Home
Jobs

Principal Application Security Consultant

5 - 8 years

12 - 16 Lacs

Posted:3 weeks ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Job Description: Prudent Technologies and Consulting is seeking an experienced Principal Application Security Engineer to lead our rapidly expanding web application penetration testing services. This senior-level position will play a critical role in advancing our offensive security capabilities, mentoring junior security consultants, and delivering high-value security assessments to our global client base. The ideal candidate will combine technical expertise in web application security with leadership skills and client engagement experience to drive our security consulting practice forward. As a Principal Application Security Engineer, you will serve as a technical leader within our offensive security practice, specializing in web application penetration testing methodologies. You will lead complex security engagements, provide subject matter expertise to clients and internal teams, mentor junior security consultants, and contribute to the development of our service offerings. This position requires a deep understanding of application security principles, extensive hands-on testing experience, and exceptional communication skills to translate technical findings into actionable business insights. Responsibilities: Lead complex web application penetration testing engagements for enterprise clients, ensuring delivery of high-quality assessments that meet or exceed client expectations Serve as the principal security advisor to clients, translating technical findings into business context and providing strategic remediation guidance Develop and enhance the organizations application security testing methodologies, incorporating industry best practices like OWASP and MITRE ATT&CK frameworks Perform advanced manual testing to identify sophisticated vulnerabilities beyond the capabilities of automated tools, including business logic flaws, authentication bypasses, and authorization weaknesses Conduct comprehensive threat modeling sessions with development teams to identify security risks early in the software development lifecycle Lead code reviews to identify security vulnerabilities in client applications and provide remediation guidance Create detailed technical reports and executive summaries that clearly articulate security findings, business impact, and prioritized remediation recommendations Mentor junior security consultants, providing technical guidance and contributing to their professional development Collaborate with sales teams to scope complex engagements, participate in pre-sales activities, and support business development efforts Contribute to research initiatives that enhance the companys security testing capabilities and industry reputation Evaluate emerging tools and technologies to improve the efficiency and effectiveness of security testing processes Qualifications: Required Qualifications: o 5-8+ years of professional experience in application security, with a strong focus on web application penetration testing o Demonstrated expertise in identifying, exploiting, and documenting complex web application vulnerabilities following OWASP methodologies o Proficiency with industry-standard penetration testing tools including Burp Suite Professional, DAST scanners, and other exploitation frameworks o Experience leading security assessments across diverse technologies and environments including web applications, APIs, cloud services (AWS, Azure, GCP), and modern web frameworks o Strong understanding of secure coding practices, common vulnerability patterns, and remediation strategies across multiple programming languages and frameworks o Exceptional technical writing skills, with the ability to produce clear, concise, and compelling security assessment reports for both technical and executive audiences o Proven ability to build trusted relationships with clients and effectively communicate complex security concepts to technical and non-technical stakeholders o Experience mentoring junior security professionals and leading technical teams Preferred Qualifications: o Bachelors degree in computer science, cybersecurity, or related technical field o Advanced security certifications such as OSWE, GWAPT, GPEN, OSCP, or equivalent industry recognitions o Experience developing custom tools or scripts to automate aspects of penetration testing using Python, Go, or similar languages o Prior software development experience that informs a deep understanding of modern application architectures and development practices o Contributions to the security community through published research, CVE discoveries, open-source tool development, or conference presentations o Experience with mobile application security testing (iOS and Android) and API security assessment methodologies o Knowledge of cloud security architecture and specialized cloud service penetration testing techniques o Experience with AI/ML system security evaluation and testing methodologies Education: o Direct work experience performing application penetration testing assessments; ability to begin testing immediately with guidance on Prudent s specific approach and methodology o Bachelors degree in computer science, cybersecurity, or related technical field o Advanced security certifications such as OSWE, GWAPT, GPEN, OSCP, or equivalent industry recognitions

Mock Interview

Practice Video Interview with JobPe AI

Start Computer Science Interview Now

My Connections Prudent Globaltech Solutions

Download Chrome Extension (See your connection in the Prudent Globaltech Solutions )

chrome image
Download Now
Prudent Globaltech Solutions
Prudent Globaltech Solutions

Information Technology

Tech City

150 Employees

87 Jobs

    Key People

  • Alice Johnson

    CEO
  • Bob Smith

    CTO

RecommendedJobs for You