixation prevention). Review and fix insecure code in ADF Faces, Task Flows, Bindings, BC4J, and Jasper Reports. Secure Jasper Reports generation and access (parameter validation, report-level authorization, export sanitization). Work hands-on with legacy platforms: Java 1.7, MySQL 5.5, JBoss 7.1 applying secure remediation without disrupting production. Strengthen security of online payment/eCommerce systems with proven compliance (e.g., PCI-DSS). Maintain detailed remediation logs, documentation, and evidence for audits and compliance (GDPR, DPDPA, STQC, etc.). Technical Skills: Java EE, Oracle ADF (ADF Faces, Task Flows, BC4J), Jasper Reports Studio/XML Strong debugging skills in Java 1.7, MySQL 5.5, JBoss 7.1 Secure development lifecycle practices with a focus on legacy modernization Strong grounding in OWASP Top 10, SANS 25, CVSS, and secure coding principles Experience in PII handling, data masking, salting, and hashing Proficiency in OAuth2, SAML, JWT, and RBAC security models Performance improvement and application profiling Expertise in analyzing application, system, and security logs to identify and fix issues Ability to ensure application stability and high availability Be the champion/lead and guide the team to fix the issues PHP experience is a plus, especially in legacy web app environments Required Experience: 5–10+ years in application development and security Demonstrated experience remediating security vulnerabilities in eCommerce and payment platforms Ability to work independently in production environments with deprecated technologies Preferred Qualifications / Plus: B.E./B.Tech/MCA in Computer Science, IT, or Cybersecurity Use of AI tools for identification and fixing the issues is real plus Any VAPT or Application Security Certification is a plus (e.g., CEH, OSCP, CSSLP, GWAPT, Oracle Certified Expert) Familiarity with compliance standards: PCI-DSS, GDPR, DPDPA, STQC Proficiency with security tools: Fortify, ZAP, SonarQube, Checkmarx, Burp Suite Soft Skills: Strong problem-solving and diagnostic capabilities, especially in large monolithic codebases Good documentation and communication skills for cross-functional collaboration Able to work under pressure, troubleshoot complex issues, and deliver secure code fixes rapidly

Posted 1 month ago

Apply

10.0 - 15.0 years

22 - 27 Lacs

Mumbai

Work from Office

Project Management: Lead and manage multiple projects from inception to completion, ensuring timely delivery, budget adherence, and quality standards. Develop project plans, timelines, and resource allocation strategies. Coordinate with cross-functional teams including marketing, IT, and customer service to ensure seamless project execution. Technical Expertise: Work on .NET or JAVA-based applications, providing technical guidance and support. Implement and manage DevSecOps practices, integrating security into the CI/CD pipeline. Conduct security assessments, vulnerability scanning, and penetration testing. Develop and maintain security policies, procedures, and standards. Application Security: Monitor and respond to security incidents, conducting incident investigations and providing remediation plans. Implement and manage security tools and technologies such as DAST, SAST, and container security. Collaborate with development teams to ensure secure coding practices and perform code reviews. Experience 10+ years of experience in software development and project management. Certifications in PMI, CMM, ISO, ITIL, Six Sigma are preferred. Experience in industry quality standards and application outsourcing. Industry Preferred Qualifications Bachelors degree in Computer Science, Engineering, or a related field. Preferred Experience: Experience with application outsourcing and transition management. General Requirements Technical Skills: Strong proficiency in .NET or JAVA programming languages. In-depth knowledge of DevSecOps practices and application security needs. Experience with security tools and technologies such as DAST, SAST, and container security. Project Management: Proven experience in managing complex projects with multiple stakeholders. Strong organizational and time management skills. Leadership: Excellent leadership and mentorship abilities. Strong problem-solving skills and ability to analyze complex technical issues. Communication: Excellent verbal and written communication skills. Ability to collaborate effectively with cross-functional teams.

Posted 1 month ago

Apply
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies